mailbox.org

From HandWiki
Short description: Encrypted email and web service provider in Germany


Mailbox.org
Mailbox.org logo.svg
Available inEnglish, German
Headquarters
OwnerHeinlein Support GmbH, Berlin, Germany
Websitemailbox.org
CommercialYes
RegistrationRequired
Launched2014; 10 years ago (2014)
Current statusOnline

mailbox.org is an encrypted email service provider based in Germany.[1] The encryption system uses PGP like most other encrypted email providers. It also features address books, calendars, video conferencing, online office and tasks management. It competes against Office365 and GSuite as a German based provider. Its target customers include private, business, school and public authorities.[2]

History

In the wake of Snowden leaks, mailbox was started as a self-funded email provider in 2014 with aim to increase data protection and privacy.[3][4][5] Mailbox had been around in different forms since 1990. Mailbox's root lay in political provider JPBerlin since 1989.[6]

Since 2016, Mailbox.org has offered a Tor exit node for anonymizing connection data.[7] If Mailbox.org's services are accessed via the Tor anonymization network and the Tor exit server, Mailbox.org no longer logs IP addresses that would be suitable for data retention.[8][9]

In January 2021, Berlin education department announced in press release to provide accounts for data-secure service emails for all of its approximately 33,000 Berlin public school teachers by the end of the year through a collaboration with mailbox.org.[10] But in December 2022, Berlin schools were again planned to convert from mailbox email to Microsoft exchange emails as reported by Der Tagesspiegel.[11]

Features

Pricing

Mailbox.org's basic offers 3 plans: light, standard and premium. Light is $1/month/user for 2 GB of email storage and 3 alias address. Standard is $3/month/user for 10 GB email storage, 2 GB drive storage and 25 mailbox alias and 50 custom domain email alias. The premium option gives 25 GB email storage, 5 GB cloud storage and 250 alias address to a custom domain as well as 25 mailbox alias address as well as priority email and telephone support.[5]

Security

Mailbox uses PGP encryption. Mailbox.org has received IT Security label from German federal office for Information Security.[12] Mailbox has a dedicated Tor Exit Node with an onion service address.[13]

Mailbox.org developed various new approaches to protect user data: for example, the provider was the first to introduce the option of subsequently encrypting all incoming e-mails with the user's public PGP key, thus providing special protection against access by third parties should the mailbox password be lost.[14] Mailbox.org is the first provider to offer the option of subsequently encrypting all incoming e-mails with the user's public PGP key, thus providing special protection against access by third parties should the mailbox password be compromised.

When using the webmail offer, it is possible to encrypt and also decrypt one's e-mails using PGP without special client software (e-mail program with any plug-ins that may be required), without necessarily using a browser extension such as Mailvelope. Keys and the encryption process take place outside the user's sphere of influence on mailbox.org's servers, which, however, contradicts the principle of end-to-end encryption. However, according to Peer Heinlein, CEO of mailbox.org, the private keys are stored on the servers at all times with a password known only to the user, so they cannot be viewed by administrators.[15] In addition, this avoids the need to store private PGP keys on end devices that are perceived as insecure.

Video conferencing

The video conference service offered is based on open source OpenTalk software.[16][17]

Others

Mailbox also has XMPP server for its users.[18] It also offers address books, calendars and online office. The office suit includes online word processor and spreadsheet.[16]

Transparency

Mailbox publishes annual report of the number of information request it received from various governments.[19]

References

  1. Brinkmann, Martin (Feb 24, 2014). "Mailbox.org: German email provider offering full inbox encryption". https://www.ghacks.net/2014/02/24/mailbox-org-german-email-provider-offering-full-inbox-encryption/. 
  2. Huber, Mathias (2014-02-21). "Mailbox.org: Heinlein startet modernisiertes Mail-Angebot" (in de-DE). https://www.linux-magazin.de/news/mailbox-org-heinlein-startet-modernisiertes-mail-angebot/. 
  3. Sobiraj, Lars (2021-03-19). "mailbox.org entstand wegen Edward Snowden: Peer Heinlein im Gespräch" (in de-DE). https://tarnkappe.info/artikel/interviews/mailbox-org-entstand-wegen-edward-snowden-peer-heinlein-im-gespraech-91422.html. 
  4. "About mailbox.org - Our team, our history, our mission | mailbox.org" (in en). https://mailbox.org/en/company#our-history. 
  5. 5.0 5.1 updated, Desire Athow last (2020-11-11). "Mailbox.org secure email review" (in en). https://www.techradar.com/reviews/mailboxorg. 
  6. dmon. "Das sichere E-Mail-Postfach für 1 €/Monat" (in de-DE). https://www.jpberlin.de/email/sichere-e-mail/. 
  7. "Tor Good Exit Nodes". https://www.privacy-handbuch.de/handbuch_24n.htm. 
  8. professional, com!. "Mailbox.org betreibt eigenen Tor Exit Node" (in de). https://www.com-magazin.de/news/e-mail/mailbox.org-betreibt-eigenen-tor-exit-node-1075494.html. 
  9. online, heise (2016-02-04). "Mailbox.org betreibt Tor-Exit-Node" (in de). https://www.heise.de/news/Mailbox-org-betreibt-Tor-Exit-Node-3092618.html. 
  10. "Datensichere Dienstmails für Lehrkräfte kommen: Die Testphase läuft bereits" (in de). 2021-01-19. https://www.berlin.de/sen/bjf/service/presse/pressearchiv-2021/pressemitteilung.1041870.php. 
  11. "Anbieterwechsel empört Abgeordnete: Berlins Lehrkräfte bekommen neue Mail-Adressen" (in de-DE). Der Tagesspiegel Online. ISSN 1865-2263. https://www.tagesspiegel.de/berlin/anbieterwechsel-emport-abgeordnete-berlins-lehrkrafte-bekommen-neue-mail-adressen-9032227.html. 
  12. "Secure e-mail for private and business customers | mailbox.org" (in en). https://mailbox.org/en/. 
  13. "Security features & encryption | mailbox.org" (in en). https://mailbox.org/en/security. 
  14. "Stiftfilm: Das verschlüsselte Postfach | mailbox.org – Ihr sicherer E-Mail-Anbieter". 2015-11-17. https://mailbox.org/im-stiftfilm-erklaert-das-vollstaendig-verschluesselte-postfach/. 
  15. "Holger Bleich: Webmail mit PGP bei Mailbox.org". https://www.heise.de/ct/ausgabe/2015-16-aktuell-Internet-2740928.html. 
  16. 16.0 16.1 "Our product: Secure e-mail and more | mailbox.org" (in en). https://mailbox.org/en/services. 
  17. "OpenTalk · GitLab" (in en). https://gitlab.opencode.de/opentalk. 
  18. "Golem.de: IT-News für Profis". https://www.golem.de/sonstiges/zustimmung/auswahl.html?from=https%3A%2F%2Fwww.golem.de%2Fnews%2Fjabber-xmpp-mailbox-org-startet-instant-messaging-service-1502-112512.html. 
  19. "About mailbox.org - Our team, our history, our mission | mailbox.org" (in en). https://mailbox.org/en/company#transparency-report. 

External links