Six ways people lose something with a fake email address

Each of these is easy to avoid once you have seen it, and each is invisible until it costs you something. In rough order of how often it happens.
1. Using an obvious username
There is no registration, so nothing is reserved. Type test@, admin@ or john@ on a well-known domain and you are opening a mailbox other people are opening right now — and reading each other's messages.
Instead: add something nobody would guess. anna.kovalenko7391 still reads like an ordinary address, which is the other thing you want.
2. Taking the most famous domain
The best-known fake email domains are the ones sign-up forms distrust first — that is precisely why they are known. A quiet domain, especially one with a country code that matches the service, is refused far less often.
3. Using it as a recovery address
Instead: if losing the account would hurt, use an address you keep. If you want something in between — your own domain gives you an address that is not tied to you and does not expire.
4. Editing the address after you have used it
Changing the username opens a different mailbox. If you already gave the first address away, the code is arriving there — and the page you are staring at is a different, empty inbox.
Instead: settle on the address before you paste it anywhere. If you have already changed it, type the original back exactly and the messages are there.
5. Reusing one address everywhere
One address for twenty sign-ups undoes half the point. Anyone who ends up with it — through a leak, a sold list, or simply by being one of those twenty — can read everything arriving for all the others.
Instead: a fresh address per service. It takes one click, and it also tells you which service leaked when spam starts arriving at exactly one of them.
6. Assuming an attachment is safe because the page looks friendly
Files are not stripped or disinfected here — they are flagged. Two levels of warning appear: one for types commonly used to deliver something harmful, and a stronger one for types that can run programs on your computer.
Instead: read the warning, and apply the ordinary rule — a file you did not expect, in a message you did not ask for, does not get opened.
The short version
| Do | Do not |
|---|---|
| an unguessable username | test@ on a famous domain |
| a fresh address per service | one address for everything |
| settle the address before using it | edit it after sending |
| your own domain for anything lasting | a fake email address for recovery |
| read the attachment warnings | assume files are cleaned |
Everything above is a variation on one idea: the address is real and public, and it is temporary on purpose. Both halves of that sentence have consequences, and the mistakes come from remembering only one of them.