this post was submitted on 15 Sep 2024
83 points (100.0% liked)

Privacy

31241 readers
705 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 4 years ago
MODERATORS
 

It's me again with another question for recommendation ๐Ÿ™ˆ This time I am searching for a new Email-Provider:

Currently I am using mailbox.org (privacy-friendly provider based in Germany). Since my subscription is comming to an end there, I tought about switching to proton mail-plus. What I like about them is, that they have an easy way of creating alias-emails and also support the option to use your own domain.

But maybe you gals and guys have another great provider which offers good features for a good price.

Also: I dont need Cloud-Storage or anything like that, so just mail is fine.

Thx in regards :)

top 50 comments
sorted by: hot top controversial new old
[โ€“] [email protected] 1 points 16 hours ago

Can anyone here comment on countermail.com ?

[โ€“] [email protected] 3 points 2 days ago

Another thumbs up for tuta.

[โ€“] [email protected] 3 points 2 days ago

I use posteo.de which costs 1โ‚ฌ/month. It is simple, but works fine.

[โ€“] [email protected] 5 points 2 days ago* (last edited 2 days ago) (1 children)

they have an easy way of creating alias-emails

With mailbox.org and other normal mail providers you should just be able to set a catch-all address, then you don't have to create aliases at all, just type "[email protected]"

If an email provider charges you more to create 'aliases' run far away and pick something else.

I wouldn't switch to Proton personally, they require that you use their own apps or use an IMAP bridge which doesn't work on Android/iOS. Their ecosystem feels very restrictive.

I don't see the point of an encrypted email provider like Proton, since 99% of the emails we all receive aren't encrypted anyways, and sending encrypted emails only easily works to other proton mail users.

[โ€“] [email protected] 1 points 2 days ago (1 children)

oh ok, I have not tried that yet. I have only set up one address which I use yo send and receive from.

about the encryption: I thought the point with e2ee encryption on proton is mainly, that the mails are stored encrypted one their servers so they can not read them or hand them out to anyone.

[โ€“] [email protected] 1 points 2 days ago* (last edited 2 days ago) (1 children)

Basically all email is E2EE already since SSL/TLS is usually used for transport, even gmail and similar. But encrypted at rest in theory would help with stopping people from reading emails off the server.

You also have to trust that Proton truly doesn't have your keys to decrypt, but I imagine they do since you just login with a username/password combo and that's enough to decrypt the emails.

Although I don't think it matters that much, my email is basically receiving notifications from services I use and occasional emails with a friend about planning a trip or something like that, nothing that particularly needs to be super private, just using a mail provider that isn't actively scraping my data for ads (aka; gmail) is enough for me.

For private communications I would use something more suited to that, like any of the reasonable E2EE chat apps.

[โ€“] [email protected] 1 points 2 days ago

that's why I love great communities like this one here. you aks one think, maybe totally overthinking and read an answer like this, which helps you realize the overthinking :)

thanks for that. what you say makes sence. I really NEED to make a threat-model to find out, what is worth keeping private and what isn't worth the trouble.

Thank you :)

[โ€“] [email protected] 2 points 2 days ago

Was there any controversy with Proton email? I remember hearing everyone shitting on it ywars ago. Did they do something to piss everyone off, but later fixed it?

[โ€“] [email protected] 6 points 3 days ago (1 children)

I don't think the email alias thing comes with Mail Plus, it's part of Proton Pass. You either need to get Unlimited which includes all of their products or pair mail plus with the paid version of Pass. There's a chance I'm wrong because I have Unlimited and haven't really explored it, but look into it before you commit.

[โ€“] [email protected] 4 points 3 days ago

You get 10 aliases on mail+

[โ€“] [email protected] -3 points 3 days ago

Email isn't a private system

[โ€“] [email protected] 1 points 3 days ago
[โ€“] [email protected] 2 points 3 days ago (3 children)

Hey, I outlined some tools in my list here! TL;DR is Proton Mail + addy.io is as good as it gets, with Tuta and SimpleLogin as close contenders. Good luck!

[โ€“] [email protected] 2 points 2 days ago (1 children)

Fair warning though, using a service like addy.io with randomly generated emails can go bad if they ever shutdown, you'll be left with tons of accounts on email addresses that no longer exist.

[โ€“] [email protected] 1 points 2 days ago (1 children)

It's better than using the same email for everything, which still runs the same risk. I try to minimize the services I use that require an email for this very reason. I will note, self hosting + addy.io provides much more control with the same benefits and drawbacks.

[โ€“] [email protected] 1 points 2 days ago* (last edited 2 days ago)

Oh for sure, the better alternative is your own domain with either catch-all or self hosting something like addy.io, then you don't have any risk of losing those email addresses (assuming you don't let your domain expire).

[โ€“] [email protected] 2 points 3 days ago

i already bookmarked the list, great work btw. I will look into the options you wrote.

[โ€“] [email protected] 2 points 3 days ago (1 children)

Proton purchased SimpleLogin in 2022 and the creator/dev has been working there ever since. Also, you can easily create random email aliases in Vaultwarden/Bitwarden via the SimpleLogin API.

[โ€“] [email protected] 3 points 3 days ago

Proton purchased SimpleLogin in 2022 and the creator/dev has been working there ever since.

I knew this, I'm trying not to keep my eggs in one basket.

Also, you can easily create random email aliases in Vaultwarden/Bitwarden via the SimpleLogin API.

This still requires a SimpleLogin/Proton account, so there's no added benefit. Plus, this is true for Addy as well.

[โ€“] [email protected] 26 points 3 days ago (1 children)

Just a reminder: with Proton you can't use IMAP for your email client, you either need their mail client (mobile) or bridge app (desktop).

[โ€“] [email protected] 5 points 2 days ago* (last edited 2 days ago) (1 children)

While technically true, bridge is ultimately an IMAP server you run yourself ... and they do have good reasons for this design.

[โ€“] [email protected] 3 points 2 days ago (1 children)
[โ€“] [email protected] 7 points 2 days ago (1 children)

Imap and end to end encryption are not possible at the same time.

Bridge exposes an IMAP interface but encrypts everything as Proton would, had you used the web client.

It solves a technical limitation.

[โ€“] [email protected] 1 points 2 days ago (1 children)

oh so only when using their client I have the e2ee for the emails on their server? kind of makes sence but def. a point to take into consideration.

[โ€“] [email protected] 4 points 2 days ago

No, I think you are misunderstanding my poor explanation.

Your emails are encrypted at rest on their server regardless if you use the web client or IMAP through the bridge.

The thing is that the encryption layer must happen at some point in time when you communicate with their API:s. In the web client this encryption is built-in. IMAP on the other hand does not support this type of end to end encryption, so the bridge adds this layer for you.

So you communicate unencrypted locally between your email client (Thunderbird for example) and the Protonmail bridge that you have installed locally on your computer. Then Protonmail bridge encrypts and decrypts all emails for you. So to your email client, it seems like a normal email server, but in reality everything is encrypted.

(Standard "encrypted email" disclaimer: Your emails are not encrypted in transit unless both parties, sending and receiving, are set up for encryption. Email is otherwise not end to end encrypted in transit)

[โ€“] [email protected] 8 points 3 days ago (1 children)
[โ€“] [email protected] 1 points 2 days ago

They are very cheap, only $1 for 10 aliases and then then $0.1/month for any additional aliases. But can't pay with monero.

[โ€“] [email protected] 2 points 3 days ago

Proton Mail?

[โ€“] [email protected] 12 points 3 days ago (2 children)

I have both Proton Unlimited and Mailbox. I prefer keeping my Mailbox account for mail, calendar and contacts. With Proton, I'd have to use their apps or some bridge, whereas Mailbox can be used with any app. I also have multiple domains connected with Mailbox and use plenty of aliases, so I don't really see why Proton would be better in that regard.

I don't have any suggestions to add, but as someone who subscribes to both, I was simply wondering what Mailbox lacks compared to Proton in your opinion.

[โ€“] [email protected] 1 points 3 days ago

well the easy if use for the temp-emails is better on proton I'd say. and keeping files in Switzetland is better then saving them in Germany (i think).

[โ€“] [email protected] 2 points 3 days ago

I quite like Fastmail. It's a bit expensive but the service is very reliable and they have a well established reputation. You can create masked emails using their domain or your own from the web interface.

[โ€“] [email protected] 11 points 3 days ago* (last edited 3 days ago) (3 children)

Runbox, a privacy-focused email provider out of Norway. Our family has been using it for many years with zero issues. The prices are very decent.

[โ€“] [email protected] 2 points 2 days ago

Can I open an account with TOR browser and pay with monero without having to give any info like a secondary email or phone number?

[โ€“] [email protected] 1 points 2 days ago

I looked inyo runbox and it looks like a really good option. what concerns me is, that it is hosted in Norway and that Norway is part of the "Fourteen Eyes alliance". Would you still recommend it?

[โ€“] [email protected] 10 points 3 days ago

Another vote for Runbox. Been using them for almost 5 years now with no issues. They are also an employee owned co-op if that is of interest.

[โ€“] [email protected] 5 points 3 days ago* (last edited 3 days ago)

Proton and its services have been pretty good. Some things to know about proton mail:

  • Search is only for titles, as content is encrypted
  • You can do search in the body in your browser. It downloads your email into the browser and searchers locally. It takes a while to do this and build up indexes. I haven't had too much issue searching for things though.
  • Since they don't read your email, no automatic calendar events if there isn't a .ics

The VPN had been great

The storage isn't enough for me to be able to move off of my main cloud provider. There also isn't a way to pin a file on Android for it - and the 500gGB of space is less than I use

The Pass app is handy and it's easy to make aliases, though it often doesn't know to fill in, doesn't do it, or something, and I need to open the app to copy paste. Pretty trivial though.

I'm sticking with them. I don't really have a reason to leave. The aliases are really nice, the catch is that it's not easy to have them go to a sub email address that I use - it has to go to your primary email. Not a huge deal though.

load more comments
view more: next โ€บ