Hello @Staddon, Tim , it is not posible to differentiate which methods authentication are enabled for MFA, SSPR or primary authentication. This is by design. The exception is SMS: you can see if its enabled for signing in trough thre smsSignInState
property of the phoneAuthenticationMethod
that belongs to him. .
MFA and SSPR management and methods have been combined. A method is not registered exclusively for MFA or for SSPR. If a user has registered SMS and policy allows both MFA and SSPR for the given user then he will be able to use SMS for both. If latter the SMS is disabled by policy, he won't be able to use the method but its registration will remain. For more information about what methods support MFA or SSPR take a look to How each authentication method works.
Let us know if you need additional assistance. If the answer was helpful, please accept it and rate it so that others facing a similar issue can easily find a solution.