I also remember reading somewhere on HN that the creators of Protonmail have some dubious ties (and work in the same office) to a shady European data collection agency. Can't find the link atm.
I also remember reading somewhere on HN that the creators of Protonmail have some dubious ties (and work in the same office) to a shady European data collection agency. Can't find the link atm.
Russia is also famous for its cadre of crack Salisbury cathedral appreciators.
This was not always the case. It might not be the case now that Russian companies scan for this stuff, but why risk it?
It doesn't matter what service you use. No email is private, I don't care who they are.
p.s. - I'm a paid fastmail user.
I wonder if the Monero Message System is still being developed. It would solve the metadata problem.
If you’re sufficiently paranoid, the only thing you can say for certain is that there isn’t much you can truly trust.
There's (mostly) no reason for Joe Bloggs to want to protect themselves from a well funded state actor but they may want to prevent themselves being locked out of Google services because some bot triggered a threshold.
What's permitted is to build something that targets a particular person in such a way that it cannot possibly affect another person's security.
The example I use (though IANAL) is that a request to backdoor WhatsApp's encryption would not be permitted under the law. However I think that pushing an update that checks for a particular person's hard-coded phone number and forwards messages to law enforcement would be permitted.
The law in question: http://www5.austlii.edu.au/au/legis/cth/consol_act/ta1997214...
https://news.ycombinator.com/item?id=21680293
Interestingly, u/protonmail's contributions is littered with comments trying to defend ProtonVPN against such allegations here on HN. I guess, user paranoia is the bane of privacy-as-a-service upstarts.
Re: Zoho:
As a Zoho user myself, I must point out that though India isn't 5 eyes or 9 eyes, it has some of the most restrictive laws in terms of Internet freedom and is a surveillance state.
> This is not correct as far as Proton is concerned and easily verifiable. ProtonVPN is 100% owned by Proton Technologies AG (Switzerland) which also develops ProtonMail and is not affiliated or owned by any other company.
I migrated to a self-hosted Nextcloud, which I love - wonderful client software and very flexible customizable. I didn't have any difficulties setting it up, it all seems very polished and quite mature.
I have found nothing that comes close to replacing Google Maps yet, but I hope that OSM has a bright future.
Another great thing is I'm no longer worried of suddenly losing access to my mail account, because an algorithm deems me not worthy for using a "wrong" browser, setting etc. and we all know that you can't talk to real people at Google so the account will be lost forever.
The reality is, for my accounts, I get more spam in gmail than in FastMail.
About 1 out of 15/20 emails that get flagged are legit. Most are newsletters I signed up to and don't particularly care about, but they're still not spam.
However, I’ve found Fastmail search, spam filtering and user interfaces to be great, on par or better than Google for all my needs.
One aspect of poorer performance with Fastmail has been boot up time on mobile though. The iOS app doesn’t appear to cache anything offline, so without a connection you can’t do anything, and if the connection is slow, app startup and display of mail hangs while waiting for whatever initial web requests the app makes to complete.
Nonetheless, I’m very happy with the purchase.
Using Apple’s iOS apps will give you better integration with the whole Apple ecosystem, Fastmail‘s app has better integration with a few of their specific features
The biggest advantage of using Fastmail’s app is that searching emails is MUCH faster and flexible
On my Air or Linux workstations, I always use the Fastmail web interface, it’s better than a mail app, unless I’m doing something specialized - then it’s Mutt or even Gnus.
You can be logged into Fastmail from several computers simultaneously and processing email. It’s seamless, there is never a conflict. I believe they use Cyrus IMAP.
Grabbed a special offer back then, 10 years/XX GB for something like $99 total, including all the domains i can think off and all the users i want. Compared to what was available at the time it was super cheap, and it has had like 99% uptime since.
Latest offering, free of charge, is a Nextcloud account for user/calendar/notes syncing.
I also had to dig around to see where they're based. According to: https://mxroute.com/policy/
> "MXroute LLC is a Limited Liability Corporation in the state of Texas. All services provided by MXroute may be used for lawful purposes only. "
Not a dealbreaker to me, as I am a native Texan by birth, but might be an issue to someone looking to avoid 5-Eyes.
> Not a dealbreaker to me, as I am a native Texan by birth, but might be an issue to someone looking to avoid 5-Eyes.
It's email. Any pretense of avoiding 5/9 eyes is already moot. Any conversation has at least 2 participants, and since 50+ percent of the world population runs on some kind of hosted email (Gmail/Outlook/Yahoo/whatever), anything you send has a high probability of passing through 5/9 eyes anyway. It doesn't make much of a difference if you look through the "from:" or "to:" headers.
The only way to be safe from 5 eyes is encrypting all the contents in your mailbox, either through GnuPG or using Protonmail/Tutanota.
Only a con for Zoho email is IMAP is no longer a free option, but we do lots of subscription for clients which is quite smooth so far.
Fastmail too is insecure by being run out of Australia - a strident member of the 5 eyes.
From Wiki:
"In newer versions, the user was allowed a choice of generic graphical banners or text-based targeted advertisements provided by Google based upon the page being viewed. "