Like it or not, email is a critical part of our digital lives. It’s how we sign up for accounts, get notifications, and communicate with a wide range of entities online. Critics of email rightfully point out that email suffers from a significant number of flaws that make it less than ideal, but that doesn’t change the current reality. In light of that reality, I believe that an encrypted email provider is a must-have for everyone in today’s age of rampant data breaches, insider threats, warrantless police access, and targeted advertising. If I can get access to your emails, I can get a range of sensitive information including where you bank (to craft more convincing phishing attacks), information about pets (I get notifications each year from the vet for my cats’ annual checkups), calendar reminders, news announcements from family, support tickets from services you use, and more. In a worse case scenario, if I get access to the account itself, it’s trivial to simply issue password reset requests for nearly any of those accounts, have it to sent to said compromised email account, and gain access to a wide number of other accounts you use – from banking to shopping and more – for any number of reasons. So this week, let’s look into the top encrypted email providers The New Oil recommends and their features to help decide which one is right for you.

108 points

TLDR: Proton and Tuta

permalink
report
reply
13 points
Deleted by creator
permalink
report
parent
reply
7 points

Let’s see what europes e2ee ban will bring. Proton is one of the “high risk” services mentioned in the bills debate. Might not be too long before you have to host your own mail server if you want privacy in europe.

permalink
report
parent
reply
-2 points

I’m probably going to downvoted to hell with this… But didn’t people say Proton might be a government Op, even Tuta was mentioned as a honeypot in a recent Court case, so they released a blog post titled: Tuta is not a honeypot…

Idk… my guts tell me, if something is too good to be true, then it’s not true… Proton offerings are amazing for a free plan… And their clients looks good and they sponsor YT channels… I used to be happy to see an Open source project succeed as a business, but the concept of honeypots, made me rethink my view

permalink
report
parent
reply
11 points
*

Yes, and both have proprietary clients. I have proton and I’m in the process to moving away mainly because I can’t use their calendar and contacts natively in Android. Not sure about Tuta, but I never liked them.

permalink
report
parent
reply
4 points

Well do you want privacy or do you want convenience? You can’t really have both here IMO

permalink
report
parent
reply
2 points

You don’t have 100% privacy as long as you send mails to people and services that don’t support proton’s encryption. If I wasn’t privacy I can always use gpg.

permalink
report
parent
reply
2 points

Didn’t Proton release some kind of adapter to solve this issue and allow for IMAP?

permalink
report
parent
reply
10 points
*

Yes, Proton Mail Bridge. I use it with KMail, works pretty well, I’d say.

Edit: I think this client is only for desktop, however. Android users will have to find another option.

permalink
report
parent
reply
1 point

Same calendar doesn’t give notification unless I open it. I’m just looking to replace Google.

permalink
report
parent
reply
8 points

It works for me in GrapheneOS, should work on regular Android, too? What I’m missing is a dedicated Proton contacts application including integration into the phone app.

permalink
report
parent
reply
3 points
Deleted by creator
permalink
report
parent
reply
3 points

Huh, works fine for me for nearly a year now. The only thing I still use google calendar for are some shared calendars.

After proton adds Standard Notes. I’m hoping google maps will be the last product I’m tied to.

permalink
report
parent
reply
3 points

I get notifications some times, but mostly I get them at totally random times. It’s very annoying.

permalink
report
parent
reply
7 points
permalink
report
parent
reply
4 points

The guys who decided to block GrapheneOS for no reason and don’t provide reasonable explanations nor fix the issue… yeah right.

permalink
report
parent
reply
2 points

What, source?

How would you block an OS?

And btw there are some reasons why GrapheneOS may be criticised

permalink
report
parent
reply
2 points
*

Wish I could signup on Tor.

I use dnmx instead

permalink
report
parent
reply
14 points

Mailbox.org missing, pass

permalink
report
reply
11 points

Why isn’t posteo.de in the list? They are like Tuta, but with some more features like IMAP/SMTP.

permalink
report
reply
8 points

A lot of lists for private alternative email services start and and with Proton, seemingly. Services like Posteo, Mailbox, Hushmail, Fastmail, etc are frequently overlooked. It’s a shame because many of these other services are great and Proton is one of the most expensive and not suitable for everyone. I’ve been with Posteo for years and I have nothing but praise for it.

permalink
report
parent
reply
4 points
*

I like the price tag

permalink
report
parent
reply
4 points

Has anyone tried self-hosting on a NAS or similar? I’d be interested to hear the practicalities of it, I imagine it’s not exactly set or forget, and the realities of the enshittified internet present some obstacles, like ending up in spam filters etc.

permalink
report
reply
11 points

A mail server is often mentioned as the first thing you don’t wanna bother with hosting yourself

permalink
report
parent
reply
1 point

I did some more research after your comment and it does indeed sound like it’s not for the feint of heart.

Spam seems to be one of the biggest challenges, both incoming and outgoing. For incoming, it’s a constant arms race with spammers to circumvent spam filtering techniques. But at least that’s something you have control over, you can just turn off your spam filtering and ensure you receive all important email. The real problem is ending up in other people’s spam filters, which you have very little control over once you’ve decided on your mail server domain/certificate.

The crux of the issue seems to be that SMTP is ancient insecure tech designed for an innocent era when email was for universities only. We desperately need a more secure open source email protocol designed for the modern era, but capitalism isn’t having it - instead we’ve got corporations wrestling for control of the next big thing with proprietary protocols… Discord, Slack etc. And big tech companies that continue using SMTP (Gmail, Outlook etc.) simply treat any servers outside their sphere with a high level of suspicion.

permalink
report
parent
reply
1 point
*

I think it would fun to try it

permalink
report
parent
reply
1 point

it works fine IMO as long as you don’t happen to have an IP with a bad reputation, but you’ll likely need a VPS or similar as most home ISPs don’t allow mail server or even incoming tcp ports

permalink
report
parent
reply

Privacy

!privacy@lemmy.ml

Create post

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

  • Posting a link to a website containing tracking isn’t great, if contents of the website are behind a paywall maybe copy them into the post
  • Don’t promote proprietary software
  • Try to keep things on topic
  • If you have a question, please try searching for previous discussions, maybe it has already been answered
  • Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
  • Be nice :)

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

Community stats

  • 7.8K

    Monthly active users

  • 2.5K

    Posts

  • 65K

    Comments