Require Identify Verification When Changing Email Address

You can require users to confirm their identities when they change their email address. Previously, users could change their addresses by just logging in with a password. To enhance the security of your org, require identity verification before allowing the address change. This option is disabled by default in existing orgs and enabled by default in orgs created in Summer ’17 and later. This change applies to both Lightning Experience and Salesforce Classic.
Available in: All Editions

Note

Note

A user who no longer has access to the original email address used can’t receive the email notification to confirm identity.

Image of Session Settings Setup screen with "Require Identity verification for change of email address" selected.