Fix ‘The account you’re trying to add is not valid at this time.’ on Authenticator
Microsoft Authenticator makes it easier to secure Microsoft 365, Microsoft Entra ID, work, and school accounts with multifactor authentication. However, you may sometimes see an error when trying to add an account to the app:
“The account you’re trying to add is not valid at this time. Contact your admin to fix this issue (uniqueness validation).”
This message can be confusing because it appears inside Microsoft Authenticator, making it seem like the app itself is broken. In many cases, however, the problem is related to the account or Microsoft Entra ID configuration, rather than the Authenticator app.
The phrase “uniqueness validation” is particularly important. It can indicate that Microsoft Entra ID is detecting a conflict involving the user’s identity or account information. Microsoft Q&A discussions about this exact error have included cases involving conflicts between usernames, email addresses, aliases, and Microsoft Entra user information.
Fix “The account you’re trying to add is not valid at this time. Contact your admin to fix this issue (uniqueness validation)” Error on Microsoft Authenticator

To fix the “The account you’re trying to add is not valid at this time. Contact your admin to fix this issue (uniqueness validation)” error in Microsoft Authenticator, first make sure the work or school account is active and that you are using the correct sign-in address. Then update Microsoft Authenticator, verify your phone’s date, time, and internet connection, and restart the registration process with a newly generated QR code.
If the error continues, ask your Microsoft 365 or Microsoft Entra administrator to check for duplicate or conflicting user information, review the account’s authentication methods, and use Require re-register MFA if appropriate.
Microsoft documents this administrator action as a way to remove existing Authenticator and other MFA registrations so the user can register again.
Step 1: Make Sure You Are Using the Correct Work or School Account
Before changing anything, check the account that you are attempting to add to Microsoft Authenticator.
This error is commonly associated with work or school accounts, which are managed through Microsoft Entra ID. Make sure you are entering the organization’s actual Microsoft 365 sign-in address rather than a personal Microsoft account.
For example, your organization may provide an address such as name@company.com, while your Microsoft Entra account may have a different sign-in identifier behind the scenes.
If your organization recently changed your email address, username, domain, or account configuration, do not assume that the old address and new address are interchangeable. Ask your administrator which username you should use.
Also try signing into another Microsoft 365 service with the same account. If you cannot sign in there either, the problem may be with the account itself rather than Microsoft Authenticator.
Step 2: Check Whether the Account Is Active
The next thing to check is whether your Microsoft account is still active.
A work or school account can be disabled, deleted, blocked, or incorrectly configured by an administrator. If the account is not active, Microsoft Authenticator may not be able to complete its registration.
If you can access Microsoft 365, try signing into a service such as Outlook on the web or another service provided by your organization.
If you cannot sign in, contact your administrator and ask them to verify that your account is active.
If you can sign in successfully but Authenticator still displays the uniqueness validation error, continue with the next steps.
Step 3: Check Your Phone’s Date and Time
An incorrect date or time can cause authentication and security checks to behave unexpectedly.
On Android, open Settings and search for Date and time. Turn on options such as Automatic date and time and Automatic time zone, if available.
On an iPhone, open Settings, select General, and then select Date & Time. Turn on Set Automatically.
The exact names can vary depending on your phone model and operating system version.
After changing these settings, completely close Microsoft Authenticator and open it again. Then try adding the account.
Step 4: Update Microsoft Authenticator
Make sure you are using the latest version of Microsoft Authenticator.
On Android, open the Google Play Store, search for Microsoft Authenticator, and select Update if an update is available.
On iPhone, open the App Store, search for Microsoft Authenticator, and update the application if a newer version is available.
An outdated app can sometimes cause registration problems, especially when Microsoft’s authentication services change.
After updating the app, restart your phone and try the account registration again.
Step 5: Generate a New Authenticator QR Code
If you are registering Microsoft Authenticator using a QR code, the QR code may no longer represent the correct registration state.
Instead of repeatedly scanning the same code, start the registration process again and generate a new QR code.
If your organization uses Microsoft Entra’s Security info page, the administrator or user may be able to start the Authenticator registration from there. Microsoft’s documentation describes registering Authenticator through Security info, where the user selects Add method, chooses Authenticator app, and follows the setup instructions.
Once the new QR code appears, open Microsoft Authenticator, select Add account, choose Work or school account, and scan the new code.
If the same uniqueness validation message immediately returns, continue to the administrator-focused steps.
Step 6: Ask Your Administrator to Check for Duplicate Account Information
This is one of the most important steps because of the wording “uniqueness validation.”
Ask your Microsoft 365 or Microsoft Entra administrator to check whether your account has conflicting identity information.
For example, an administrator may need to check whether the same email address, sign-in name, proxy address, or other identity information is associated with another account.
Microsoft Q&A discussions involving this exact error have reported cases where usernames and email aliases conflicted with another identity.
This is not something a normal Authenticator user can reliably fix from the phone.
Your administrator should review the affected user in the Microsoft Entra admin center and check the account’s identity and authentication configuration.
If a duplicate or conflicting value is found, the administrator should correct the underlying account configuration before attempting Authenticator registration again.
Step 7: Ask the Administrator to Review Authentication Methods
Microsoft Entra ID allows administrators to control which authentication methods users can register.
Microsoft recommends managing authentication methods through Entra ID > Authentication methods > Policies. Administrators can enable authentication methods for all users or target specific groups.
Ask your administrator to confirm that Microsoft Authenticator is allowed for your account or the group to which you belong.
The administrator should also check whether a Conditional Access policy, authentication method policy, or another security configuration is affecting your registration.
Microsoft explains that authentication policies determine which authentication methods users can register and use.
Step 8: Ask the Administrator to Require MFA Re-Registration
If the account contains an old or corrupted Authenticator registration, an administrator can reset the user’s MFA registration.
Microsoft Entra provides an administrator action called Require re-register MFA. Microsoft says this action removes existing phone numbers, Microsoft Authenticator registrations, and software OATH tokens associated with the user’s MFA configuration, allowing the user to register a new authentication method at the next sign-in.
The administrator can sign in to the Microsoft Entra admin center, locate the affected user, open the user’s authentication settings, and use the appropriate MFA re-registration option.
After the administrator completes the reset, wait a short while and then begin the Authenticator setup again.
Do not ask an administrator to reset MFA casually if you are already locked out, because you may need another verification method to complete the recovery process.
Step 9: Remove the Old Account From Authenticator and Register It Again
If your administrator has confirmed that the account is correct and has reset the old MFA registration, you can set up Authenticator again.
Open Microsoft Authenticator and look for the affected work or school account.
If an old registration is still present and your administrator has instructed you to remove it, remove the account from Authenticator.
Then select Add account, choose Work or school account, and complete the registration process using the new QR code or sign-in instructions provided by your organization.
Microsoft’s current documentation confirms that users can register Microsoft Authenticator through the Security info registration process.
Step 10: Contact Microsoft Support if You Are the Only Administrator
If you are the only Global Administrator and the uniqueness validation error prevents you from accessing your organization’s Microsoft 365 or Microsoft Entra administration, the situation is more serious.
You may not be able to fix the problem yourself because the account you need to repair is also the account that has administrator privileges.
Microsoft Q&A guidance for cases where the only administrator is locked out recommends contacting Microsoft Support or the appropriate Microsoft account recovery team rather than attempting to bypass the authentication system.
When contacting support, provide the exact error message:
“The account you’re trying to add is not valid at this time. Contact your admin to fix this issue (uniqueness validation).”
Also explain whether the problem started after a username change, email-domain change, alias change, account migration, device replacement, or MFA reset. These details can help the support team understand what changed before the registration failure occurred.
Step 11: Try the Registration Again After the Account Is Fixed
Once your administrator has corrected the account conflict or reset the MFA registration, do not immediately assume that the previous QR code will work.
Start a fresh registration.
Open the organization’s Security info page or follow the registration link supplied by your administrator. Select Add sign-in method, choose Microsoft Authenticator, and follow the instructions.
When the QR code appears, scan it using Microsoft Authenticator.
Complete the test notification or verification step. If the registration succeeds, you should see the organization account inside Authenticator and be able to use it for future MFA requests.
Faqs
What does uniqueness validation mean in Microsoft Authenticator?
Uniqueness validation generally indicates that Microsoft is checking whether the account or identity information involved in the authentication registration is valid and does not conflict with another identity or configuration. With this particular error, the issue may require an administrator to investigate the Microsoft Entra account rather than simply reinstalling Authenticator. Microsoft Q&A discussions have specifically mentioned possible conflicts involving account names and email aliases.
Is Microsoft Authenticator itself broken?
Not necessarily. The error appears in Authenticator, but the underlying problem can be associated with Microsoft Entra ID account configuration or authentication registration. Updating the app is still worth trying, but persistent uniqueness validation errors usually require an administrator to investigate the account.
Can I fix this error without an administrator?
If you are using a personal Microsoft account, some normal troubleshooting steps may help. However, if this is a work or school account, the exact uniqueness validation message may require administrator action. Your administrator may need to check the account, authentication methods, policies, or existing MFA registration.
Will deleting Microsoft Authenticator fix the problem?
Usually, you should not start by deleting the app. If the underlying issue is a duplicate identity, conflicting account information, or Microsoft Entra MFA registration, reinstalling the app will not necessarily correct it.
Should my administrator reset MFA?
If the account has an old or incorrect Authenticator registration, an administrator can use Require re-register MFA to remove existing MFA registrations and allow the user to register again. Microsoft documents this as an administrator-supported recovery action.
What if I changed my phone recently?
A phone change can require you to register Microsoft Authenticator on the new device. However, if the new device consistently shows the uniqueness validation error, ask your administrator to check the account and existing authentication methods rather than repeatedly attempting registration.
What if I am the only Global Administrator?
If you are the only administrator and cannot access the tenant because MFA registration is failing, you may need to contact Microsoft Support for account recovery. Microsoft Q&A guidance specifically recommends support intervention when the sole administrator is completely blocked.
Summary
The “The account you’re trying to add is not valid at this time. Contact your admin to fix this issue (uniqueness validation)” error in Microsoft Authenticator is not always an app problem. The wording can point to an issue with the Microsoft Entra account, identity information, authentication registration, or authentication policy.
Start by checking the account, confirming that it is active, correcting your phone’s date and time, updating Authenticator, and generating a fresh registration QR code. If the error remains, the most important step is to have your Microsoft 365 or Microsoft Entra administrator check for conflicting account information and review the user’s authentication methods.
If necessary, the administrator can use Require re-register MFA to clear existing Authenticator registration and allow a fresh setup.
If you are the only administrator and cannot regain access, contact Microsoft Support rather than attempting to bypass the organization’s authentication controls.
