My Service Support

Microsoft Authenticator App: Sign-In and Setup Guide

Updated 2026-08-15 · 1034 words

What the Microsoft Authenticator App Does

Microsoft Authenticator helps confirm that the person signing in is really you. After you enter your password, the app may ask you to approve a notification or enter a temporary code. This is called two-factor or multi-factor authentication.

The app can also provide passwordless sign-in for eligible Microsoft accounts. Instead of entering a password, you respond to a prompt on your phone and complete any identity check shown there. Availability may depend on your account type and, for a work or school account, your organization’s settings.

You may see the app described as the authenticator app Microsoft provides, the authenticator Microsoft app, or an authenticator app for Microsoft account access. These names refer to Microsoft Authenticator.

How to Download and Install the App

Microsoft Authenticator is designed for supported iOS and Android smartphones. Microsoft does not provide it as an Authenticator app for a PC or Mac.

  1. On an iPhone, open the Apple App Store. On an Android phone, open the Google Play Store.
  2. Search for Microsoft Authenticator.
  3. Check that Microsoft Corporation is identified as the publisher. Avoid similarly named apps and unofficial download sources.
  4. Install the app, open it, and accept the permissions needed for setup. Camera access lets the app scan a QR code. Notification permission is needed for sign-in prompts.

Keep the phone’s operating system and Authenticator app updated. Microsoft’s support site has a page called “Download Microsoft Authenticator” if you need help locating the official store listing or checking current device requirements.

How to Add Your Microsoft Account

Have your phone and another device ready. Displaying the setup page on a computer or second phone makes its QR code easier to scan.

For a personal Microsoft account:

  1. Sign in through Microsoft’s official account site and open the Security section.
  2. Choose the option for managing how you sign in, then add a new sign-in or verification method.
  3. Select the option to use an app and continue until a QR code appears.
  4. Open Authenticator, select the plus symbol, and choose Personal account.
  5. Select Scan a QR Code and scan the code displayed on the other screen.
  6. Complete the test or confirmation shown by Microsoft before closing the setup page.

For a work or school account, open the security information area provided by your organization. Add a sign-in method, choose Microsoft Authenticator, and follow the prompts. In the app, select Work or school account and scan the displayed QR code. Your employer or school may require extra registration steps.

If scanning is unavailable, look for an option such as “Can’t scan the image” on the setup screen. Microsoft may provide details that can be entered manually. Do not remove an existing verification method until the new one has been tested.

Signing In with the Authenticator App

Start signing in to your Microsoft account as usual. If Microsoft sends an approval request, unlock your phone and open the notification or Authenticator. Review the account and sign-in details displayed. Enter any number shown on the sign-in screen if the app requests number matching, then approve the request.

Never approve a prompt for a sign-in you did not start. Deny it and review your account’s recent activity through the official Microsoft account security area.

Some sign-ins ask for a generated code instead of sending a notification. Open Authenticator, select the correct account, and enter the current one-time code on the sign-in screen. These codes change regularly, so use the code that is visible when you submit the form.

Troubleshooting Common Sign-In Issues

If no notification arrives:

  • Open Authenticator directly. The request may be waiting inside the app.
  • Confirm that the phone has a working Wi-Fi or mobile-data connection and that Airplane Mode is off.
  • Allow notifications for Authenticator in the phone’s settings. Check Do Not Disturb, battery restrictions, and background activity settings.
  • Update Authenticator and restart the phone. If you recently changed phones, the request may still be going to the old device.

If a generated code is rejected, make sure you selected the correct account and typed the newest code before it changed. Set the phone’s date and time to update automatically, then restart it. An inaccurate device clock can cause time-based code drift.

If the app is not syncing or responding, switch between Wi-Fi and mobile data, open the app while online, and install available app and operating-system updates. Do not delete the account from Authenticator unless you still have another sign-in method or can repeat the registration process.

For a work or school account, registration and notification rules may be controlled by the organization. Contact its IT administrator or help desk if the account cannot be added or a required method is unavailable.

Recovering Access if You Lose the App or Device

On the sign-in screen, select the option to use another verification method. Depending on what was added previously, Microsoft may offer another registered method or an account recovery process. If none is available, use the recovery instructions for personal accounts on Microsoft’s official support site. Work or school users should contact their organization’s IT administrator.

Before switching phones, keep the old phone active until the new setup works. Review your account’s security methods, add a backup method if Microsoft offers one, and turn on Authenticator’s backup feature. Backups restore only between the same device type: iOS to iOS or Android to Android. Some restored accounts, especially work or school accounts, may need to be registered again.

Install Authenticator on the new phone, restore the available backup, and test sign-in. Only then remove the old device from the account’s security information and erase the old phone.

Getting Help from Microsoft Support

Go to Microsoft’s official support site and search for “Microsoft Authenticator.” Open the troubleshooting page for notification, setup, QR-code, or sign-in errors. For a personal account, use the Contact Support option shown on the official site and choose the account or sign-in category.

You can also open Authenticator’s settings and use Send feedback when available. Include the exact error message and the steps already attempted, but do not include a password or one-time code. For a managed work or school account, contact your organization’s IT administrator because Microsoft Support may not control its authentication policy.