My Service Support

Set Up the Microsoft Authenticator App

Updated 2026-08-15 · 1099 words

Before You Start

To set up the Microsoft Authenticator app, have the phone or tablet you want to use and make sure it can open its official app store. Keep the device connected to Wi-Fi or mobile data during installation and setup.

You also need access to the account you want to protect. Sign in through the organization’s usual sign-in page, then look for Security, Security info, Two-step verification, or Multi-factor authentication in the account settings.

Have another verification method available if the account asks you to confirm your identity. This may be a text message, email, security key, recovery code, or approval from an old device. A work or school account may require help from its administrator if no usable method remains.

If possible, complete the account settings on a computer while keeping your phone ready. This makes it easier to display the setup code on one screen and scan it with the other.

Install Microsoft Authenticator

  1. Open the official app store provided on your mobile device.
  2. Search for Microsoft Authenticator.
  3. Check that the app is named Microsoft Authenticator and that Microsoft Corporation is shown as its publisher or developer.
  4. Select the store’s installation button and wait for installation to finish.
  5. Open the app and review any permission prompts.

Do not install the Microsoft Authenticator app from a download page, message, advertisement, or unofficial app store. If you are unsure which listing is genuine, start at Microsoft’s official support site and find its instructions for downloading Authenticator.

The app may request permission to send notifications and use the camera. Notifications are needed for approval prompts. Camera access is needed when you scan a QR code for Microsoft Authenticator.

Add Your Account

Open Authenticator and follow its first-use prompts. To add an account to the Microsoft Authenticator app, select the add-account control, which is commonly shown as a plus sign.

Choose the account type that matches the account you are linking:

  • Select Work or school account for an account managed by an employer, school, or other organization.
  • Select Personal account for a personal Microsoft account.
  • Select Other account when another service specifically tells you to use an authenticator app and provides a compatible QR code or setup key.

At the same time, open the account’s security settings on the other screen. Choose the option to add a sign-in method, security method, or authenticator app. Follow the on-screen instructions until the setup page displays a QR code.

Do not scan a QR code sent unexpectedly by email, text, or chat. Begin in the account’s own security settings so you know you are connecting the Microsoft Authenticator app to the intended account.

Scan the QR Code

In Authenticator, choose the option to scan a QR code. Point the phone’s camera at the code shown in the account setup window. Keep the full square inside the frame until the app recognizes it. You normally do not need to take a picture.

If the camera will not open, check the device settings and allow Authenticator to use it. Clean the camera lens, raise the brightness on the screen displaying the code, and move the phone slightly closer or farther away.

If scanning is unavailable, look on the account setup page for an option such as Can’t scan image or Enter code manually. Enter the account name and secret key exactly as displayed. Treat that key like a password: do not save it in an unprotected note or share it.

A QR code may expire after the setup page has been open for a while. Return to the security settings, cancel the unfinished attempt, and start adding the method again to generate a fresh code.

Complete the Verification Test

After the account appears in Authenticator, return to the setup page and continue. The account may send a test notification to your phone. Open the notification and approve it only if you started this setup yourself. Some sign-ins display a number that you must match or enter in the app.

Other accounts ask for the current verification code displayed beside the account in Authenticator. Enter the code before it changes, then submit it. A successful confirmation means the Microsoft Authenticator app setup is connected correctly.

Finish every remaining prompt on the security page. Do not remove an existing verification method until the new app has passed its test and you have confirmed that you can sign in.

Fix Common Setup Problems

  • Notifications are missing: Open Authenticator directly and check for a pending request. Confirm that the device is online and that notifications are allowed. Battery-saving or focus settings may delay alerts.

  • A code is invalid: Use the code shown for the correct account and enter it before it refreshes. If the account has duplicate entries, verify which one was added most recently.

  • Codes keep failing: Set the phone’s date, time, and time zone to update automatically. Authenticator codes depend on accurate device time.

  • The camera cannot scan: Allow camera access in device settings. If the code is damaged, expired, or displayed on the same phone, use the manual setup option when the account provides one.

  • The old phone is unavailable: Choose another verification method on the sign-in screen. If none works, use the account provider’s official recovery process or contact the organization that manages the account.

If a work or school policy blocks setup, an administrator may need to reset your authentication methods or require a particular method. Authenticator cannot bypass those requirements.

Recover Access or Change Phones

To set up the Authenticator app on a new phone, install the official app first. If you still have the old phone, keep it active until the new phone works. Use any backup or recovery option already enabled in Authenticator, then follow the prompts on the new device. Restored entries may still require you to sign in again or register the new device.

If no backup is available, sign in to each account through its normal sign-in page, open its security settings, and add Authenticator as a new method. Scan the newly displayed QR code and complete the verification test. Remove the old device only after the replacement works.

If you cannot sign in or no longer have any verification method, start from the official account recovery or sign-in-help page. For a work or school account, contact the organization’s help desk or account administrator through its established support channel. They can explain the approved identity-check and reset process.

Never approve a request you did not initiate. If the old phone was lost or stolen, review the account’s recent sign-in activity and security methods once access is restored.