Encrypted mail black.com

Hello all. A friend of mind has recommended me black.com an encrypted mail services that I had never heard of…
It hasn’t a free services, it is 3.5€/m, 25gb, aliases… and I quote:

“Emails are zero-access encrypted (AES-GCM-256 with RSA-OAEP-4096 key sharing) with a password-derived key, which means that not even we can access the contents of your emails at rest. Our system encrypts subjects, headers, message contents, attachments, email drafts and push notifications.”

Any of you know it? any review already?

Thank you very much.

Sounds like proprietary trash. Say no!

3 Likes

There are others proprietary software recommended in PG, like Tresorit.
I just want to know if someone knows it…

No pgp, no audit, no in depth info on the site, dubious privacy policy, one developer?
TLS in transit as an asset?
Come on, same old good red flags.

5 Likes

Sounds like what Startmail and Posteo are doing. The problem is that when you access your email (via browser/webmail or app/IMAP) your stuff gets decrypted temporarily. So it’s just privacy theatre. Happy to be proven wrong in this case though.

1 Like

Nothing about it screams it is genuinely private and secure - with communication tools, if not open source, not worth using it.

Also, it has AI with “private email service”? How stupid do the developers think people are.

AI = Surveillance

2 Likes

Seems like a crypto project pivoting into email on cursory glance: https://xcancel.com/PatrickBrunner/status/1542589791149113345#m

Founders also don’t seem to have any pedigree or background in security/privacy.

Couldn’t find any legitimate reviews outside of their website, no audits too, so I’d recommend stay away. Why not use the recommended services like Tuta, Proton, etc.?

3 Likes

Tuta deleted the accounts I had, one of them even paid… Proton (I was visionary) doesn’t have a single product that is not half baked. I use Linux, I can only use SimpleLogin and barely the web mail.

3 Likes

Ah, makes sense if you had bad experience with them. I have mostly moved away from using personal mail for any actual communication. It’s mostly used to sign up for services with Proton aliases.

Sorry, won’t be able to help with an alternative then, but would recommend staying away from this black(dot)com mail, seems very sketchy.

2 Likes

Thank you very much. I will.
I will have to buy “a server” and host my own services…

2 Likes

Agree. Thats NOT that hard :slight_smile: BTW: If you can afford, buy your own physical server. Dont go with VPS/dedicated. This will cost you higher, but its one time payment.

As of red flags: here is another one:
Zrzut ekranu 2024-10-8 o 14.46.22

Not always, but often.

Anyway, its a very slick website - but its not going to be anywhere near as private as any of our recommended providers.

These are all valid concerns. I also enjoy that 2FA is listed as a feature too.

Cool domain, pretty website, substandard service. We won’t be recommending it unless quite a lot changes.

1 Like

Website doesn’t load without JavaScript…

1 Like

Reason: lack of options.