Live data from Hacker News

Gmail confidential mode is not secure or private

protonmail.com

91–100 of 226 posts

Re: Gmail confidential mode is not secure or private

#91
post #46

Earlier quoted context omitted.

e2e encryption solves a totally different problem. If you don't trust the intended recipient of a message don't send it. e2e helps make sure nobody else receives the message. Google is making an entirely different claim about controlling the actions of a third party. It's fundamentally impossible to do what Google is claiming.

What is Google claiming that you think is impossible?

That the recipient can't "forward, copy, download, or print" the message and that the message expiration will prevent the recipient from viewing the message.

Re: Gmail confidential mode is not secure or private

#92
post #65

Earlier quoted context omitted.

>All it does is fool a bunch of less-tech-savvy people into a false sense of security. Nonsense, it does a great job of discouraging people from forwarding, copying, printing or downloading the emails contents. Sure, it'll do nothing with a malicious recipient but incompetent recipients are vastly more common than malicious recipients.

You have to be a special kind of stupid to not be able to get around this "security".

Friction matters. You don't need to be smart to break a door lock, but people still lock their doors.

Re: Gmail confidential mode is not secure or private

#93
post #3

"Options for recipients to forward, copy, print, or download this email's contents will be disabled." I simply don't understand how they think they can get away with this foolishness. I can forward, copy, print, or download ANYTHING that passes over my ethernet cables. Your silly UI will ultimately never stop me from wiresharking my own cables in my own home and doing whatever the hell I want with any bits of informa…

I'm surprised no one has come up with a browser extension yet that circumvents this. I'm guessing it would be fairly trivial to do so.

I'd be surprised if the built in print to pdf function doesn't already circumvent this.

Re: Gmail confidential mode is not secure or private

#94
post #29

Earlier quoted context omitted.

> If "accidental" is the true worry, display a confirmation/warning box before forwarding. Gmail supports other MUAs using IMAP and POP, so that doesn't work. The fact that there are valid reasons to forward sensitive emails is why there is an escape hatch. It's only the accidental forwards and copies that this is meant to stop.

We can invent a new e-mail header X-Confidential: true, and clients will start to adopt the warning behavior over time. If Gmail supports it off the bat it will already cover a huge fraction of the market.

That's a strictly worse solution to the problem with no advantages.

Re: Gmail confidential mode is not secure or private

#95
post #8

I like posts being out there like this. I expect many non-technical users will get the wrong impression about confidential mode. Impression is different from the stated words and can be filled in by our subconscious thoughts about the space between what is said. When words are explicitly said it can cause people to think things through.

Except that most non-technical users will never read ProtonMail blog.

Re: Gmail confidential mode is not secure or private

#96
post #71

Earlier quoted context omitted.

You have to be a special kind of stupid to not be able to get around this "security".

Who cares? This isn't supposed to stop anyone from intentionally doing bad things, this is supposed to make people stop and think "Huh, maybe I'm just not supposed to forward this email" It's really bizarre that so many people on HN can't seem to understand this. Do you guys ever interact with other human beings?

That's an outlandish take, because it's entirely divorced from what Google is claiming.

If they were saying, "this feature makes it clear to your employees that they shouldn't forward this email" then this entire HN thread would not exist.

Re: Gmail confidential mode is not secure or private

#97
post #29

Earlier quoted context omitted.

> If "accidental" is the true worry, display a confirmation/warning box before forwarding. Gmail supports other MUAs using IMAP and POP, so that doesn't work. The fact that there are valid reasons to forward sensitive emails is why there is an escape hatch. It's only the accidental forwards and copies that this is meant to stop.

We can invent a new e-mail header X-Confidential: true, and clients will start to adopt the warning behavior over time. If Gmail supports it off the bat it will already cover a huge fraction of the market.

Or we can build a system that just works and doesn't rely on adoption by other clients. Yes if we had a header that everybody used and respected it would work. But that's a lot harder.

Re: Gmail confidential mode is not secure or private

#98
post #51
post #30

> It can still be accessed by Google and potentially exposed to governments or hackers. The article makes the classic mistake of assuming everyone has the full security apparatus of a country after them. This feature is obviously not built as an alternative to Signal or for the Snowdens of this world. These probably know better than using unencrypted email already. For the average user it's an improvement of the curr…

So you reference Snowden then pretend dragnet surveillance doesn't exist? If you are on the internet the NSA is spying on you and everyone else. This is not an improvement because it makes guarantees that simply aren't true. These compromises are made to further Google's bottom line, not protect users. Don't pretend this is some kind of incremental improvement. It's a marketing gimmick.

> If you are on the internet the NSA is spying on you and everyone else.

There's a difference between passively collecting and actively targeting.

Re: Gmail confidential mode is not secure or private

#100
post #51
post #30

> It can still be accessed by Google and potentially exposed to governments or hackers. The article makes the classic mistake of assuming everyone has the full security apparatus of a country after them. This feature is obviously not built as an alternative to Signal or for the Snowdens of this world. These probably know better than using unencrypted email already. For the average user it's an improvement of the curr…

So you reference Snowden then pretend dragnet surveillance doesn't exist? If you are on the internet the NSA is spying on you and everyone else. This is not an improvement because it makes guarantees that simply aren't true. These compromises are made to further Google's bottom line, not protect users. Don't pretend this is some kind of incremental improvement. It's a marketing gimmick.

> If you are on the internet the NSA is spying on you and everyone else.

Citation needed.

> This is not an improvement because it makes guarantees that simply aren't true.

No, ProtonMail pretended it made guarantees that it doesn't make. Just like the exact same Exchange/Outlook feature that people have used for years, this is to prevent accidental copying of emails and their contents.

Post reply on HN