Hacker Timesnew | past | comments | ask | show | jobs | submitlogin

Or you can just use any of the actual European companies (I’m using Tuta).

https://european-alternatives.eu/category/email-providers



Any providers that don't provide SMTP/IMAP/JMAP are just a boring way of giving away control over your mail and the client software you use.

I don't know about Tuta specifically, but Protonmail is practically intentionally hostile against anyone using their own keys. Which is the biggest sign that their marketing and actual intent do not align.


I started using tuta until I realised they don't support IMAP. Something to do with not guaranteeing encryption (which isn't even enabled by default) but has the convenient effect of locking you into their apps


https://mailbox.org/ is great. It's the only provider recommended by privacyguides.org that supports IMAP/SMTP.


Tuta is always encrypted I don't know where you got the impression that it was optional or that they could somehow magically make it work over IMAP without a bridge like proton.


> Tuta does not support the use of third-party email clients or the protocols IMAP/POP3/SMTP as we cannot guarantee end-to-end encryption of your data.

So it "breaks end to end encryption" even with smtps and imaps apparently. The few emails I received weren't from tutamail users so presumably came over SMTP.

It's confusing to know what they mean because they confuse terms. They say emails are "stored end to end encrypted".

They don't pass my smell test


And here I thought using open source client software is the only way I, the user, can guarantee E2EE of my data.


They offer similar product to a more well known Proton.


PGP works over IMAP.


IMAP can do TLS though (IMAPS).

Did they say what's stopping them from using that (and requiring the encryption!)?


They didn't need to. When you start denying IAMP to your customer in the name of "encryption" at that point it becomes privacy theatre, instead of privacy, irrespective of how nobly activist their intensions are. It is probably slightly worse than a mail provider assuming they can't trust their users with encrypting their emails when needed.


> When you start denying IAMP to your customer in the name of "encryption" at that point it becomes privacy theatre, instead of privacy, irrespective of how nobly activist their intensions are.

How would the lack of IMAP compromise encryption? Sounds dubious.

Lock-in effects are problematic, but separate from encryption or privacy in general.

If the concern is actually lock-in, it is worth noting: there is little lock-in in the current Tuta offering. The service allows users to export emails into standard EML files. If you decide to switch providers, simply point your domain to the new provider and import your latest backup.


Its probably about end to end encryption. Protonmail doesn't store mailboxes in plaintext, only the client actually decrypts the mailbox. IMAPS only encrypts the conn between mail server and client.


Infomaniak is another one https://www.infomaniak.com/en/ksuite




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: