737 karma · joined February 5, 2015
The tournament and program are also great, but the founder community is what makes it incredible.
2. An upcoming feature will enable the creation of sender 'allow' and 'deny' lists for each Owl Mail address (With default sender 'allow' lists for top sites). Currently I track my account credentials in a password manager. A browser extension is also on Owl Mail's roadmap.
By using Owl Mail (or Firefox Relay, etc.) addresses everywhere, you reduce your attack surface to one security fastidious company.
And, even if Owl Mail (or Firefox Relay, etc.) were to experience a data breach, at least it would greatly increase the effort required to match emails to your identity.
To really protect yourself, use a double relay!
External -> Relay 1 -> Relay 2 -> Your Inbox
Then you will have some serious resilience :DWhy not use a relay service like [https://relay.firefox.com] or [https://owlmail.io]?
Since most senders aren't using PGP/E2EE your effective security risk is equivalent. Plus you can still discover address misuse/sale/leakage, disable addresses at will, and your privacy increases.
(Source, I'm the creator of Owl Mail [https://owlmail.io] and this is a common question.)
All the solutions that exist "rent" you numbers temporarily so that prices are reasonable.
I've discovered some cool new products in this thread and Forward Email looks great. I'm glad there are other people out there working on solving this problem!
As a token of confidence, I've moved all ~150 of my online accounts (including all banking, financial, and healthcare accounts) to Owl Mail – it needs to exist for my life to operate smoothly.
A few bonuses:
• Larger attachments, 5MB + some wiggle room depending on the message size.
• Replies (single and multi-party) in beta.
• More addresses (a generous free tier, paid plans on the way).
• Fast and simple UI.
Congrats to FF Relay – more products in this space will be a win for better privacy online :)
I use owlmail.io for hundreds of accounts (major sites included) and haven't had an issue.
(Source, I run https://owlmail.io and this is a common question.)
If you use a custom domain (without thousands of users), you lose the anonymity benefit of Owl Mail (the custom domain itself becomes the identifier). Which means BigCoA and BigCoB can still trade/sell tracking/advertising info on you.
• It's like Privacy.com virtual cards, but email addresses.
--
• Easily create incognito email addresses.
• Owl Mail relays messages to your normal email address.
• Easily deactivate an incognito address when a company leaks or sells your account information.
I work mostly in Chrome, iTerm, Sublime, and Pixelmator on a 2019 16" MBP and haven't had any issues. I was hoping to wait for the larger-screen Apple silicon MBP, but my old laptop didn't hold out. There's been so much negative sentiment around the Touch Bar MBPs that I was bummed to buy one. However, after using it for a few months I'd say that feeling was completely misguided. It's been great.
A world where digital advertising fades away, and security and privacy are always prioritized, can't come fast enough.
It's a wonderful hybrid of "high-social-trust" networks run by humans (banks, governments) and distributed trust via code / your choice.
--
• The above stands whether temporary or ongoing.
• Land distribution is kind of free as long as it's unclaimed and there's plenty.
Steps that reduce the 2-party power, and increase individual power (Ex. widespread ranked choice / runoff voting) would have major benefits.
Any normal attacks that could be executed against a server on the internet could now be executed against your local server.
Which means, if your local/dev API endpoints have vulnerabilities, you will be exposed.
To help protect against attacks, you will want to block all 3rd party requests.
A possible solution would be to use HTTP basic auth (assuming tunnelto passes along the basic auth headers).
Ex. https://user:pass@t1.tunnelto.dev/api/hello
Then on your local/dev server, check user & pass.