About

The consultancy born at the intersection of behavioral economics and human experience.

RENÉ STUDIO

The CX design platform we built from a decade of client work.

Open rene.cx ↗
NOW HIRING

Join a team reshaping how the world experiences brands.

View open roles →

COMPANY

GROW WITH US

CONNECT

Services

Comprehensive CX and management consulting for enterprise brands.

RENÉ STUDIO

Every engagement, mapped and scored in one AI workspace.

Open rene.cx ↗
ALL SERVICES

Explore the full range of CX & management consulting services.

Browse all services →

CORE

SPECIALIST

Solutions

Structured solutions that turn CX ambition into measurable outcomes.

RENÉ STUDIO

Map, score and fix the journeys we redesign, with AI.

Open rene.cx ↗
ALL SOLUTIONS

Explore every CX solution we offer.

Browse solutions →

STRATEGY & GOVERNANCE

DESIGN & DELIVERY

CULTURE & EXPERIENCE

Industries

A decade of CX transformation across the region's defining sectors.

RENÉ STUDIO

Sector-ready journeys, scored by AI in minutes.

Open rene.cx ↗
ALL INDUSTRIES

See how we work across every sector.

Browse industries →

BUILT ENVIRONMENT

FINANCE & TECH

PEOPLE & MOBILITY

Products

Proprietary tools, platforms, and AI that power CX transformation.

RENÉ STUDIO

Design, score and fix customer journeys with AI.

Open rene.cx ↗
REBELDECK A · 36 FORCES

The forces that shape how humans experience the world.

Explore REBEL Reveal →
ALL PRODUCTS

Explore the full Renascence product ecosystem.

Browse products →

AI & TECHNOLOGY

LEARNING & GAMES

PLATFORMS & TOOLS

CX TOOLKIT

Opinion

Insights, research, and conversations at the frontier of CX.

RENÉ STUDIO

Turn what you read into a journey you can score.

Open rene.cx ↗
ReadExperience JournalArticles & research on CX, behavior, and transformation.Watch & listenExperience LoomOur video podcast on CX & behavior.CuratedCX NewsIndustry news that matters in CX, minus the noise.

Latest articles

Latest episodes

Latest news

Hub

Free tools, templates, and resources to advance your CX practice.

RENÉ STUDIO

Design, score and fix customer journeys with AI.

Open rene.cx ↗
THE MANIFESTOBurn the Deck.
Ten Virtues. Zero Excuses.Start reading →
THE HUB

Every free tool, template and resource in one place.

Visit the Hub →

AI TOOLS

FREE TOOLS

LEARNING

CULTURE

Behavioral Science · 20 July 2026

Microsoft Entra ID Makes Passkeys Default from September 2025

Microsoft will make passkeys the default authentication method in Entra ID from 1 September 2025, retiring SMS and voice login by 1 February 2027.

Newsdesk
Curated briefing · 3 min read

What happened

Microsoft has announced that passkeys will become the default authentication method for Entra ID, its cloud-based identity and access management platform, beginning 1 September 2025. The move effectively ends the era of optional passwordless authentication for enterprise Microsoft customers and sets a firm deadline for legacy methods: SMS and voice-based authentication provided by Microsoft will be discontinued on 1 February 2027.

The transition gives organisations a phased runway — roughly six months of rollout before the new default takes hold, and a further period before legacy fallbacks disappear entirely. Microsoft's direction of travel is clear: passkeys are no longer a security enhancement organisations can elect to adopt; they are becoming the baseline expectation for anyone operating within the Entra ID ecosystem.

The urgency behind the shift is partly competitive and partly threat-driven. Security professionals have highlighted that AI is now being used to automate phishing campaigns at scale, generate convincing fraudulent login pages, and industrialise credential theft — making traditional SMS one-time passwords an increasingly weak link in enterprise security chains.

Why it matters

For customer experience and service-design practitioners, authentication is a front-line interaction — often the first moment of friction a user encounters. Passwords and SMS codes carry well-documented behavioural costs: forgotten credentials, abandoned sessions, support-desk load, and the anxiety that comes from uncertainty about whether a login page is genuine. Passkeys, which rely on device-bound cryptographic keys rather than shared secrets, remove several of these pain points simultaneously. The login experience becomes faster, more consistent, and — critically — harder to spoof, which reduces the cognitive load associated with security vigilance.

From a behavioural economics perspective, Microsoft's decision to make passkeys the default rather than an opt-in is a textbook application of choice architecture. Default effects are among the most robust findings in behavioural science: the majority of users and administrators accept defaults rather than actively reconfiguring them. By shifting the default, Microsoft is leveraging inertia in the direction of better security outcomes — a reminder that how a choice is structured often matters more than the information provided to support it.

By the numbers

  • 1 September 2025 — date from which passkeys become the default authentication method in Microsoft Entra ID.
  • 1 February 2027 — deadline after which Microsoft-provided SMS and voice authentication will be permanently retired.
  • ~17 months — the transition window organisations have between the default change and the hard cut-off for legacy methods.

The Renascence take

Most commentary on this announcement will focus on the cybersecurity rationale. That framing, while valid, undersells the more consequential story: a major platform vendor is using default architecture — not persuasion, not awareness campaigns — to reshape the authentication experience for millions of enterprise users simultaneously.

The lesson here is not about passkeys specifically; it is about the power of defaults as a service-design instrument. Organisations that wait for users to voluntarily adopt better behaviours will always lag. What Microsoft is doing — deliberately and at scale — is what customer-obsessed operators should be doing inside their own platforms: audit every opt-in that should be an opt-out, every friction point that persists only because no one redesigned the default. The February 2027 deadline also carries a warning for enterprise CX teams: if your customer-facing authentication still relies on SMS OTPs, the clock is running, and the transition plan needs to start now, not when the cut-off is imminent.

Sources

This briefing was written by our Newsdesk, synthesising reporting from the outlets below. Follow the links for the original coverage.

Stay ahead of CX

Get the signal, not the noise.

The stories shaping customer experience — plus the Journal and Experience Loom — in your inbox.