I think I know the answer, bit maybe I’m missing something

Since proton only sends and receives encrypted emails to other proton accounts, that means that when you get or send an email to someone else, they have to send / receive unencrypted and there is no way for us to verify what they are doing. Right?

Also if most accounts are google Microsoft, they still get 90% of my emails. By switching to proton I think I’ve gained nothing, while losing convenience , added another trust point, and having two different companies have my data instead of just one

Proton drive, calendar and VPN I think are fine

Sorry for the poor syntax. I’m at work working on email related things, and this topic kept distracting me. I might correct it later

flatbield
link
fedilink
2
edit-2
9d

There is an advantage of using a provider that suports MTA STS. This is Strict Transport Security and forces at least transport encryption.

There is an advantage to use a provider you pay for too and at least claims not to read your email.

It is also nice if they can host your domain and have good delivery.

Edit: I meant MTA STS not SMTP STS.

@notarobot@lemmy.zip
creator
link
fedilink
39d

Haven’t heard of MTA sts. I’ll have to research it, but it probably doesn’t change the fact that when exchanging emails with another provider, they have to work with plaintext

flatbield
link
fedilink
2
edit-2
9d

Google is promoting MTA-STS. MS is at least testing it and some others. Proton mail might support, check. I use NameCheap shared hosting mail. They support incoming but not outgoing.

Sure it is clear inside each org but secures between. Nice because you can secure in your org by contract. Not as good as e2ee of course.

@notarobot@lemmy.zip
creator
link
fedilink
28d

i read the first part of google’s article about MAT-STS. it is good for secury, but does nothing to prevent providersfor reading in and out email

flatbield
link
fedilink
18d

No but if you have a contract with a providor you pay for, those are the terms. For example Google free servicies they mine data but their paid services they do not. Sure e2ee is better but transport encryption is good.

@notarobot@lemmy.zip
creator
link
fedilink
18d

Makes sense. I still don’t trust them though

flatbield
link
fedilink
18d

Yes, there is that.

Create a post

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

  • Posting a link to a website containing tracking isn’t great, if contents of the website are behind a paywall maybe copy them into the post
  • Don’t promote proprietary software
  • Try to keep things on topic
  • If you have a question, please try searching for previous discussions, maybe it has already been answered
  • Reposts are fine, but should have at least a couple of weeks in between so that the post can reach a new audience
  • Be nice :)

Related communities

much thanks to @gary_host_laptop for the logo design :)

  • 0 users online
  • 124 users / day
  • 1.05K users / week
  • 1.3K users / month
  • 4.58K users / 6 months
  • 1 subscriber
  • 4.17K Posts
  • 105K Comments
  • Modlog