How do I skip email verification for members of our workspace?
Updated 2 days ago by Carla Sese
Applies to School and Classroom workspaces only
Verification emails protect your workspace, but they aren't right for every school. Some districts block external email for students, and some classrooms just want frictionless sign-ups. School and Classroom admins can control both kinds of verification under Settings → Access → Security
Go to Settings → Access → Security
Toggle the button
Require verification for SSO account linking - This controls verification when linking an SSO login to a workspace account. Members confirm a code sent to their email as proof they belong to your workspace. For Padlet for Schools, that's an email matching your approved domains or a CSV invite. For Classroom, it's joining via your member invite link. When it's off, eligible members skip the code. This only applies to Microsoft, SAML and OIDC logins. Members who sign in with Google or Apple never get a code.
Why is Padlet suddenly asking my students to verify their email? This never happened before.
This isn't limited to brand-new members. It can happen to people who've belonged to your workspace for a while too. Verification triggers per login method, instead of per person: a password-login code appears the first time someone signs in from a device that hasn't been verified before, and an SSO code appears the first time someone links a Microsoft, SAML or OIDC login that hasn't been verified and linked yet. Google and Apple sign-ins don't ask for a code, since both already verify the email address on their side. So if a long-time member switches devices, or signs in with SSO for the first time after previously using email/password, they'll see the prompt even though nothing changed about their membership. If you're seeing this for the very first time across your whole workspace, it's also worth checking Settings → Access → Security, since the setting may have been recently turned on there.
So if I turn it off, am I making my library less secure?
Not in the way it sounds. This toggle only ever affects people who were already going to be let in. It's removing a confirmation step, not a security gate. Your actual membership rules (approved domain list, CSV invite, or invite link) still fully apply either way.