understand?
Mailbox.org gpg encrypted €1,- email solution now in english.
21–30 of 31 posts
Re: Mailbox.org gpg encrypted €1,- email solution now in english.
#22FYI, in Germany if you provide more than 10000 mailboxes you have to add a SINA box to your network. https://de.wikipedia.org/wiki/Sichere_Inter-Netzwerk_Archite... This allows law enforcement to silently direct specific user's mails to them. This requires a ruling and the provider will be aware of it. Still, I think a company like this should mention this in a full disclosure spirit as it can render their promise "N…
Wouldn't be the logical consequence to open a new subsidiary firm every 8000-9999 accounts?
Re: Mailbox.org gpg encrypted €1,- email solution now in english.
#23Earlier quoted context omitted.
> I do not understand the Legal Certainty paragraph. My interpretation is: Spam is deleted in order to give you plausible deniability that you haven't received and read it. i.e. There is no spam folder. But, this seems like it would normally be a bug rather than a feature.
They should be slightly more explicit, but "...before the e-mails are accepted and reject anything that looks suspicious..." almost certainly means that spam is rejected with a 5xx message - or goes to your InBox, but is never accepted then hidden from you in a spam folder. It's a good approach, and from a legal perspective I'm surprised more systems don't take this approach, because legally (at least in my local jur…
On reflection, this does seem like a better system. I had imagined a silent fail as per other popular e-mail hosts.
Re: Mailbox.org gpg encrypted €1,- email solution now in english.
#24Earlier quoted context omitted.
They should be slightly more explicit, but "...before the e-mails are accepted and reject anything that looks suspicious..." almost certainly means that spam is rejected with a 5xx message - or goes to your InBox, but is never accepted then hidden from you in a spam folder. It's a good approach, and from a legal perspective I'm surprised more systems don't take this approach, because legally (at least in my local jur…
So stuff which appears to be spam is bounced, with a return message. On reflection, this does seem like a better system. I had imagined a silent fail as per other popular e-mail hosts.
This is important, because the receiving system doesn't have a guaranteed way of reaching the sender - modern spam typically fakes the "From:" and fields - so well-run systems nowadays never try to do so for fear of generating what's referred to as email backscatter spam.
Re: Mailbox.org gpg encrypted €1,- email solution now in english.
#25FYI, in Germany if you provide more than 10000 mailboxes you have to add a SINA box to your network. https://de.wikipedia.org/wiki/Sichere_Inter-Netzwerk_Archite... This allows law enforcement to silently direct specific user's mails to them. This requires a ruling and the provider will be aware of it. Still, I think a company like this should mention this in a full disclosure spirit as it can render their promise "N…
Anyway: mailbox.org does NOT have a SINA box installed.
Peer (founder of mailbox.org)
Re: Mailbox.org gpg encrypted €1,- email solution now in english.
#26FYI, in Germany if you provide more than 10000 mailboxes you have to add a SINA box to your network. https://de.wikipedia.org/wiki/Sichere_Inter-Netzwerk_Archite... This allows law enforcement to silently direct specific user's mails to them. This requires a ruling and the provider will be aware of it. Still, I think a company like this should mention this in a full disclosure spirit as it can render their promise "N…
> I do not understand the Legal Certainty paragraph. My interpretation is: Spam is deleted in order to give you plausible deniability that you haven't received and read it. i.e. There is no spam folder. But, this seems like it would normally be a bug rather than a feature.
Peer (mailbox.org)
Re: Mailbox.org gpg encrypted €1,- email solution now in english.
#27This is another lavabit. They receive e-mails in clear text and then they encrypt it. This is not secure at all. It would be ok if it they were clear about it, but it's exactly the opposite "[...]This means that no one can read your e-mails except yourself – no password thieves, no governmental or law enforcement agencies, not even us here at mailbox.org."
https://mailbox.org/en/doodle-video-explains-fully-encrypted...
and our doodle film explains the benefit and risk.
Using the feature does not forbit to set up a "real" PGP end-to-end-encryption. Users should do that and our job is to help them -- step by step. And we're explaining that to them.
Our encrypted INBOX is useful in case an e-mail hasn't been sent encrypted, because there ARE many senders (like companies or unexperienced users) that do NOT encrypt their e-mail. That's how it is, so we have to deal with that. It's a kind of "add on".
Right today round about 10% of our inboxes are completly encrypted. That's great, but we'll still have to raise that level. An: > 10% of our users are familiar with encryption in their daily e-mail-usage. -And they will explain that to friends, business contacts and family. The usage and knowledge of encryption has to grow -- and having an encrypted INBOX is one (!) step to it.
Peer (mailbox.org)
Re: Mailbox.org gpg encrypted €1,- email solution now in english.
#28So I clicked the page to check if I can a) use my own domain. b) upload my public key and decrypt the mailbox locally to serve IMAP from localhost. Then I read this > Our grasp on technology is flawless And they completely lost me.
"marketing speech" is not our way of talking and if the translation office did a bad job there, we'll correct that. But there wasn't enough time to read and correct everything.
We just started last week with our englisch website, please give us some days.
Peer (mailbox.org)
Re: Mailbox.org gpg encrypted €1,- email solution now in english.
#29In fact you can't use gpg in mailbox.org when you send an email. Gpg is only used to encrypt your mailbox (it encrypts the emails you receive) which is kind of weird. You can of course use GPG in command line or with an external program.
... and useless, because they've had access to the mail in plaintext.
But after encrypting the e-mail, nobody will have access to that e-mail any more: Even hackers, phishers or the government. Many people are storing their e-mails for years in their INBOX. Great to protect those e-mails over the time.
But, anyway: The best way is always to use real end-to-end-encryption. In that case, you don't have to trust us any more. We're happy to help to set this up.
Re: Mailbox.org gpg encrypted €1,- email solution now in english.
#30Earlier quoted context omitted.
> I do not understand the Legal Certainty paragraph. My interpretation is: Spam is deleted in order to give you plausible deniability that you haven't received and read it. i.e. There is no spam folder. But, this seems like it would normally be a bug rather than a feature.
Spam is REJECTED and not deleted. In cause of a possible false positive the sender (!) will receive a non delivery report. Deleted e-mails is always forbidden. Peer (mailbox.org)
It is not exactly clear (on the website) what you mean by 'rejected', so the English text could be improved to make your meaning more explicit. Perhaps 'returned' would be better?
Good luck!