Appearance
Estimated Time to Fix: 5 minutes
Summary
This article guides you through setting up and using a passkey (such as Windows Hello, Face ID, or Touch ID) to sign in to your Microsoft 365 account without typing a password. If you first want to know what a passkey is and how it protects you, read Understanding Passkeys, then come back here to set one up.
Before You Start
- A device that supports passkeys (Windows Hello, Mac with Touch ID, iPhone, or Android).
- The Microsoft Authenticator app (optional, but recommended for mobile passkeys).
Instructions
1. Register a Passkey for Your Account
Registering a passkey adds a sign-in method to your account without removing your password.
- Open your web browser and go to
myaccount.microsoft.com. - Sign in with your current Microsoft 365 email and password.
- Click on Security info in the left menu.
- Click Add sign-in method and select Passkey from the dropdown menu.
- Click Add and follow the on-screen prompts to create the passkey on your current device.
- Your browser will prompt you to use your device's biometric scanner (fingerprint, face recognition, or PIN) to confirm the setup.
2. Sign In Using Your Passkey
From here the sign-in is a fingerprint, a face, or a device PIN instead of a typed password.
- The next time you sign in to Microsoft 365 (e.g., at
office.com), enter your email address and click Next. - Click Sign in with a passkey or Use Windows Hello or a security key.
- Use your fingerprint, face, or device PIN when prompted.
3. Verify Success
You should reach your Microsoft 365 dashboard without seeing a password screen.
- You should be able to access your Microsoft 365 dashboard immediately after authenticating with your biometrics, skipping the password screen entirely.
Troubleshooting
WARNING
If your company IT department has not enabled passkey support for your organization, you may not see "Passkey" in the "Add sign-in method" dropdown.
That switch is your organization's to throw, and if they have not, no setting on your side turns it on. Passkeys are not only a work-account feature though — your personal Microsoft, Google, and Apple accounts support them now, and How to Set Up and Use Passkeys on Your Phone and Browser covers saving one with Face ID, a fingerprint, or your screen lock PIN.
There is a date attached to that wait if you use SMS or phone calls today. From September 1, 2026, anyone currently set up for SMS or voice verification is enabled for passkeys automatically, and the next time they sign in and complete MFA they are prompted to register one. An organization can delay that change until February 1, 2027, and there is no delaying it beyond that date. So if text messages or phone calls are among your sign-in methods, the question worth putting to IT is when your organization plans to make the switch rather than whether it will. A prompt may reach you before an answer does. By default you can snooze that prompt as often as you like. It reaches you at the end of an ordinary sign-in, after you have entered your password and completed MFA, and the control that defers it is Skip for now. Closing the browser window counts the same as skipping. Whether you are asked at all is decided per device and browser rather than per account, so a passkey registered on your laptop stops the prompt there while a different computer can still raise it. Two things narrow that snooze. Some organizations cap the skips at three, after which you register before you can carry on — but if you were moved onto passkeys automatically on September 1, 2026 because you use text messages or phone calls, that cap does not apply to you and the skips stay unlimited. And from February 1, 2027, anyone whose only remaining verification method is a text message or phone call gets a prompt that cannot be skipped at all.
| Symptom / Error | Potential Cause | Solution |
|---|---|---|
| Passkey option is missing | Organization policy restricts it | Your organization has not enabled passkeys. Ask IT whether it is planned; meanwhile set one up on a personal account, and keep your MFA backup methods registered on the work account. |
| Device prompts for password instead of biometrics | Browser issue or passkey not saved locally | Try clearing your browser cache or re-adding the passkey in Security info. |