• iopq@lemmy.world
    link
    fedilink
    English
    arrow-up
    3
    arrow-down
    28
    ·
    6 months ago

    Can we get away from email?

    It’s not a secure form of communication anyway. I want my messages to be e2e encrypted so I know I am the only one that can read them

    • GigglyBobble@kbin.social
      link
      fedilink
      arrow-up
      7
      arrow-down
      2
      ·
      edit-2
      6 months ago

      What a stupid thing to say.

      Whatever your favorite (and probably shitty) proprietary or open source messaging service - not everybody uses it. But hey, everyone has email, so let’s kill that.

      BTW since you said encryption is important to you: your walled-garden messaging service has a much easier time profiling you and your friends than they would in a heterogenous environment like email. They don’t need the content anyway, just metadata.

      • baseless_discourse@mander.xyz
        link
        fedilink
        English
        arrow-up
        2
        ·
        edit-2
        6 months ago

        They don’t need the content anyway, just metadata.

        ProtonMail uses PGP encryption to encrypt emails, which means your meta data, including subject line is vulnerable to data collection. Also there is no forward secrecy with current PGP standard. See quotes from below:

        We have built Proton Mail with PGP fully integrated, … All messages between Proton Mail users are automatically end-to-end encrypted.

        https://proton.me/support/how-to-use-pgp

        Subject lines and recipient/sender email addresses are encrypted but not end-to-end encrypted.

        https://proton.me/support/proton-mail-encryption-explained

        PGP (especially for email) exposes much more info to outside party than any good communication protocol, like the signal protocol or OMEMO used by XMPP.

        • GigglyBobble@kbin.social
          link
          fedilink
          arrow-up
          1
          ·
          6 months ago

          No, they can’t since I don’t have a Google mail address. Even if I had, they’d have a harder time building a social graph when I communicate with others outside of Gmail.

    • BoofStroke@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      1
      ·
      edit-2
      6 months ago

      That’s what s/mime does. If it were as easy to get personal certs as it is to get server certs through letsencrypt, everyone could easily sign and encrypt mail.

      I can certainly do it anyway, but you’d have to trust my self signed cert.

      That said, it’s pretty rare to find relays these days that are not using tls for transport, so there’s that.