Sorry Microsoft but I don’t buy that the authenticator app CANNOT work without app use diagnostics from every single user
@0xabad1dea All the authentication apps appear to be using the same standard, so just use the Google Authenticator or 1Password. I use the latter and it works for Azure, Google, and everything else K have tried.
@bhawthorne @0xabad1dea Microsofts app does more, unfortunately: They do TOTP, but also custom stuff for Microsoft services (like “enter this two-digit number in your Authenticator app to sign in”).
@yProd @bhawthorne @0xabad1dea Which is totally optional. Just use TOTP.
@apicultor Well, that depends on your situation. For organization-managed accounts, it may very well be non-optional.

@yProd If the organization is mandating their own devices, they can insist on whatever the hell they want.

If the organization permits BYOD and tries to enforce this shit on personal devices, at least in the EU that would be an instant GDPR own-goal.