As part of Notta's ongoing security enhancements, we've implemented email verification for certain third-party account logins. This new step helps prevent unauthorized account use and further strengthens your data security.
Overview
To further enhance account security, Notta has updated the login process for third-party accounts such as Google, Microsoft, and Apple. This update aims to improve data protection and enterprise-grade compliance.
Moving forward, Notta will validate both the unique third-party ID and the email address, If:
- The third-party ID has not been linked to any Notta account, and
- The email address is already registered in Notta
Then, the user will be required to complete email verification before binding the accounts and logging in.
Third-party accounts that are not verified via email cannot be merged with existing Notta accounts and therefore cannot be used to log in.
Who is affected?
Affected:
- Users who first registered with an email and later attempt to log in with a third-party account using the same email
Not affected:
- Users who originally registered with a third-party account
- Users who have already logged in using a third-party account before the June 5, 2025 update
- Enterprise users logging in via SSO (Single Sign-On), regardless of login timing
New login flow
If a user initially registered with an email address and later attempts to log in using a third-party account with the same email, the following steps will apply:
- The user selects to log in with a third-party account (e.g., Microsoft).
- If the email is already registered in Notta, a verification code will be sent to that email.
- The user enters the code to verify ownership.
- Upon successful verification, the third-party account is securely linked.
- The user can then log in normally using the third-party account from that point onward.
Note: Users who do not complete email verification will not be able to log in via third-party accounts.
Important note for mobile app users
Currently, the Notta mobile app does not yet support this email verification process. If a user registers with an email and then tries to log in via a third-party account on the app, an "Unknown error" may occur.
Support for email verification in the mobile app is planned for release in July 2025.
Recommended actions before the app update:
- If you registered using an email on the app, please continue logging in with your email and password
- Alternatively, use the Notta web version to complete the email verification and third-party account binding, then return to the app and log in using the third-party account