Finqle
Account & securityDebtor

Security & login

How to log in to the Debtor Portal, what to expect from our security checks, and how to spot phishing emails that pretend to be from Finqle.

6 Aug 2026

Nederlands

How to log in to the Debtor Portal, what to expect from our security checks, and how to spot phishing emails that pretend to be from Finqle.

TL;DR

  • Login uses a magic link, so there is no password to remember.
  • Magic links expire after 15 minutes and are single-use.
  • Sessions stay valid for 30 days unless you log out manually.
  • Finqle will never ask for your password, ID or full IBAN by email or phone unsolicited.

Logging in

  1. 1
  2. 2
    Enter an email address associated with your debtor company (contact, accounts payable, accounts receivable or invoice email).
  3. 3
    Check your inbox for a magic link from noreply@finqle.com.
  4. 4
    Click the link within 15 minutes. You are in.

Magic link expiry and re-use

  • Expiry: 15 minutes from when it was sent.
  • Single-use: clicking the link consumes it. Request a new one to log in again.
  • Sessions: stay valid for 30 days unless you log out manually.

Who can log in

Any email address on file for your company (contact, AP, AR or invoice email) can access the standard Debtor Portal. No registration or role setup is needed. If your company instead has a registered Connect relationship with user roles and permissions, see Security & login (Connect).

Account recovery

If you no longer have access to the email address on file, ask the merchant you work with to update your contact details with Finqle, or contact Finqle support directly.

Phishing red flags

Be suspicious of any email that:

  • Asks you to reply with your IBAN, password or ID document
  • Comes from a domain that is not finqle.com (watch for f1nqle.com, finqle-support.com and similar)
  • Has a magic link pointing to a domain other than my.finqle.com
  • Pressures you with urgency or threatens immediate consequences

Two-factor authentication (2FA)

Magic-link login already requires control of the registered inbox, which functions as a form of 2FA. Optional TOTP-based 2FA is on the roadmap with no committed ship date. If you need it sooner for compliance reasons, contact Finqle support.

Related articles

Was this article helpful?