Do not delete or re-add the Instagram entry; because every current code is rejected and the clock, app version, and phone have already been checked, access must be recovered through Instagram before the TOTP registration can be replaced.
What can be diagnosed without deleting the entry
Microsoft Authenticator does not expose the underlying TOTP secret or provide a function to compare that secret with Instagram’s current registration. It only displays the one-time code generated from the locally stored entry. Instagram is treated as a non-Microsoft account using a code that refreshes every 30 seconds.^1^
Consequently:
- Seeing a new six-digit code every 30 seconds confirms that an Instagram TOTP entry exists.
- It does not confirm that the stored secret still matches the secret registered with Instagram.
- Authenticator cannot ask Instagram which secret it expects.
- Microsoft support cannot reset Instagram’s two-factor authentication.
Since the app, phone, and automatic time checks are already complete, repeating those checks is unlikely to distinguish an obsolete secret from an Instagram-side account issue.
Preserve the entry before doing anything else
- In Authenticator, open Settings.
- Under Backup, enable iCloud backup.
- Confirm that the intended iCloud and personal Microsoft recovery accounts are in use.
On iOS, Authenticator stores backup credentials through iCloud; restoring must be performed on the same device type. Third-party TOTP entries are among the entries that can be restored.^2^
Do not uninstall Authenticator, remove the Instagram tile, delete its backup, or scan a different QR code while locked out. Password export is also not a TOTP backup mechanism—it exports passwords, not authenticator entries.
Recover access through Instagram
Use Instagram’s official recovery flow:
- On Instagram’s sign-in screen, select Get help logging in or Need more help?
- If offered, select Try another way and use:
- a saved Instagram backup code;
- another sign-in or recovery method associated with the account.
- If none is available, continue through account recovery.
- Complete identity verification if offered, including video-selfie verification where applicable.
- Prefer the same iPhone and a familiar network/location previously used for the account.
Instagram directs users whose authenticator codes do not work into its login and identity-recovery process.^3^
Only after access is restored:
- Open Instagram’s two-factor authentication settings.
- Disable or replace the existing authenticator-app registration.
- Have Instagram display a new QR code or setup key.
- Add it to Authenticator as Other (Google, Facebook, etc.).
- Test the new code successfully before removing the old Authenticator entry.
- Generate and securely store new Instagram backup codes.
Microsoft documents that non-Microsoft accounts, including Instagram, are enrolled by enabling two-step verification at the service and scanning the QR code supplied by that service.^4^
Authenticator diagnostic logs
To check for an Authenticator application fault without deleting the account:
- Open Authenticator’s top-level menu.
- Select Send feedback.
- Describe that locally generated codes are being rejected by a third-party service and include the troubleshooting already completed.
Diagnostic logs remain in the app until feedback is submitted and can contain device or account-related information. They may help Microsoft investigate an app failure, but they do not provide a supported way to reveal or validate Instagram’s TOTP secret.^5^
References
- [iOS](https://support.microsoft.com/authenticator/restore-account-credentials-from-microsoft-authenticator#i-see-sign-in-to-restore-your-account-after-restoring-authenticator-accounts)
- Back up account credentials in Microsoft Authenticator
- Instagram Help Center
- How to add your accounts to Microsoft Authenticator
- Microsoft Authenticator FAQs | Microsoft Support