The entire mailboxes of the users are encrypted so that even the sysadmins cannot read them.
Come on. If there is one thing we should have learned, it is that trust is not enough, we need more insurances. At the face value, ProtonMail is saying "we receive your emails in plaintext, we encrypt them immediately and we promise to never ever read them. Pinky swear". "We promise we won't give your information to anyone. Trust us, we're from CERN !". That is absolutely not acceptable; we need guarantees that give us the assurance that they can't access the content of our communications. Basically, there is no other way than having everything done on your machine, and treat any provider as a stupid router. At least mailpile is a step in the right direction, because it doesn't assume your mail provider will help in any way.
There's a saying in french, it goes like this:
"Promises only bind those who believe in them".
Please please please don't promote something that is based purely on promises. We should already be beyond this.
Comments
Come on. If there is one thing we should have learned, it is that trust is not enough, we need more insurances. At the face value, ProtonMail is saying "we receive your emails in plaintext, we encrypt them immediately and we promise to never ever read them. Pinky swear". "We promise we won't give your information to anyone. Trust us, we're from CERN !". That is absolutely not acceptable; we need guarantees that give us the assurance that they can't access the content of our communications. Basically, there is no other way than having everything done on your machine, and treat any provider as a stupid router. At least mailpile is a step in the right direction, because it doesn't assume your mail provider will help in any way.
There's a saying in french, it goes like this:
"Promises only bind those who believe in them".
Please please please don't promote something that is based purely on promises. We should already be beyond this.