Remote Online Notarization (RON) makes it easy to sign and notarize documents from home. Unfortunately, criminals also try to use RON platforms to impersonate people, open accounts, or authorize high-risk transactions. The good news: RON abuse usually leaves small digital clues before real damage happens. This guide explains early warning signs, where to check for issues, and what to do right now if you suspect someone is using your name.
What is Remote Online Notarization—and Why Scammers Use It
Remote Online Notarization allows a commissioned notary to verify identity and witness signatures via a secure video session. Platforms typically require government IDs, selfies or live video, knowledge-based authentication (KBA) questions, and liveness checks. Because RON can finalize legal paperwork from anywhere, fraudsters try to pass these checks using stolen data, synthetic identities, or manipulated IDs.
Early Warning Signs Your Name Is Being Used
Suspicious activity often starts small. Watch for these specific, early signals that someone attempted RON in your name:
- Unexpected “identity verification failed” emails or texts from RON platforms, e-sign vendors, or notarization services you don’t recognize.
- Invitations to a notarization session you didn’t request, especially with language like “Complete your notarization” or “Your notary is waiting.”
- Odd KBA (knowledge-based authentication) questions about loans, addresses, or vehicles you’ve never had—sometimes appearing in emails or within a portal sign-in.
- Alerts of multiple verification attempts within minutes or hours, suggesting a bot or persistent fraudster is testing data combinations.
- Notary appointment confirmations on your calendar (added by third-party integrations) you don’t recognize.
- Accounts created on e-sign or ID verification platforms that send you “welcome” notices, password resets, or device confirmation emails you didn’t request.
- Mismatched time zones or locations in security emails indicating an access attempt from another state or country.
- Unfamiliar documents awaiting your signature in document portals (deeds, powers of attorney, or loan packets) that list your name.
- Customer support confirmations thanking you for contacting them about a notarization or identity reset that you never initiated.
- Postal mail related to notarized documents—including rejection notices, “missing information” letters, or copies of filings—arriving without your involvement.
High-Risk Documents Criminals Try to Notarize
Knowing which documents attract fraudsters helps you prioritize your response:
- Property-related: deed transfers, quitclaim deeds, lien releases.
- Financial: loan agreements, HELOC paperwork, account authorizations.
- Authorization: powers of attorney (financial or medical), beneficiary forms.
- Business: operating agreements, corporate changes, UCC filings.
Any unexpected request related to these items deserves immediate scrutiny.
Quick Triage: What to Check in the First 15 Minutes
If you spot a warning sign, act quickly. Early actions can stop an impersonation before it finalizes.
- Do not click suspicious links. Instead, go directly to the official website by typing the address or using a trusted bookmark.
- Search your inboxes for terms like “notary,” “remote notarization,” “verification,” “DocuSign,” “HelloSign,” “Notarize,” “BlueNotary,” “OneNotary,” and your full name.
- Check account security emails for new-device logins or failed verifications. Review spam and trash folders.
- Look for portal accounts you didn’t open. Try “forgot password” on major RON or e-sign platforms; if your email returns an account, that’s a clue.
- Document everything. Save emails with full headers, take screenshots, note timestamps, sender addresses, and case numbers.
How RON Identity Checks Work—and How Attacks Slip Through
RON platforms commonly use a layered approach:
- ID document capture (front/back scans) and liveness/selfie verification to match a face to an ID.
- KBA questions generated from credit header data and public records.
- Device and geolocation checks plus session recordings.
Fraudsters may use breached data, credit header records, or altered IDs. They often “probe” first—triggering failed KBA or ID checks. Those failures are your early alarm.
Signals From Your Digital Footprint That Increase Risk
The more of your data is publicly exposed, the easier it is to pass RON checks. Risk indicators include:
- Data broker listings showing your full name, DOB, past addresses, and relatives.
- Public social posts revealing life events, vehicles, or schools that can seed KBA guesswork.
- Leaked credentials from past breaches that enable account creation or email takeover.
- Unfrozen credit files allowing new-account KBA pulls to line up cleanly.
Immediate Response Plan if You Suspect RON Abuse
Move from detection to containment with these steps:
- Contact the platform’s support team (via official site) to report suspected impersonation. Ask them to:
- Cancel pending sessions or document packets in your name.
- Flag your email/phone for manual review on future attempts.
- Preserve logs and session recordings for investigation.
- Enable strong authentication on your email and any related accounts—turn on app-based 2FA and revoke unknown devices or sessions.
- Freeze your credit with Equifax, Experian, and TransUnion to prevent new accounts that could facilitate notarized transactions.
- Place a fraud alert with the credit bureaus if you saw concrete attempts, so creditors take extra steps to verify identity.
- Check property records at your county recorder’s website for recent filings under your name and address.
- Notify relevant institutions (bank, title company, mortgage servicer) if documents appeared to involve your accounts or property.
- File reports if you have evidence of attempted or successful fraud:
- FTC IdentityTheft.gov for an identity theft report and recovery plan.
- Local law enforcement if you received forged documents or monetary loss occurred.
Ongoing Monitoring: Catch Small Changes Before Big Damage
Because RON attempts are often tied to financial or property moves, ongoing monitoring helps you catch related activity early:
- Credit monitoring and alerts for new inquiries, accounts, and address changes.
- Dark web or breach exposure checks for your email, phone, and SSN.
- Bank and card alerts for transfers, external linkages, and wire activity.
- Property alert programs some counties offer to notify you of filings in your name.
If you want a single place to track credit changes and identity-related signals tied to financial activity, consider using a dedicated monitoring service. For a practical option, see our resource on privacy, credit monitoring, and identity protection.
How to Reduce Your Exposure Before Fraudsters Strike
Minimize the public data that fuels successful RON impersonation:
- Opt out of data brokers that publish your name, addresses, age, and relatives. Fewer public facts mean harder KBA questions for attackers.
- Limit oversharing on social media. Remove posts revealing addresses, vehicles, or milestones that appear in public records.
- Use unique, strong passwords and app-based 2FA for email, cloud storage, and e-sign services; your inbox often controls password resets.
- Keep your ID secure. Never send a driver’s license scan via email to unknown parties. Verify the requester and use secure portals only.
- Consider a PO box or virtual mailbox to reduce physical mail exposure that can assist document fraud.
Verifying a Legitimate RON Request
Not every remote notarization is fraudulent. When a legitimate request arrives, make sure it passes these checks:
- Request context: You recognize the sender, the transaction, and the timing (e.g., closing with your known title company).
- Secure platform: The session is scheduled through a well-known provider and accessed by manually entering the official URL.
- Proper paperwork: You review the full document packet beforehand; it matches your understanding and contains no surprise pages.
- Video and ID process: You expect to complete live video, liveness checks, and show valid ID; anything bypassing this is suspicious.
- Out-of-band confirmation: If unsure, call the organization using a phone number you independently verify, not the one in the email.
Red Flags Inside a RON Session
If you enter a session and something feels off, treat it as a stop sign:
- Pressure to rush without reviewing documents fully.
- Instructions to disable security checks or circumvent liveness steps.
- Mismatched names or addresses buried in the paperwork.
- Requests to share screens or show sensitive non-ID documents that aren’t required.
- Payment requests to personal accounts or cryptocurrency.
What Notaries and Platforms Do—and Don’t—Protect You From
Reputable RON platforms and commissioned notaries follow legal identity-proofing steps, maintain audit trails, and retain recordings. These controls deter many attacks, but they can’t:
- Prevent all data-based impersonation if an attacker already has your PII and passes KBA.
- Detect synthetic identities that resemble your data unless verification is strict.
- Monitor your wider financial identity across creditors, banks, or property records.
Your best defense is early detection, layered monitoring, and reducing exposed personal data.
Frequently Asked Questions
Is a failed RON verification in my name a big deal?
Yes. Failed attempts often mean your data is circulating and being tested. Treat it as a precursor to other fraud, including account openings or property scams.
Could this just be a typo or someone with a similar name?
It’s possible, but identical contact details (your email or phone) make that unlikely. If communications reached you directly, proceed as if it’s targeted.
Do I need to freeze my credit every time?
If you have evidence of attempted impersonation or suspicious document activity, a freeze is a strong preventive step and can be lifted temporarily when needed.
Will a RON attempt affect my credit score?
The attempt itself won’t. However, if the attacker opens accounts or initiates loans tied to notarized documents, that can impact your credit and finances.
How long should I monitor after an incident?
Stay vigilant for at least 12 months. Many attackers revisit targets after initial failures or when new data breaches occur.
A Simple Checklist You Can Save
- Unexpected RON email or text? Don’t click—verify on the official site.
- Search inbox for “notary,” “verification,” and provider names.
- Turn on app-based 2FA and check for unfamiliar logins.
- Freeze credit and add a fraud alert if attempts are confirmed.
- Check county property records and notify your bank or title company.
- Document all evidence and file reports if you see concrete misuse.
- Reduce exposure: data-broker opt-outs, tighter social sharing, unique passwords.
- Set up ongoing alerts for credit, bank, and property activity.
Conclusion
RON attacks often begin with quiet probes—failed KBA, odd invitations, or surprise “verification” emails. Treat those early clues as your head start. Verify through official channels, lock down your accounts, freeze credit when appropriate, and keep watch over credit, financial, and property activity. By minimizing what’s publicly known about you and responding decisively to early signs, you make it far harder for anyone to notarize documents in your name—or to turn small tests into costly fraud.
Good to Know
Fraudsters often test your identity with small, failed RON attempts before launching bigger scams. A single “we couldn’t verify you” email or odd KBA question can be the first and only warning you’ll get.