No, I've not switched. While I disagree with his comments, that does not make me switch.
I am fine with using services provided by companies whose employees or leaders I don't 100% agree with all the time.
Empowering you to choose a better internet where privacy is the default. Protect yourself online with Proton Mail, Proton VPN, Proton Calendar, Proton Drive. Proton Pass and SimpleLogin.
Proton Mail is the world's largest secure email provider. Swiss, end-to-end encrypted, private, and free.
Proton VPN is the world’s only open-source, publicly audited, unlimited and free VPN. Swiss-based, no-ads, and no-logs.
Proton Calendar is the world's first end-to-end encrypted calendar that allows you to keep your life private.
Proton Drive is a free end-to-end encrypted cloud storage that allows you to securely backup and share your files. It's open source, publicly audited, and Swiss-based.
Proton Pass Proton Pass is a free and open-source password manager which brings a higher level of security with rigorous end-to-end encryption of all data (including usernames, URLs, notes, and more) and email alias support.
SimpleLogin lets you send and receive emails anonymously via easily-generated unique email aliases.
No, I've not switched. While I disagree with his comments, that does not make me switch.
I am fine with using services provided by companies whose employees or leaders I don't 100% agree with all the time.
I think leaving would be an over reaction.
Edit: I hope all of you downvoters don’t use WhatsApp, Facebook, Instagram, YouTube, Google Search, Android, iOS, Amazon, etc, etc. Otherwise, you’re a bunch of hypocrites. Every single major tech CEO gave Trump $1 million and SAT at his inauguration.
Eh if quitting or stopping use of products and services required perfect circumstances then nothing would be quit, and you might as well be saying nobody should do anything because of being labeled a hypocrite. Pretty much the same as arguing stanchly for apathy and inaction.
Realistically though people cut what they can if a decent substitute presents itself. So when those rare opportunities come I say take it and quit products you might have issue with. Real life doesn't often present perfect gift wrapped hypocrite free opportunities, so if there's an exit take it. Better than inaction because of the hypocrite label dictating you doing nothing. A tiny step is better than none.
I'm backing stuff up and waiting to see how this plays out until March before deciding. The only reason I didn't immediately quit is because it's just one board member and he's not American, so I'm leaving towards him not understanding how bad things were getting. It was also before the Musk Nazi salute so he gets that tiny benefit of the doubt. Still, it was insanely dumb what he did, and did erode a lot of trust in Proton.
i was using both proton and tuta, now i privilege tuta.
I moved many people from google to proton, from now on people i convince will move to tuta.
you don't move in a week, you decide to move and start modifying your @ on all the sites and offices that contact you through that address. One day, you realize that it's been months since you last needed your older address and you delete.
Cancelled auto-renew. I have a year and half to find alternatives. I'll not support this company anymore.
I honestly wasn't going to switch, but him being backed up by the official account was iffy. Even still, I wasn't necessarily making moves to switch. But I tried to use a new card to pay for my Proton subscription, and it wouldn't verify. I eventually had to make a Paypal just to pay my bill and avoid losing access to my account. So I kinda decided, "fuck it, they can't be that shitty of a company and get my money still."
I was kinda planning to switch, just not urgently. But now, I hope to be fully moved over to Tuta Mail in the next few weeks.
I canceled the night of and moved to a combination of Mailbox and Tuta (trying to diversify a little). I also provided a colorful reason for terminating to make sure they knew exactly why.
So far they each have their quirks, but overall I like them. I also set up two domains for email so that the next switch won't be as jarring (since I can just keep using the domain addresses).
I already used Mullvad for VPN, so that was a non-issue.
I've switched from Proton Drive and Calendar to Nextcloud, which is an upgrade.
I've switched from Proton Pass to Vaultwarden, which works just as well for me.
I've switched from Standard Notes to Memos, which has also been an improvement for me considering my notes needs are pretty basic and Memos fits perfectly.
That leaves Mail, Simple Login, and VPN. I have alternatives lined up with Tuta, addy.io, and Mullvad, but I haven't pulled the trigger yet. I would be paying more than I am now with Proton (2 year plan) and it would be a massive pain to switch email providers.
I'm considering staying with Proton for only those services, but on thin ice. If they fuck up again, I'm absolutely out.
I may end up switching anyway however. This situation has left a bad taste in my mouth, and if I have the motivation and time to deal with migrating one day in the near future, I might just do it regardless. We'll see.
I'd moved from Bitwarden to Proton Pass only 6 months ago, so moving back wasn't too much of a difficult choice (both services have great import/export and Bitwarden even offers self-hosting)
I'd just go Keepass. Password managers don't need cloud to work. And Bitwarden could go rogue too.
Personally I switched off of VPN to mullvad at least, and am looking into self hosting bitwarden and using tuta (and now addy.io too thanks to a comment here). Honestly I'd been considering switching for a bit anyway just to be less reliant on a single service for everything, so this kinda validated that since even if this specifically isn't a dealbreaker something else could definitely end up as one. Even if I don't fully move off of proton because moving emails is so annoying, it will still be nice to at least have some other options set up.
You know what would be really great? If Thunderbird actually had its own email service (@thunderbird.net) and not just a client. When they were switching K9 Mail over to Thunderbird mobile, it seemed like there might have been the slightest hint on their blog that they were at least considering it (or maybe I dreamed it). Might be a good source of income for Mozilla too...🤔
i have free proton accounts as am not loggin in to close them because lazy. but i havent really used it anymore...maybe for trashmail stuff. mullvad is cooler and 1$ rootboxes anywhere also. disroot,riseup and so many other mailproviders are cool too. i dont get why proton is so relevant to some. did you guys buy a lifetime package or why?
For email, I landed on Tuta as being the closest in feature parity and signed up for the €3/mo plan. Been pretty happy so far and was pleasantly surprised to see both the email and calendar apps were available on F-Droid. Personal bonus for me was they also run on renewable energy.
So far the only con I've found was lack of support for +aliases (e.g. name+alias@tuta.com) but the 15 additional email addresses help to offset that.
I've got Keepass for password manager and Mullvad for VPN, and both have worked out really well for me so far. What I haven't been able to find is a good alternative to Proton Drive. For aliases I use Firefox Relay.
I'm moving to Tuta, and bought some domains to use as custom domains. Accidentally clicked yearly instead of monthly in Tuta (cuz I don't want such a long commitment yet), and it doesn't let me change it to monthly, so I have to message support and ask them to change it back to monthly, 24 hours has passed and still waiting for a response... Proton usually responds within 24 hours... 🤷♂️
Edit: In like 12 hours, it'd be 48 hours... so... 👀
I sent another email to make sure it went through.
If their response takes longer than like a week, I'm gonna have to look for something else...
I'm grandfathered in to the old pricing for Proton Unlimited. I ain't cancelling until they pry the service from my cold, dead hands.
A sociopath libertarian idiot.
The L part is the kind of person I want in charge of my encrypted data. Telling the government to fuck off because he legitimately can’t comprehend how government is a good thing.
I see a few people who don't want to switch due to the hassle it would take with changing email addresses, presumably because they use one of the @proton.me email domains. Get your own email domain! It's super cheap (if you choose one of the new TLDs, it can be as low as few dollars a year), the setup isn't really hard - you just change a few DNS values, and that's basically it - you can use whatever email you want that ends with your domain. It might take a while to slowly replace all your @proton.me emails with your domain one, but if you're not in a hurry and change any old mail you see during your day-to-day activities, you'll eventually be done with it, and you can set up mail forwarding to your domain for mail that arrives to your old @proton.me address.
And if you ever need to move to a different provider, you just change the DNS records again to a new provider, and your email will start coming to the new one immediately.
There are a few alternatives in mind for me. Mailbox, posteo, disroot. Disroot is the only one among these with a free email. But posteo and mailbox do have cheap tiers. Posteo doesn't have support for custom domains last I checked.
That's just email. I've already not been using proton for almost everything else. KeepassXC for passwords, Addy.io for aliases, Syncthing and offline storage across my 3 devices instead of any Drive. VPN I rarely use so free proton is enough for that. Mullvad exists on the off chance I need it for a while (it's a constant price per month how many ever months you choose, and you can just "top up" with some amount and it will last you the appropriate number of days).
Mailbox and Posteo doesn't have their app in F-Droid 🤔
I know Tuta has, and just looked up Disroot, they also have...
You can use Thunderbird with Mailbox and I think Posteo too? Does disroot even have an app? Even their official pages directed me to other clients like Thunderbird
I'm in pretty deep on the email side to the point where leaving would take days or weeks of effort. I'm not above making that effort if I think it's necessary though. I do not yet think it's necessary.
I did just start using my second Proton product, Standard Notes, around two months ago. I'm not honestly sure if I'll renew it when it expires - we'll see how the year goes. I honestly have very little expectation that Proton is enshittifying or turning evil. I'll be very surprised if it becomes a recurring pattern for them.
I use Azire for vpn since they own their servers and let you use a plain old wireguard client. Before that I used Mullvad but I need port forwarding and a few sites I frequent blocked it for some reason. Only use Proton’s VPN for less sensitive stuff and being able to exit in lots of countries. The inconsistency in all the apps’ UIs sort of irks me, and the lack of a drive client for Linux is a negative.
I only recently finished migrating all my email to Proton so I’m probably leaving it for now. But I’m eyeballing replacements. His comments on X seemingly sucking up to Trump weirds me out… especially after the shock and awe shit show happening this week
I was looking at Proton for mail and calendar right around the time the Andy thing kicked off. I hadn’t yet pulled the trigger on Proton due to their fairly high pricing. I ultimately decided on Tuta for mail and calendar, and I have no issues using their native/desktop apps. I am still forwarding everything from my Gmail account as I slowly work through changing my email on key services. So far so good.
The one issue I had with Tuta is no ability to import mail unless you are at the highest priced tier. I’m on the middle one so no import. What I did instead was just download a copy of my Gmail to an MBOX file, and I have that on my desktop and access it with Thunderbird (read only) as needed. This was fine for me as I don’t have much mail of significance.
Switching was a small action, but one that made me feel immediately better, like I did something concrete in opposition to the rapidly enshittifying tech universe.
Me +wife were seriously considering switching to proton, but we had been "considering" for like half a year. So while the transfer now has been officially put on hold indefinitely, that's in practice no different from how it was before :)
Have considered tuta but there are several reasons I'm not sold on that service - primarily that they manage to give me (who isn't a techie!) the impression (I might be wrong...) of a walled garden where all the benefits /convenience of the service evaporate (??) as soon as you need to talk to a non-tuta user.(??)
From your description it sounds like the feature you might be thinking of as walled-garden-ing is end-to-end encrypted (e2ee) emails, which they call "confidential". The idea is that you can encrypt a message and send it to someone. The message they receive is actually just a link to a publicly-accessible page that Tuta hosts. You give the other person a password that they can enter on that page to read the email you sent and respond to it. If your recipient is also using Tuta, though, when you send an encrypted email it just shows up in their inbox like a regular email.
This is the standard way to handle secure emails, and it's actually a limitation of the email protocol. The way you would send an encrypted message to someone on another email server is to encrypt the email with your recipient's public key. Then the message goes to their email inbox like a regular email and they can use their private key to decrypt it (which is what Tuta does if you're sending an encrypted email to another Tuta user--they already have the recipient's public key). Email servers don't have a standard way to send each other public keys for accounts, so if you want to encrypt an email you either have to get the recipient's public key yourself and tell your email software to encrypt the message with it, or have your provider send a password protected link.
I actually just switched to Tuta. You can still get and receive normal unencrypted emails. The encryption is optional and not enabled by default. I don't have strong feelings one way or the other yet on the service as a whole. They just added the ability to import emails exported from another service, which is usually something email providers do pretty early on. Currently it's only available at the $8/month tier, but it's speculated that they'll roll it out to the $3/month tier once it's stable. That'll be a non-starter for a lot of people. The client UI is simple but functional. It was easy to set up my domain so I don't have to go into each account and update my email address. Yeah, no complaints so far, but also nothing that blows me away. There's a free tier if you wanted to just poke around.
Of course, bolting security on top of email is going to be a challenge, and require trade-offs between convenience and security.
It's likely that there are aspects of how Tuta works that I have misunderstood, but based on my understandings, this is my take:
For my use case, I believe tuta's choice of increased security isn't worth the added inconvenience for the people I'm communicating with who have to access our communications through a separate webpage instead of within their normal email inbox. (Perhaps they can export the emails from that site, but if so, they'd be unencrypted on their machine unless the user took manual steps to reenceypt, no?)
Secondly, I do not, IRL, know anybody else who uses Tuta, but I know a handful of people who do use PGP (for example through Proton). That would mean that communications with them would need to be unencrypted, or go through Tuta's portal, just as if they were regular gmail users. In contrast, if I were to choose a PGP based encryption, communicating with them - encrypted - would be more convenient. Less secure? Yes, but as I said above, that's a trade-off that I'm willing to make. Not to mention, if I no longer liked the service next year I ought be able to move on without ruining access to old emails, or really, even seeing an interruption in ongoing email conversations. Yes, that does require a custom domain to work in practice - I've set that as a precondition for whatever service I'm going to sign up for.
Thirdly, I mentioned a walled garden. Assume I were to use Tuta for a couple of years. People I regularly exchange encrypted mail with have gotten frustrated by having to use the portal and signed up for Tuta as well. One day, I decide that I would like to move elsewhere for whatever reason. Now I'm the one who have to use Tuta's portal whenever I want to communicate with my friends, because there's no other service that I can go to, that's compatible with Tuta's encryption. That's why I consider Tuta to be a walled garden.
I am glad that they finally did add import/export. When I took the service for a spin maybe a year and a half ago, import and export wasn't yet possible and a another reason too why I didn't join them already in mid 2023.
(BTW, have they fixed the Linux desktop app so that it can be used on a hi-dpi (4k) screen without a magnifying glass? Back then, that app refused to listen to any display scaling commands. I had to reconfigure the display resolution from 4k to 2k to be able to interact with the app.)
That all makes sense. You described yourself as a non-techie, so I misunderstood and thought you had assumed that all emails had to go through their portal.
You're correct that Tuta doesn't support PGP or S/MIME, which I didn't realize. I assumed that any email service that has the word "privacy" on their website would support both. I don't use personal email for sensitive communications, so I'm not in the habit of using PGP or S/MIME, but still... come on.
Their reasoning seems a bit silly. They say they don't support PGP because it doesn't encrypt the subject line, and it doesn't support post-quantum algorithms or forward secrecy. That's, at most, a warning line in the GUI, not something you just don't implement.
They say they don't implement S/MIME because of EFail, a seven year old vulnerability. They can't confirm that all external services have a mitigation in place for it. But again, just put a warning on the UI. Could even build a list of external providers that mitigate it and only show the warning if the user is sending to a system not on the list.
There are a lot of places on Tuta's website where they say they're working on features but don't specify a timeline, and a quick scan through their github issues finds some conversations where they indicate developer resources are low and they're focused on post quantum encryption first, but they said that for years. Seems they didn't implement basic features because they wanted the one big QC feature. They stated in 2020 that they intend to support PGP and Autocrypt, but they removed those from their roadmap. They're not a current priority.
"Once our PQ-encryption is in place we can consider how to best interop with others keeping benefits of perfect secrecy and post-quantum encryption." So it looks like they're letting Perfect be the enemy of Good.
Yep, I can totally see the walled garden aspect. If you want PGP, Autocrypt, or S/MIME, find another provider until Tuta gets around to implementing them. A lot of their communications read as though they don't have enough development staff to chew what they're biting off.
ETA: I don't see any scaling option in their desktop app, but you can launch it with GDK_DPI_SCALE=1.25 (or some other number) to embiggen it.
I still use protonmail since it's hard to move mail instances after giving so many people my address but I've reconsidered my plans to switch to their vpn or paid plans.
I know this is lazy of me, but no. I was going to, downloaded tuta and everything, but I just switched this year and finally have it where I want it. I have my stuff forwarded from my old emails, and most of my important stuff has the email. I also failed to vary my programs, so it's also my VPN and password manager. Even just getting starting with the email was giving me a headache.
And, honestly, the vpn is better than mullvad (to me). When I was attempting to switch, I started with mullvad, but it was so much slower. And I had issues on sites I normally had no issues with. I'll keep the resources and maybe start transferring little by little as time goes on.
I was never on Proton. Back when I decided to degoogle my digital life I landed on a short list between proton and tutamail. So I deep dive into both. When I researched Proton it stank of corporate technobro culture. The crypto wallet, trying to be an everything platform/brand, style over functionality programming, the communications. It all reeked of corpo bs.
Their only pro was operating from Swiss legal protections. So I landed on Tuta. Not because they were any particularly better, but because they were focused on doing one thing and one thing only at a time. They were also more focused on features over marketing buzzwords which I liked.
Unfortunately stuck with them for VPN (don't use any other service from them) . Lꝏking for alternatives with port forwarding . Welcome to hear suggestions
No, I wouldn't switch unless it compromise my privacy. People are overreacting and politics makes them sensitive.
I don't even know what he has said.
He said unnecessarily political things in a tweet which don't match the experiences of many people, at the exact worst moment possible. Then he doubled down on his statement with an official company account, which he later edited after there was backlash. The original comment. He's promised to post from a personal account in the future. In that same post he stated that "while the X post was not intended to be a political statement, I can understand how it can be interpreted as such, and therefore should not have been made".
In further discussions he described his political leanings as "probably closest to European center-left parties. But again, that's a massive generalization/simplification. Where that puts me on the American spectrum, I have no idea". That's not really part of the drama, but can be taken to imply that despite working with US legislators in the past and touting this work in his responses, he may not have fully understood the current political climate or party dynamics if he doesn't know which US party he more closely identifies with. Another interpretation could be that he knows full well and doesn't want to say either way because making a statement of partisan support is what put him in the hot water in the first place.
I linked original sources so you can do your own reading and come to your own conclusions. Personally I bounce between believing that he stepped in something he didn't mean to and he genuinely doesn't support either party, and thinking that he's too clever a man to not understand, especially since he has directly worked with US legislators on privacy issues and he doubled down in the comments after the general response was critical of his original tweet.