Here’s a thing that is not often said out loud about e-mail encryption, courtesy of Migadu:
"Email as we know it and encryption are incompatible. If someone is telling you otherwise, they are not to be trusted.
Email is built on top of plain text protocols and messages flow in plain text. If you encrypt, you cannot scan for spam or viruses, index messages for searching or recover messages when a password gets lost. Not to mention the usability issues of changing passwords / encryption keys.
This cannot be fixed, at least not any time soon without breaking the protocols on which email relies.’
[…]
We know some email providers automatically encrypt messages as they arrive using users' public keys. That sounds exciting but in practice it does not really prevent the provider from accessing the mails. It only makes email less usable, less standard and more tied to that provider. What you gain in security you lose in portability and usability, and what we do not want for ourselves, we won’t be offering others either.”
https://www.migadu.com/procon/
I love this Pro/Cons page on Migadu so much. Just telling everything like it is:
"In Switzerland, but servers are not.
This may come as a surprise, but we do not host our servers in Switzerland. Current data centers are located in France. We may in the near future add Swiss data centers too but this is not our priority.
We find EU privacy laws much more elaborate and restrictive than the Swiss ones. Switzerland used to be famous for banking secrecy, but that has nothing to do with digital data.
[…]
We did it our way.
We are very opinionated and will refuse to follow trends or “best practices” if they do not make sense to us. This refers to business as well email policies.”
https://www.migadu.com/procon/