Simple guide towards mail privacy
2025-01-31 12:48 UTC
Replies (12)
-
@Libb@jlai.lu 2025-01-31 13:04
>It’s hard to make the full switch towards a more private life, but switching your mail already fixes a big underlying issue: that being, Google or other companies having access to all your emails. So, I’ll cover the basics of making your online mailing more private. The issue is that the moment you send a mail to someone or receive an email from someone that is using Gmail (or whatever provider that don't care about privacy), your own email is not private anymore: it's read by that other company. So, unless everyone was to start using encrypted emails and I should say *compatible* encrypted emails, real email privacy will be little more than a wish. It's a good move to ditch companies like Google, obviously, but one should not let potential switcher believe that it's a magical wand that will make their emails private. It is not. As a side note, I would also suggest for a much better privacy: use emails aliases so you never share your real email with any company or service provider.
-
@Rogue@feddit.uk 2025-02-01 01:13
Bitwarden is a good option for password manager. I would discourage anyone from moving to Proton. I know people are quick dismiss the CEOs political views as fluff but here's a evidenced account of what unfolded: This is what the CEO posting as u/Proton_Team stated in a response on r/ProtonMail: > Here is our official response, also available on the Mastodon post in the screenshot: > > Corporate capture of Dems is real. In 2022, we campaigned extensively in the US for anti-trust legislation. > > Two bills were ready, with bipartisan support. Chuck Schumer (who coincidently has two daughters working as big tech lobbyists) refused to bring the bills for a vote. > > At a 2024 event covering antitrust remedies, out of all the invited senators, just a single one showed up - JD Vance. > > By working on the front lines of many policy issues, we have seen the shift between Dems and Republicans over the past decade first hand. > > Dems had a choice between the progressive wing (Bernie Sanders, etc), versus corporate Dems, but in the end money won and constituents lost. > > Until corporate Dems are thrown out, the reality is that Republicans remain more likely to tackle Big Tech abuses. Source: https://archive.ph/quYyb To call out the important bits: 1. He refers to it as the "official response" 2. Indicates that JD Vance is on their side just because he attended an event that other invited senators didn't 3. Rattles on about "corporate Dems" with incredible bias 4. States "Republicans remain more likely to tackle Big Tech abuses" which is immediately refuted by every response That was posted in ther/ProtonMail sub where the majority of the event took place: https://old.reddit.com/r/ProtonMail/comments/1i1zjgn/so_that_happened/m7ahrlm/ However be aware that the CEO posting as u/Proton_Team kept editing his comments so I wouldn't trust the current state of it. Plus the proton team/subreddit mods deleted a ton of discussion they didn't like. Therefore this archive link captured the day after might show more but not all: https://web.archive.org/web/20250116060727/https://old.reddit.com/r/ProtonMail/comments/1i1zjgn/so_that_happened/m7ahrlm/ Some statements were made on Mastodon but these are subsequently deleted, but they're capture by an archive link: https://web.archive.org/web/20250115165213/https://mastodon.social/@protonprivacy/113833073219145503 I learned about it from an r/privacy thread but true to their reputation the mods there also went on a deletion spree and removed the entire post: https://www.reddit.com/r/privacy/comments/1i210jg/protonmail_supporting_the_party_that_killed/ This archive link might show more but I've not checked: https://web.archive.org/web/20250115193443/https://old.reddit.com/r/privacy/comments/1i210jg/protonmail_supporting_the_party_that_killed/ There's also this lemmy discussion from the day after but by that point the Proton team had fully kicked in their censorship so I don't know how much people were aware of (apologies I don't know how to make a generic lemmy link) https://feddit.uk/post/22741653
-
@shoulderoforion@fedia.io 2025-01-31 14:07
i have some very bad news about proton
-
@heavydust@sh.itjust.works 2025-01-31 12:52
Proton lol. Also the only privacy is achieved with OpenPGP but no one uses it.
-
@twikz@sopuli.xyz 2025-07-26 21:34
I just moved to mailbox.org for my mails. I've been trying out Ente Auth as my 2FA, it's also open source with a pretty ui. And for password manager my goto is currently bitwarden, you get all the features you need for free and it's open source. Trying to convince my family to do the same feels impossible, they don't care about this stuff lol
-
@autonomoususer@lemmy.world 2025-04-01 14:37
**Very good guide!** Concise, simple language, and not a billion options. **You are missing this:** > Gmail and Outlook fails to include a libre software license text file, like AGPL. We do not control it, anti-libre software. * Without this, we never defend against new scammers! * Without this, Gmail and Outlook can rebrand to scam again.
-
@wolfyvegan@slrpnk.net 2025-11-17 15:27
For those who cannot self-host: https://riseup.net/radical-servers
-
@Telorand@reddthat.com 2025-01-31 14:06
I feel like email is the one option where "total privacy" is either difficult or impossible to get secure, because the relay/service stores a copy and the receiver accesses that copy. If either of them are insecure or otherwise able to be configured to be no longer fully-private (e.g. ProtonMail), your efforts at private email are rendered moot. Something is certainly better than nothing in this regard, but it seems to me that if you truly need secure communication, you should be using an E2EE chat app with local-only storage. Edit: Saw your edit. Wiki sounds good to me.
-
@shaytan@lemmy.dbzer0.com 2025-01-31 14:30
I somehow tripped writing this, I also use aegis woops, but I did use authy In the past My browser recommendation was based on how easy it is to just download librewolf compared to messing with user agent I'm outdated in that proton situation, I'll look into that I vote positive on the wiki, we can discuss it in DMs
-
@Telorand@reddthat.com 2025-01-31 15:12
Yep, I think we're of the same mind. I hadn't heard of Addy, so I'm going to have to look into that one!
-
@Barbarossa@lemmy.dbzer0.com 2026-07-07 13:32
I want to point out there is something that most people aren’t aware of. FED Government uses it. It’s called a law called ECPA (Electronic Communications Privacy Act of 1986). There’s a rule that’s so outdated. It basically says if your emails are 180 days old. It treats it as if you ‘abandoned’ it. No 4th amendment right, I’m not sure about people elsewhere. They can just access these emails with a mere subpoena. So if you must use any email providers with servers within the US that’s not encrypted or US based such as Gmail or Yahoo. Enable Pop3 and download it locally, delete it from your main gmail account. This will be different if it’s an employer. For me, I don’t keep it for more than 180 days. There was one court case. It didn’t go to SCOTUS. It’s Warshak v. United States. Anything under 6th U.S. Circuit Court of Appeals jurisdiction is I believe supposedly protected, but who knows. I learned about this a year ago. I thought people here might want to know about it in addition to this. I’m not a lawyer. I just wanted them to know about the 180 day rule.
-
@yourpetiteschoolgirl@fedinsfw.app 2026-07-29 16:00
I wished someone had told me this beforehand, but Protonmail should be use actively otherwise you’ll loose access to it faster than you do with the mainstream ones!