Email Security

Providers

  • Proton Mail. End to end between Proton users. Bridge for clients.
  • Tutanota. Encrypted mail and calendar.
  • StartMail. Good IMAP with privacy focus.

Proton Mail Tutanota StartMail

Account hardening

  • Enable 2FA. Prefer authenticator or hardware key.
  • Use a unique strong password.
  • Set recovery email and phone you control.

Phishing checks

  • Inspect sender address. Not the display name.
  • Hover links. Check the real domain.
  • Do not open unexpected attachments.

Aliases and throwaways

  • Use aliases for sign ups.
  • Use SimpleLogin or Relay to mask real address.
  • Route junk to separate inboxes.

SimpleLogin Firefox Relay