July 4, 2026


What to Do When You Receive a Scam or Phishing Email

Scam emails, phishing attempts, fake job offers, suspicious links, and credential-harvesting messages are becoming more common across every industry — and the notary industry is no exception.

Notaries handle sensitive information. We may receive loan documents, estate documents, identification information, wiring-related instructions, client communications, and personal information from signers. Unfortunately, that also makes notaries a target for scammers.

Whether it is a fake signing order, a suspicious email attachment, a request to “verify” your credentials, or a link that does not look quite right, it is important to slow down, verify, and report the scam when appropriate.

Why Notaries Need to Be Extra Careful

As notaries, we are often sent documents and instructions by email. That means we are used to opening messages from title companies, signing services, attorneys, lenders, clients, and sometimes people we have never worked with before.

Scammers know this.

They may send emails that look like they are from a legitimate company. They may copy logos, use familiar language, or create a sense of urgency. Some emails may include links to fake login pages, suspicious attachments, or requests for personal information.

These scams can be designed to steal passwords, access your email, install malware, obtain your notary credentials, or trick you into sending sensitive information.

Where to Report Scam or Phishing Emails

If you receive a suspicious email, here are a few places you can report it:

1. Forward phishing emails to the Anti-Phishing Working Group

If you receive a phishing email, you can forward it to:

reportphishing@apwg.org

The Federal Trade Commission recommends forwarding phishing emails to the Anti-Phishing Working Group. The information helps organizations track and fight phishing scams.

2. Report scams and fraud to the FTC

You can report scams, fraud, and suspicious business practices to the Federal Trade Commission at:

ReportFraud.ftc.gov

The FTC uses reports to help identify patterns, investigate fraud, and provide consumer education.

3. Report cybercrime to the FBI’s Internet Crime Complaint Center

If money was involved, personal information was compromised, you clicked a link, your email was accessed, or the scam appears to be part of a larger cybercrime or fraud scheme, you can report it to the FBI’s Internet Crime Complaint Center at:

IC3.gov

IC3 is the FBI’s central hub for reporting internet crime and cyber-enabled scams.

4. Report phishing attempts or cyber incidents to CISA

You can also report phishing attempts, malware, vulnerabilities, and cyber incidents to the Cybersecurity and Infrastructure Security Agency at:

cisa.gov/report

CISA collects cyber incident information to help reduce cyber risks and respond to threats.

5. Report it inside your email account

Most email providers have a built-in way to report suspicious emails. Use the “Report phishing,” “Report spam,” or similar option in your email account.

This helps your email provider identify and block similar messages in the future.

What to Do Before You Click

Before clicking a link, downloading an attachment, or sending information, take a minute to verify.

Look closely at the sender’s email address. Does it match the company’s real domain? Is there a misspelling or extra character?

Be careful with urgent messages. Scammers often try to make you feel rushed.

Do not log in through links in unexpected emails. Go directly to the company’s website instead.

Do not send your notary commission, driver’s license, E&O insurance, W-9, background check, or certifications to just anyone. Verify who is asking, why they need it, how it will be stored, and whether the company is legitimate.

When in doubt, call the company using a phone number you already know or can independently verify — not the phone number listed in the suspicious email.

What If You Clicked a Link or Opened an Attachment?

If you clicked a suspicious link, opened an attachment, entered a password, or sent personal information, act quickly.

Change your password immediately, especially if you entered login information.

Turn on two-factor authentication if you have not already.

Run a security scan on your device.

Contact your bank or credit card company if financial information was involved.

Report the incident to the appropriate agencies listed above.

If your notary credentials, driver’s license, Social Security number, or other sensitive information may have been compromised, you may also want to consider additional identity theft protection steps.

Final Reminder for Notaries

Notaries are part of the fraud-prevention process, but we also have to protect ourselves.

Scammers are becoming more sophisticated, and the emails are not always obvious. Some may look very real. Some may even appear to come from companies, clients, or contacts you recognize.

The best thing you can do is slow down, verify before you click, protect your credentials, and report suspicious activity when you see it.

A few extra minutes of caution can protect you, your business, your clients, and the public.