3617
Comments (251)
sorted by:
You're viewing a single comment thread. View all comments, or full comment thread.
52
bannedninjabit 52 points ago +52 / -0

Email is kind of funny. sure sending a protonmail to another protonmail is end-to-end encrypted. However, sending email, even encrypted, to any other address will leak who the email is from and being set to, and possibly with the subject line still being visible. Even protonmail can see who the messages are from and going to. Just something to keep in mind when using the service.

42
Winston_Smith84 42 points ago +42 / -0

Still beats the shit out of using google's service.

23
fickelbra 23 points ago +23 / -0

Yup, I don’t pay because I believe my email is more secure, I pay so I’m not being datamined.

10
Cornpop_A_Bad_Dude 10 points ago +10 / -0

it's scary to think some government agencies use GMail

6
Southern_Belle 6 points ago +6 / -0

That's a feature.

They like being able to communicate using email drafts.

Or so I heard.

Besides, Google is Deep State pretending to be a private company.

5
glasses2020 5 points ago +6 / -1

Google actually treats you nicely if you pay for their business suite licenses. I make a living setting up Google Workspaces and other cloud based SaaS tools for businesses in regulated industries and I’m honestly I’m not really sure what Google could get away with that any other MSP can’t.

As has always been the case... anyone can host their own email and domain so unless the ISP is physically blocking the routes then there’s really no argument. Free email isn’t a right.

9
league_of_fail 9 points ago +10 / -1

Free anything just means you or your data are the product.

2
Cornpop_A_Bad_Dude 2 points ago +2 / -0

it's not what they could get away with it's that they are Google

they could do the same thing AWS did at the very least- just cut someone off because they have a Trump sticker in their window

or some bad actor could

10
YouNeedVPN 10 points ago +12 / -2

Tldr: without proton mail, your email is definitely exposed.

3
bannedninjabit 3 points ago +3 / -0

People have been encrypting email for a long time. Protonmail just makes it easy for normal people to do it, as setting it up for other mail clients can be fairly technical. I would also recommend that people change their protonmail keys from RSA2048 to RSA4096. In reality it only adds a bit of extra security, not double. I still don't trust ECC yet due to the other criticisms that can be found online

3
deleted 3 points ago +4 / -1
3
YouNeedVPN 3 points ago +4 / -1

People have. Normies haven't. They couldn't figure it out, enter Protonmail.

3
bannedninjabit 3 points ago +3 / -0

That is why I would send people there.

1
kwqt 1 point ago +1 / -0

Settings -> Security & keys -> External PGP settings

Set up your PGP stuff, then you can send fuly encrypted email.

1
bannedninjabit 1 point ago +1 / -0

You must have the paid version of proton mail.

1
kwqt 1 point ago +1 / -0

Yes. Didn't know its just in the paid version.

1
bannedninjabit 1 point ago +1 / -0

I didn't see it in my free version.

1
deleted 1 point ago +1 / -0
9
bannedninjabit 9 points ago +9 / -0

No it is not. You need to click the little encrypt for outside email button, that will send them a link that they can use a password to read the email. However, as I said, 'to' and 'from' addresses are sent in the clear when sending that link. You can also just send a plain text email as well. I have my own encryption keys on my private email [not proton]. it is the nature of email that the 'to' and 'from' fields will be visible along with other meta data.

3
deleted 3 points ago +4 / -1
3
bannedninjabit 3 points ago +3 / -0

Ya, I don't want to send a key with my email attached to it to a public key exchange. I think that is one of the major pitfalls of email, that, and being hard to setup.

2
JustInTime2_ 2 points ago +2 / -0

Thanks for providing this situational awareness. Had no clue. Going to try and host my own email server for a $5 reoccurring fee.

2
bannedninjabit 2 points ago +2 / -0

If you are not aware of the meta data leakage of email or don't have the technical knowledge to setup and build your own keys, I would still recommend using the protonmail service. It is also good to do some research and learn more about things.

1
1
bannedninjabit 1 point ago +1 / -0

I don't think you read that right. The document implies that you have a fundamental under standing about email and encryption.

2
nickybops 2 points ago +2 / -0

I was replying to the other comment, since it was deleted I have zero clue what I was replying to.

1
deleted 1 point ago +1 / -0
1
ProfessorOak 1 point ago +1 / -0

Would signal also have these problems?

2
deleted 2 points ago +2 / -0
2
bannedninjabit 2 points ago +2 / -0

Signal suffers from many of the same problems, including that they know who the information is coming from and going to, same with whatsapp. If you look down this post, I recommend Session due to the decentralized nature it does not suffer from many of the problems.

https://getsession.org/