Gmail – If someone hacked into the Gmail account, wouldn’t that let them go in and change the recovery email all together

gmailpassword-recovery

So what is the point of a recovery email? Shouldn't my recovery email be secret?

Best Answer

The purpose of a recovery email is not to retake an account that was broken into. As Google documents:

We'll use your recovery email address to communicate with you under these circumstances:

• We need to confirm your username after you create an address
• You can't sign in to Google
• You've forgotten your password
• You're about to run out of storage space
• We need to alert you to any unusual activity involving your address