Due to the recent announcement of Proton moving to a non-profit structure (although not becoming fully non-profit) I’ve decided to take another look at them and really, Proton Unlimited is an enticing offer. However, the fact of everything from mail, to accounts, to storage being in one place is somewhat disconcerting. Also I recall them being decent, but not particularly outstanding at refusing to provide data to outside sources, there was a situation a while back where they handed over information of a climate activist.

To be fair, mail is insecure by default and if you’re going so far as to write to another Protonmail user you might as well use something actually secure and I am not exactly planning on breaking the law so I’m not too worried about data being handed over to authorities, yet it still leaves a bitter taste in my mouth and with the state of politics where I live there certainly is a concern that, being queer, I should also be a bit weary of governing bodies as well, as laws may change in the future.

Basically, by switching to Proton I’d be putting a lot of trust in them, instead of splitting it up between things like Mullvad, Bitwarden, etc. and besides a password manager (and to some extent my email provider), while dramatic, a single failure at any point wouldn’t be a total disaster. Are they trustworthy enough for the convenience benefits to be worth it to any of you?

  • QuizzaciousOtter@lemm.ee
    link
    fedilink
    arrow-up
    1
    arrow-down
    1
    ·
    5 months ago

    Man, would taking a few seconds to verify stuff kill you? All Proton applications are open source.

    • triplenadir@lemmygrad.ml
      link
      fedilink
      arrow-up
      1
      ·
      5 months ago

      cool can you point me at the repo for their server software then? and the f-droid reproducible build of their android app, or the sideloadable iOS app?

      • tranxuanthang@lemm.ee
        link
        fedilink
        English
        arrow-up
        1
        ·
        5 months ago

        Is their mail server so different than any other generic mail server implementations? Do they encrypt all the emails at server-side?