Unnecessary and deeply concerning bow to the new “king”

      • drkt@scribe.disroot.org
        link
        fedilink
        English
        arrow-up
        6
        ·
        7 days ago

        They give you poorly disguised ads that you can’t unsubscribe from in the form of a “news letter”. These appear as emails in your inbox with special styling that sticks out. They’ve recently started pushing new features in the Calendar that you need to be the higher paying tier to use, but they still have special styling to make them stand out. If you try to use them, you get a huge popup saying you need to upgrade. They’ve been removing features from the lower tiers and demand you upgrade to keep using it.

        • LWD@lemm.ee
          link
          fedilink
          English
          arrow-up
          2
          ·
          16 hours ago

          Every time I open my inbox, I got a new notification about either upgrading to a paid tier, or the exact same thing but disguised as a feature announcement.

          • drkt@scribe.disroot.org
            link
            fedilink
            English
            arrow-up
            1
            ·
            15 hours ago

            If you’re looking for a new home, Disroot has free email services with a one-time payment if you want a custom domain attached. I’m just giving them the money I used to give Tuta every month. I don’t want to sound like a shill, so I’ll keep it short: I believe in Disroot far more than I ever did Tuta because Tuta was a business and Disroot is a movement. Disroot isn’t in a position where a fat cat investor is gonna start squeezing them for a return. Their last finance report also looked pretty good.

            • LWD@lemm.ee
              link
              fedilink
              English
              arrow-up
              1
              ·
              13 hours ago

              I’m tempted, but Disroot has two things that will probably keep me away, unfortunately.

              1. Email is stored unencrypted on their servers
              2. The site is associated with political activism

              There are technical reasons for #1 being true (and ultimately, even if they encrypted the email, I would have to trust them anyway) but this opens extra venues for exploitation. Coupled with #2, the site may be targeted by activist groups who don’t like the politics associated with them, or participants on the service might be automatically associated with it. Personally, either of these issues on their own tends to be enough for me to avoid a service. I respect Disroot but it’s probably not for me.

              • drkt@scribe.disroot.org
                link
                fedilink
                English
                arrow-up
                1
                ·
                11 hours ago

                #2 is fair, but I really don’t see any point in encrypting emails at rest when they by design are going to third parties who can do whatever they want with it. I don’t trust emails with sensitive information, so that’s not a problem for me. I wouldn’t have email if that was an option.

                • LWD@lemm.ee
                  link
                  fedilink
                  English
                  arrow-up
                  1
                  ·
                  edit-2
                  5 hours ago

                  I think #1 is important in part due to #2, and because it’s due diligence for maximizing privacy where possible. If you’re sending emails to somebody on a different server, then you might not want them to be accessible on your own server if it gets breached, regardless of someone else’s security. (And if their server gets breached, attackers would then only have a subset of your messages.)

                  • drkt@scribe.disroot.org
                    link
                    fedilink
                    English
                    arrow-up
                    1
                    ·
                    4 hours ago

                    Yes, I understand, but I think it’s a false premise that email can be secure at all. You shouldn’t treat it as such and you should never send incriminating or sensitive information through email regardless of what promises are made about it being secure lest it is your own server. You can talk to people in much more convenient and actually secure and even anonymous ways and email does none of that so I don’t know why it’s expected to.

                    Email should, for 2-way communication, at best be used to establish actually secure connections elsewhere.

                    For all else, it should just be treated as an inbox that random people from the internet can dump stuff in for you to check out at your discretion.