Show HN: EmailPK – Instant encrypted email
diafygi.github.io
diafygi.github.io
Other than that, a bit of polish and this would be fantastic. One problem might be running into the maximum URL length allowed by browsers (2083, limited by IE, if I am correct), if you store the ciphertext on the URL, but I don't see another way to get around that short of a very clever HTML email that performs a form post... which may be possible, not sure.
Also, I try keep the encrypted payload size minimized, but yes, URL limits can be a problem (as well as line breaks that email clients sometimes insert). You can always copy and paste the link into the Read Existing text area, though.
Also, this is an unhosted application, so you can just right click and save-as. It still works hosted on your local filesystem (which isn't subject to NSLs).
[1] - https://support.google.com/a/answer/33327
[2] - http://windows.microsoft.com/en-us/windows/outlook/add-alias...
[3] - https://help.yahoo.com/kb/creating-aliases-sln3240.html
Other than being a proof of concept, what is the real problem on using this for "real secrets?" Are there plans to take it our of proof of concept to something usable then? I see your myLock carries the same disclaimer, what is the point then?
It would be great if webapp developers started baking client-side encryption into their apps.
It would be very nice if it could let me choose to send it unsigned.
EmailPK looks great, great job! I love it.
EDIT: By the way, I assume you're aware of the fact that your name is Greek for "escape"?
Also, I do indeed know my username's meaning. Isn't it closer to "slips through the cracks"?
Seems like a really good idea. :)
I can see this having problems with revocation and password changes, unfortunately. Namely, if your passphrase is compromised, you're screwed.