A fully managed end-to-end service for digitally signing code, documents, and applications. (formerly Trusted Signing)
Firstly want to highlight that Microsoft Support that contacted me via private message was completely unhelpful. I managed to discover what the issue is after reading through the documentation in detail. I told Microsoft Support what needed to be done to fix it, and they cannot help me.
When you create a Organization Validation Request, make sure to use a User Account with a Entra Verified ID in the Primary Email Field. In our case, I made the mistake of using a shared mailbox, which cannot have a Verified ID assigned to it. This means that once you receive your email to complete the Validation Request, you are unable to authenticate the email link. Once a Validation Request is in progress, it cannot be edited to change the Primary Email address property. The Validation Request can also not be deleted or removed in any way.
To make matters worse, Validation Requests are linked to your Azure subscription, not the Trusted Signing Account. If your Validation Request is stuck, deleting the entire Trusted Signing Account and creating it again does nothing. The pending Validation Request will still be there.
Once you are in this situation, the validation request is effectively bricked. Been waiting 2 weeks now with no response or resolution from Microsoft Support.
Be very careful about what you enter into every single field of the Validation request.