Microsoft 365 features that help users manage their subscriptions, account settings, and billing information.
To stop the old passkey from being used, remove the old passkey from both the account and the device where it is stored.
For a work or school account:
- Sign in to Security info at https://mysignins.microsoft.com/security-info.
- Find the passkey entry and select Remove.
- Also delete the local copy from the device or app where it was saved.
If the passkey is stored in Microsoft Authenticator on Android:
- Open Microsoft Authenticator.
- Tap the account name.
- Tap Settings.
- Tap Delete passkey.
Important:
- Delete the old passkey only after a new valid passkey is working for the business account.
- If the old passkey was saved in a synced credential manager such as Microsoft Password Manager, Google Password Manager, or Apple iCloud Keychain, it might not need to be recreated on the new device. Verify which account the passkey belongs to before removing anything.
- If sign-in is using a passkey from another device, Bluetooth and internet must be enabled on both devices.
If a passkey on the device no longer matches the account registration, it can become an orphaned passkey. In that case:
- Remove the orphaned passkey from the device or passkey provider.
- Re-register a new passkey after cleanup.
About Authenticator App:
- Microsoft Authenticator is the app that can store passkeys and authentication methods.
- After restoring to a new phone, for work or school accounts, only the account name is restored. The account must be opened and signed in again to complete setup.
- If the app shows "Sign in to add your account.", that is expected behavior for restored work or school accounts.
If self-service passkey setup is blocked by organization policy, the approved recovery or registration process must come from the IT admin or help desk.
References: