Goodbye, OTPs and magic links: Signing up for new Android apps just got a lot easier

Signing up for new Android applications has long been a routine task, often requiring users to navigate through a series of verification steps involving magic links or one-time PINs (OTPs). However, Google has introduced a refreshing change with its new Verified Email feature, designed to streamline this process significantly.

Seamless Sign-Up Experience

With the recent update to Android’s Credential Manager API, users can now register for apps without the cumbersome need to switch to their email applications for verification. The Verified Email feature eliminates the reliance on magic links and OTPs altogether. Instead, it utilizes a “cryptographically verified email credential” that is sourced directly from the user’s Google account and securely stored on their device.

This innovation not only simplifies the sign-up process but also enhances security. App developers can prompt users to create a passkey following the new registration method, adding an extra layer of protection for user accounts.

Versatile Applications

Beyond facilitating app sign-ups, the Verified Email feature serves multiple purposes, including account recovery and re-authentication for sensitive actions, such as altering key settings. This versatility ensures that users can manage their accounts with greater ease and security.

Limitations and Considerations

However, there are some important caveats to note. Currently, the Verified Email feature is limited to consumer Gmail accounts. Users with Workspace or managed accounts will still need to rely on traditional email verification methods for the time being.

Additionally, for Google accounts created with non-Google email addresses, Google has clarified that it does not serve as the authoritative source for these email addresses over time. As ownership of email addresses may change, app developers are encouraged to implement additional verification steps, such as sending an OTP, to confirm that users still have access to their email accounts.

Accessibility Across Devices

One of the most appealing aspects of this new functionality is its accessibility. Users do not need to own the latest Android devices to take advantage of the Verified Email feature. Google has ensured compatibility with devices running Android 9 or newer, as well as Google Play Services version 25.49.xx or later. This means even older devices can benefit from this enhanced sign-up experience.

AppWizard
Goodbye, OTPs and magic links: Signing up for new Android apps just got a lot easier