A Microsoft app for iOS and Android devices that enables authentication with two-factor verification, phone sign-in, and code generation
Subject: Microsoft Authenticator Generating 8-Digit Codes – Blocking Third-Party Login and Causing Business Impact
Dear Microsoft Support Team,
I am writing to report a problem with the Microsoft Authenticator app tied to my Microsoft account ([******@outlook.com]). The account entry used to sign in to a third-party service (ChatGPT/OpenAI) is generating an 8-digit one-time code, but that service's login page only accepts the standard 6-digit code. This mismatch has completely locked me out of an account I rely on for my work, and the resulting downtime is costing me significant revenue.
Due diligence I have already carried out before contacting you:
- Confirmed the code being generated is consistently 8 digits for this account entry, while the third-party site's login field only accepts 6 digits (the standard RFC 6238 TOTP format most services use).
- Reviewed multiple threads on Microsoft's own Q&A forum describing this exact symptom. The consistent, community-confirmed explanation is that an account gets added to Microsoft Authenticator under a "personal Microsoft account" type (which uses 8-digit codes) instead of the "Other (Google, Facebook, etc.)" / OATH-TOTP type that third-party sites expect (6-digit codes).
- Attempted the community-recommended fix: removing the affected account entry from Microsoft Authenticator and preparing to re-add it using "Other (Google, Facebook, etc.)" with a freshly generated QR code from the third-party service, so that it produces a 6-digit code instead of 8.
I am asking Microsoft to help with one of the following: (1) confirm whether there's a supported way to control the digit count so this doesn't recur; (2) if it's a bug, a timeline for a fix, since it's currently affecting my income; or (3) confirm this is expected behavior so I can plan around it with other services.
Sincerely, Cecil Caballero