To replace everything. Mail, calendar, drive, vpn, password manager, documents etc. What are the pros and cons relative to proton? What are the mobile apps like? What assurances do you have they won’t go full proton in the future? And other questions
I like fastmail
I honestly don’t see the big deal with people hating on proton. It’s still open source it’s still encrypted and doesn’t mine your data that seams to check most of the boxes for me. The only problem I had with it was the default main client which shows upgrades to go unlimited all the time but I just use Thunderbird now.
It does not offer all the options from proton but I bought my own domain from OVH provider (France). Can configure email addresses in their admin user interface. I have one main account that I do not disclose. So when I need to create an account somewhere, I just go to OVH web interface and create a new alias for my main email.
The day OVH goes dark, I’ll just have to move my domain somewhere else.
Crypt.ee looks like a solid option to replace proton drive and docs(only for solo use) if you don’t mind their UI/UX. It also gives me confidence in them when I read their FAQ and listen to the podcasts episodes the CEO has been intertwined in.
Podcast episodes
https://neat.tube/videos/watch/cf2d43d7-56ab-42d6-82af-a0375ab7f8ca or on odysee https://odysee.com/@techlore:3/developing-privacy-tools-with-john-ozbay:3
https://neat.tube/videos/watch/2d5e2d92-f440-498b-ad1c-c2fa3d3c720b or on odysee https://odysee.com/@techlore:3/how-secure-is-big-tech-other-digital:0
https://neat.tube/videos/watch/4a279d2f-dbf3-4cb9-b5e0-377950dd702f or on odysee https://odysee.com/@techlore:3/privacy-dilemmas-education%2C-toxicity%2C:c
What assurances do you have they won’t go full proton in the future?
Absolutely none. That applies to all services that exist now or in the future. The only way around that is self-hosting but that path has its own issues including a very steep learning curve if you want to be secure as well as private. Maybe this could be a longer term project to work towards?
For services:
- Mail - Mailbox.org seems the best option right now
- Calendar - don’t know.
- Drive - either Cryptomator used with literally any service or a dedicated service like Filen
- VPN - Mullvad
- Password Manager - Bitwarden
- Documents - I just use LibreOffice offline or CryptPad occasionally if I’m collabing with someone.
In truth none of these are perfect. Privacy has got a lot harder recently as Proton and StartMail/StartPage have politically shit the bed and the UK seems determined to kill encryption which means I have to avoid really good services like IceDrive just because they’re in the UK.
EDIT: Calendars. Mailbox.org’s included one works fine. You can sync using CalDAV. The process for Thunderbird (desktop) is here.
The process for mobile is a little more complicated. First you need Davx5 to actually get the data, but thats all that app does. It’s not a Calendar app. It does work with the native Android Calendar but I used FossifyCalendar.
So install both of those then login to your Mailbox account in a browser and create a Calendar (or use an existing one). Get its unique URL by looking under the heading ‘My Calendars’, clicking the three bars icon, click ‘Properties’ and you can then copy your CalDAV URL.
On your Android device open Davx5, tap the plus icon then specify ‘login with URL and username’ tap ‘continue’ then paste in the URL you copied earlier, your email address and your email account password, tap ‘login’ and that should work.
Now, switch to your Calendar app. I used Fossify Calendar so if you are too, open that up, go to Settings, scroll down to the CALDAV section and turn on CalDAV sync. It might switch to your new Mailbox calendar now, but if it doesn’t, tap ‘Manage synced calendars’ and activate it there.
Regarding Password Managers, you can put a little extra effort into setup with KeePass + SyncThing to avoid using 3rd parties at all.
Highly recommend not relying on a cloud provider for this kind of thing. You’re just asking for one of two things to happen:
- Their servers get compromised
- They decide to shut down
I know you can self-host with vaultwarden, but if you’re not a self-hoster then it’s a little bit simpler to setup SyncThing and use the kdbx format.
Thats a good point, I might set that up myself!
At the moment I do a once-a-week encrypted export from BitWarden and Aegis (authenticator) and put those exports onto an encrypted USB pen drive to avoid the issues you mention but I think your way is probably better.
You mentioned another excellent tool, Aegis!
I use it too, and I have it set to auto-export every time I add a new OTP provider to my SyncThing system. Since you can encrypt the exports, it fits nicely and have my OTPs available everywhere.
What happened with StartPage?
I can personally recommend fruux for calendars and contacts, but their free accounts are rather limited.
Tuta is a great german alternative with e-mail and calendar. For Drive there is many options but I don’t feel recommanding one now For VPN there is Mullvad, IVPN and NymVPN(beta) For Password Manager there is BitWarden or any popular KeePass clients but sync is mainly on you. For Documents there is CryptPad
I wholeheartedly agree with Tuta over Proton Mail!
And to add to password manager, KeePass + SyncThing is excellent if you need to access your vault on multiple devices without any 3rd parties involved.
Proton’s probably the best mail.
Calendar: paper
Documents: cryptpad
As others have said no all-in-one solution, but Privacy Guides has good recommendations for each use case
Things I have changed to or plan to
Tutamail for e-mail and calendar
Plan to change Filen for cloud services
F-secure’s Freedome for VPN
For the rest I’m looking for good solutions as well and also opinions on Filen or if there’s other alternatives that might be better
There are no viable package solutions, that’s the thing. If you want to make sure your service supplier shares your values, there’s nothing but self-hosting left.
mailbox.org but i dont put all my eggs in one basket. I only mailbox for mail.
ENTE for photo storage: https://ente.io/
Crypt.ee is also an option.
Have a look at: https://www.privacyguides.org/en/tools/
Tuta for mail & calendar, CryptPad for cloud docs and spreadsheets, Mullvad for VPN, plus a few other random things like Disroot which offers email and some other services. There’s some overlap and duplication but I don’t want to keep all my shit in one place any more. The Tuta app is blocky but acceptable. Everything else I only view in browsers.
Tuta – https://tuta.com/
Includes mail and calendar and contacts. No files, or password management. But worth a look, if you want an encrypted solution and you’re OK with using their client apps. I do, and I am and it’s great, IMO.
Their blogs say they’re pro-privacy, and anti-BS, if you believe them: https://tuta.com/blog
Incoming mail: my own server and my own domain (Postfix). Sufficient to receive confirmation mails and notifications.
Outgoing mail: no good/reliable solution yet. I have to send personal e-mail very very rarely.
Calendar: Tasks.org app, used offline (not synced).
Drive: 1TB external HDDs. GPG encrypted backups of important stuff are uploaded regularly to one of the VPSes I have.
VPN: Tor
Password manager: KeepassXC (with backups at 3 places).
Documents: Stored on computer, important ones are backed up. Confidential ones are stored on an encrypted LUKS volume which I only mount when I need something.
In general things I need on the go (e.g Calendar) is on my phone, the rest is at home at my computer. If I need to move data between devices I simply use USB drives. I don’t need no cloud sync of anything.