AmberKey is in invite-only beta. Join the newsletter to request an invite and hear the moment it opens to everyone. Sign up ↓

Playbook

Microsoft: No Legacy Tool, So Keep It Alive

Platform claims verified July 16, 2026

Read this first: Microsoft is the exception

Google and Apple each give you a built-in way to hand your account to family (Inactive Account Manager, Legacy Contact). Microsoft does not. There is no legacy contact, no inactive-account manager, no designee feature of any kind. That single fact drives everything below: because there is no official handoff, your whole plan for a Microsoft account is to keep the credentials in your vault and keep the account alive. Do not mark this card as “has a built-in legacy tool,” because it doesn’t.

A Microsoft account is usually far more than email. It can be the Windows sign-in on a PC, OneDrive (files and photos), Microsoft 365 (documents), Xbox, and the password-reset hub for all of them. Losing it can lock a family out of the deceased’s computer itself.

The two clocks that will delete it

Microsoft closes inactive accounts on a schedule, and for a legacy plan this is the real hazard:

  • Outlook.com and OneDrive freeze after 1 year of inactivity, and the email and OneDrive files are deleted shortly after.
  • The Microsoft account itself expires after 2 years of inactivity.

So an account you set aside “for later” can be gone before anyone needs it. Sign in at least once or twice a year, or fold it into whatever routine keeps the rest of the plan warm.

What to do now

  1. Put the credentials in your vault (Layer 2). The email/username, the password, and (critically) a note on how to pass its two-factor check. This is the only reliable path, because the alternative (below) is slow and may fail.
  2. Cover the second factor. If sign-in needs a code, the plan must include it: keep the phone number alive (see the carrier playbook), save the Microsoft Authenticator recovery, or store printed recovery codes with the credentials. An unlocked Windows device or its passcode also often gets you in, so escrow the device passcode too.
  3. Note what rides on it. On the card, jot which of these apply: Windows PC login, OneDrive, Microsoft 365 subscription, Xbox. It tells your executor how urgent this one is.
  4. Keep it active. Set your own reminder to sign in within the 1-year window.

If the credentials are lost: the fallback (slow, uncertain)

Without the password, Microsoft will not simply hand the account to family. Their stated position is that they must first be formally served with a valid subpoena or court order before they can consider releasing a deceased user’s information, and even then release is not guaranteed. A few countries have a lighter documentary path (for example, Germany accepts a death certificate, the deceased’s ID, an inheritance certificate, and the requester’s ID), but the global default is the legal route. This is exactly why the credentials-in-vault plan matters: it skips this process entirely.

When someone has died (executor steps)

  1. Move fast on the 1-year clock if you have the credentials. Sign in to stop the freeze before anything is deleted.
  2. With credentials: download what matters (OneDrive files, important Outlook mail), then close the account yourself through the standard closure flow. A closed account has a 60-day grace period before permanent deletion, so you can reopen it if you closed too soon.
  3. Cancel Microsoft 365 to stop the renewal, once the data is saved.
  4. Without credentials: use the deceased-user support page (linked in sources) and expect to be asked for a court order in most regions. Save nothing to chance, because this can take a long time and may not succeed.

The honest bottom line

For Google and Apple, the plan is “set up their tool.” For Microsoft, the plan is “there is no tool, so hold the keys yourself and keep the lights on.” Treat this card as a Layer-2 secret, not a native legacy mechanism, and put a sign-in reminder on your calendar.