Posteo's Privacy Architecture

vishnukvmd1 pts0 comments

Email green, secure, simple and ad-free - posteo.de - Encryption

@licstart The following is the entire license notice for the<br>JavaScript code in this page.

Copyright (C) 2015 Posteo e.K.

The JavaScript code in this page is free software: you can<br>redistribute it and/or modify it under the terms of the GNU<br>General Public License (GNU GPL) as published by the Free Software<br>Foundation, either version 3 of the License, or (at your option)<br>any later version. The code is distributed WITHOUT ANY WARRANTY;<br>without even the implied warranty of MERCHANTABILITY or FITNESS<br>FOR A PARTICULAR PURPOSE. See the GNU GPL for more details.

As additional permission under GNU GPL version 3 section 7, you<br>may distribute non-source (e.g., minimized or compacted) forms of<br>that code without the copy of the GNU GPL normally required by<br>section 4, provided you include this license notice and a URL<br>through which recipients can access the Corresponding Source.

@licend The above is the entire license notice<br>for the JavaScript code in this page.<br>-->

Javascript license information

Posteo only works with Javascript activated!

Innovative encryption for all

"Posteo's comprehensive encryption system offers reliable protection for your emails. You can learn more about it on this page."

Encryption

You need not be at the mercy of large-scale eavesdropping on the internet. Extensive encryption offers reliable protection. Posteo offers a comprehensive and innovative encryption system , that we would like to introduce you to on this page. We apply different methods of encryption at different points.

Posteo always uses the most modern encryption technologies and continually further develops its encryption system . We do everything we can, from our side as a provider, to enhance to the security of your communication. This also depends on some factors over which we have no control. You can also do some things yourself to communicate more securely – we also provide more information on this page.

Stay informed: Posteo's encryption concept achieves top marks on various independent test sites such as Qualys SSL Labs and Hardenize.

Overview

Posteo’s encryption layers

Move the mouse over the image or click an encryption layer to learn more about Posteo’s security architecture.

You can find more information on encryption in the following sections:

Encryption of the delivery route

Access encryption

Passwords & mobile numbers

Two-factor authentication

Encrypted servers

Crypto mail storage

End-to-end encryption

Calendar & address book encryption

Internet: Encrypted connections to other email servers (when possible)

Email transport:

Every email that you send to another email provider or server is transmitted by Posteo via an encrypted connection , if the other server supports this. We always use the newest technologies for this.

TLS (1.2-1.3) with PFS

DANE/TLSA

Automatic encryption of the transport route occurs in the background, without you doing anything.

It protects:

The content of your emails

Their metadata (such as subject, recipient, time)

Further information on transport route encryption at Posteo can be found in the transport route encryption section.

Transparency advice:

The quality of Posteo’s encryption can be tested and viewed on the independent Qualys test site.

Encrypted access to Posteo is mandatory (website, devices and programs)

Access encryption:

At Posteo, all access occurs encrypted .

Webmail

Local email programs

Mobile devices

We do not offer unencrypted access. We always use the newest technologies for access encryption.

TLS (1.2-1.3) with PFS

Strict Transport Security (HSTS)

DANE/TLSA

In addition, we use a so-called extended certificate that enables you to quickly determine that you really are visiting our website.

Further information on Posteo’s access encryption and the extended certificate can be found in the access encryption section.

Encrypted connections within Posteo

Internal connections:

We encrypt all connections within Posteo .

Encryption using SSH and TLS (among others)

This ensures that eavesdropping occurs neither within the system, nor in the data centre, nor on the way to the backup location.

Further information on encryption within Posteo can be found in the server encryption section.

Access protection: Password (salted hash)

Storage of passwords:

Posteo does not store your password in plain text. Despite this, it is checked with each login using a hash function.

Passwords do not exist as plain text

Saved as a salted hash

We do not know your password and can not provide it either to you or to third parties.

Further information on Posteo’s encryption of passwords and mobile phone numbers can be found in the passwords and mobile numbers section.

Access protection 2 (optional): One-time password

Two-factor protection:

With Posteo, you can activate two-factor authentication. This further increases security for access to your Posteo account (in the browser).

Login...

encryption posteo access information email license

Related Articles