• 0 Posts
  • 9 Comments
Joined 2 years ago
cake
Cake day: July 3rd, 2023

help-circle


  • You’re missing the point. I will source my post (because I’m a nice and, frankly, jobless person) even tho I was answering to the OP, because this is a public document.

    But you’re the one coming out of the wood with baseless claims. Every serious privacy guide claims that you shouldn’t use OpenPGP for opsec, which is well beyond degoogling anyway, so why are you even recommending ProtonMail over cheaper offers like Nubo, Mailo, or any other indie mail provider? Why are you suggesting another data silo in a degoogling community?



  • Politics aside, the OpenPGPjs library would be a viable alternative with a client side checksum program, but sure enough, the builds are reproducible.

    Until then, this isn’t even technically true.

    For example, you can’t import your emails with the POP3 so when your mailbox gets full you can’t even pay for one month and download them all while deleting them from the server.

    It isn’t usable for free accounts and there was pre-4.0 a cult-like trend on the support subreddit to disclose your tier. I’m not aware of any moderation post, or note, asking users to stop this practice (u/ProtonMail was listed as a mod account).


  • Océane@jlai.lutoDeGoogle Yourself@lemmy.mlis proton still a viable alternative?
    link
    fedilink
    Français
    arrow-up
    4
    arrow-down
    2
    ·
    14 hours ago

    I was going to add sources anyway, I’ve only had 3 hours of sleep last night, but you need to understand that we don’t owe you resources. I, for one, don’t know you. I wasn’t talking to you when you approached me with a nominal sentence, and you need to acknowledge that you base your tone on the assumption that I didn’t consent to this conversation.

    So of course I’m still considering blocking you. Going this route, you would keep the same entitled, passive-offensive tone.

    As rude as it is, people will only adapt to this by drawing boundaries in a more cohesive, efficient way. You need to check your attitude, and to embrace the resource-centric nature of the internet. Improve your tooling.



  • Tired. In auto-pilot mode for the last 3 hours.

    Part of it is based on the OpenPGP standard itself, e.g. you only need the passphrase to decrypt your emails, not to encrypt them and certainly not to change your settings.

    Part of it is based on experience.

    Part of it actually needs a few sources; the Lavabit part is speculative but solid, there are bread crumbs all over the web.


  • Océane@jlai.lutoDeGoogle Yourself@lemmy.mlis proton still a viable alternative?
    link
    fedilink
    Français
    arrow-up
    5
    arrow-down
    6
    ·
    edit-2
    14 hours ago

    I’m tired but:

    • you’d need to compare the checksums of their web-based cryptography at every login,
    • you could use their bridge but you’d need to give your OpenPGP passphrase to change your settings, for no reason
    • they have the CIA at their administration council,
    • they have an history of unethical behavior toward Twitter survivors,
    • they have an history of spreading conspiracy theories,
    • they have an history of contacting hosting providers asking them to remove blog posts,
    • they didn’t share the Lavabit fundraiser so they could get quietly issued a US National Security Letter (overriding the First Amendment and preventing Ladar from appealing),
    • they can access to your entire mailbox anyway, not just to the email contents,
    • this has enabled the arrest of Social and Climatic Justice activists, they replied they couldn’t resist a Swiss court order (so that’s not their fault I guess, the tech is just bad)…

    Why would you trust them for your opsec, and why would you enable them further?

    Alternatives include Disroot, Nubo, and Zaclys.

    #Proton #ProtonMail