Zum Inhalt der Seite gehen


I actually don't know how to send PGP encrypted emails. Looked at a guide for thunderbird, I do not have enough mental capital for that rn.

A interesting organization asked for emails to be encrypted, and I am not even going to write them 😢
I've been feeling the same... maybe we can request a workshop at solpunk?

I recently switched to ProtonMail and was (justifiably) shamed for it...
out of curiosity, what's wrong with ProtonMail? I've never used it but people have told me it's an easier way to do secure email, so I assumed that would be good?

Also, happy to help setup PGP for Thunderbird if anyone needs. It really is an unbelievable PITA, the whole system is so unbelievably bad and it drives me nuts that security people never actually consider "is my user interface easy to use without accidentally doing things wrong and compromising the whole system".
idk about protonmail

Your second paragraph makes me happy and feel less stupid 🖤 Totally concrete: wanted to send an email to these people https://weiterso.org/kontakt
I'm happy to hop on a call sometime and walk you through it if you want; my timezone is US Eastern Time (currently UTC-4)
If i recall correctly, they only encrypt emails between two Proton accounts.

Also, they are private corp.

@liaizon was one of the people telling me about it...

But yes! Do you plan on being at solpunk?
probably not impossible to learn, but I'm also wonder why? Lots of better informed people than me warn against it https://www.latacora.com/blog/2019/07/16/the-pgp-problem/ and there is signal/matrix/simplex/briar...
oh yah, if you do have another way to contact them securely, use that instead. Personally I avoid Signal (actually secure, probably, but still doing the centralized control thing and also doing cryptocurrency nonsense), and Matrix (straight up lies about the competitors, is actually a terrible protocol under the hood). Email is nice in that everyone has it and can use it, but yah, PGP is not the greatest if security is what you really need.
I know it is annoying to recommend a tool just for that, but there is always deltachat:

https://delta.chat/en/

basically a chat app that uses email as the backend, because everyone has an email account.
And automagically uses pgp to encrypt the messages. But you can use it from to mail to another email client.

@zelf @sam @liaizon
I really appreciate their approach! Still, from what I can read, PGP is still on the light side of encryption. But yeah, perhaps I can switch to it for certain use cases 🤔
in any case if you _want_ help with Thunderbird and PGP I can also help.
https://www.howtogeek.com/706402/how-to-use-openpgp-encryption-for-emails-in-thunderbird/ does the above link help? Or is the question more about 5he basic principles of pgp?
What's the issue?

TB has its own OpenPGP implementation. Did you create your keys within TB? Did you import your old key pairs into TB?

After that, it should be easy peasy.
Once you get it set up, it's not probably not so hard to use. That's what I found using PGP with #gnus

I recommend #Protonmail to other members of my family; unlike me, they prefer webmail systems.
PGP is security theater, its never been pratical to use and it's never been effective. The when, where, and to whom information attached to emails is not hidden by PGP, and it more practical to target and attack people because of their location in the social graph than for the content of their messages.

People who say they use PGP usually don't. It's so common to fail at using PGP that there is an automated standard for trying to use PGP and giving up when it fails - https://en.wikipedia.org/wiki/Autocrypt.
thanks! makes me feel better :)