email sign in

  • Unknown's avatar

    I was notified that someone signed into my account via email link and if was not me. What should I do?

    The blog I need help with is: (visible only to logged in users)

  • Hi there,

    First thing you should do is to immediately change your email account’s password, enable two-factor authentication on your email account, and if your email provider offers an option to force-logout active sessions, do that as well.

    Because the only way someone can log into your WordPress.com account via an email login link, is if they have access to your email account itself.

    Next I’d also recommend updating your WordPress.com password, and enabling 2FA for your WordPress.com account as well, as an extra layer of security. That way, even if someone gains access to your email, they won’t be able to use the link to log into your account with us, as the won’t have the two-step code.

    Change or Reset Your Password

    Enable Two-Step Authentication

    All that said, I don’t see any evidence in your account’s logs that someone has recently logged into it using an email login link.

  • The topic ‘email sign in’ is closed to new replies.