this post was submitted on 08 May 2024
198 points (100.0% liked)

Privacy

789 readers
76 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] seathru@lemmy.sdf.org 120 points 6 months ago* (last edited 6 months ago) (4 children)

No company is going to legally go to bat for you for $10/mo. I love how Proton nonchalantly calls out the user's dumb move in the article:

Proton provides privacy by default and not anonymity by default because anonymity requires certain user actions to ensure proper OpSec, such as not adding your Apple account as an optional recovery method. Note, Proton does not require adding a recovery address as this information can in theory be turned over under Swiss court order...

[–] leraje@lemmy.blahaj.zone 32 points 6 months ago (2 children)

It is worth noting though, that Proton doesn't allow you to use certain domains for recovery addresses. Admittedly this was awhile ago and maybe things have changed there but when I first joined Proton they wouldn't allow me to set a duck.com or simplelogin.com or addy.io address as a recovery email.

Obviously using an apple ID is stupid but Proton could make more of an effort too.

[–] Canary9341@lemmy.ml 25 points 6 months ago

They are actually quite aggressive about blocking disposable emails, most free services don't work. I have used protonmail a few times for semi-disposable accounts that used disposable emails to sign up, and some of them were banned later.

[–] pineapplelover@lemm.ee 3 points 6 months ago (1 children)

I actually set simplelogin as recovery lol

[–] Railcar8095@lemm.ee 4 points 6 months ago (1 children)

So they will ask proton again for the address where everything is being forwarded... Not a good plan.

It would be fun to daisy chain a bazillion emails, all forwarding to each other in circles and have the cops just call yahoo 20 times.

[–] pineapplelover@lemm.ee 1 points 6 months ago (1 children)

But all emails are encrypted so they can't be read anyways.

[–] Railcar8095@lemm.ee 6 points 6 months ago* (last edited 6 months ago) (1 children)

No, only the ones on Proton. If you send or receive an email from outside, it's unencrypted there.

But still, it's little to no difference for law enforcement. They will get the real address and whichever little info Proton or the other provider has on you.

[–] pineapplelover@lemm.ee 1 points 6 months ago (1 children)

As far as I know, Simplelogin doesn't store anything.

https://simplelogin.io/faq/

[–] Railcar8095@lemm.ee 1 points 6 months ago

Nowhere they say to m that they can't see what your final email address and they have your logging email too.

If you have a specific quote saying the opposite, please share

[–] drwho 8 points 6 months ago

Thing is, Protonmail has been telling people this from the very beginning. It's like it gets rediscovered every year or so when somebody else gets busted.

[–] classic@fedia.io 6 points 6 months ago (1 children)

What would be a more appropriate email address to use - or just no recovery email?

[–] seathru@lemmy.sdf.org 17 points 6 months ago (1 children)

It's best for anonymity to not use one at all. Proton provides a recovery key to allow access to your account if you manage to lock yourself out. Keep that key somewhere safe/secure.

[–] classic@fedia.io 3 points 6 months ago

Thank you. Recovery key seems like a better route for sure

[–] azalty@jlai.lu 6 points 6 months ago

Proton does require a recovery email address if you sign up to a mail forwarding service or similar, right after creating the account. In that case the account remains locked if you don’t, so that’s just a lie