• blank_sl8@lemmy.ml
    link
    fedilink
    arrow-up
    0
    ·
    edit-2
    3 years ago

    But without the key feature of Protonmail, e2e encryption at rest. Almost all protonmail alternatives (tutanota being the exception) talk about “privacy” but don’t actually take this critical step.

    If posteo is served a warrant or whatnot in whichever country it’s based, do you really think they’ll do anything differently than Protonmail anyway?

    EDIT: I stand corrected. Posteo does in fact support encryption at rest (though I think it’s disabled by default): https://posteo.de/en/site/encryption#cryptomailstorage

    • ysu@lemmy.ml
      link
      fedilink
      arrow-up
      0
      ·
      3 years ago

      Protonmail only has e2e if you email another protonmail email. It’s impossible to have it across domains, if you actually care about security just use pgp.

      • blank_sl8@lemmy.ml
        link
        fedilink
        arrow-up
        0
        arrow-down
        1
        ·
        3 years ago

        Correct me if I’m wrong, but I believe Protonmail stores emails encrypted on disk. So yes, Protonmail could store the unencrypted messages as they arrive, but as long as they don’t have a warrant at the time the message is received, they can’t access it later.