Remove posteo, update criteria (#369)

Signed-off-by: Daniel Gray <dng@disroot.org>
This commit is contained in:
Tommy authored and Daniel Gray committed 2021-11-24 16:18:47 +10:30
1 parent 7d366c8fa1
commit ba33e69091
3 files changed
+2 -39

No files matched your search

@@ -81,42 +81,6 @@
<p>All accounts come with limited cloud storage that <a href="https://kb.mailbox.org/display/MBOKBEN/Encrypt+files+on+your+Drive">can be encrypted</a>. Mailbox.org also offers the alias <a href="https://kb.mailbox.org/display/MBOKBEN/Ensuring+E-Mails+are+Sent+Securely">@secure.mailbox.org</a>, which enforces the TLS encryption on the connection between mail servers, otherwise the message will not be sent at all. Mailbox.org also supports <a href="https://en.wikipedia.org/wiki/Exchange_ActiveSync">Exchange ActiveSync</a> in addition to standard access protocols like IMAP and POP3.</p>
</div>
</div>
<div class="row mb-2">
<div class="col-lg-3 col-sm-12 pt-lg-5">
<img
src="/assets/img/legacy_svg/3rd-party/posteo.svg"
height="70"
width="200"
class="img-fluid d-block me-auto ms-auto align-middle"
alt="Posteo">
</div>
<div class="col">
<h2 id="posteo" class="anchor"><a href="#posteo"><i class="fas fa-link anchor-icon"></i></a> Posteo {% include badge.html color="info" text="€12/y" %}</h2>
<p><strong><a href="https://posteo.de">Posteo.de</a></strong> is an email provider that focuses on anonymous, secure, and private email. Their servers are powered by 100% sustainable energy. They have been in operation since <strong>2009</strong>. Posteo is based in <span class="flag-icon flag-icon-de"></span> Germany and has a free 14-day trial. Posteo comes with 2 GB for the monthly cost and an extra gigabyte can be purchased for €0.25 per month.</p>
<h5>{% include badge.html color="warning" text="Domains and Aliases" %}</h5>
<p>Posteo does <a href="https://posteo.de/en/site/faq">not allow the use of custom domains</a>, however users may still make use of <a href="https://posteo.de/en/help/what-is-an-email-alias">subaddressing</a>.</p>
<h5>{% include badge.html color="warning" text="Payment Methods" %}</h5>
<p>Posteo does not accept Bitcoin or other cryptocurrencies as a form of payment, however they do accept cash-by-mail. They also accept credit/debit cards, bank transfers, and PayPal, and remove PII (personally identifiable information) <a href="https://posteo.de/en/site/payment">that they receive</a> in connection with these payment methods.</p>
<h5>{% include badge.html color="success" text="Account Security" %}</h5>
<p>Posteo supports <a href="https://posteo.de/en/help/what-is-two-factor-authentication-and-how-do-i-set-it-up">two factor authentication</a> for their webmail only. You can use either <a href="https://en.wikipedia.org/wiki/Time-based_One-time_Password_Algorithm">TOTP</a> a <a href="https://en.wikipedia.org/wiki/YubiKey">Yubikey</a> with TOTP. Web standards such as <a href="https://en.wikipedia.org/wiki/Universal_2nd_Factor">U2F</a> and <a href="https://en.wikipedia.org/wiki/WebAuthn">WebAuthn</a> are not yet supported.</p>
<h5>{% include badge.html color="warning" text="Data Security" %}</h5>
<p>Posteo has <a href="https://posteo.de/en/site/encryption#cryptomailstorage">zero access encryption</a> for email storage. This means the messages stored in your account are only readable by you.</p>
<p>Posteo also supports the encryption of your <a href="https://posteo.de/en/site/features#featuresaddressbook">address book contacts</a> and <a href="https://posteo.de/en/site/features#featurescalendar">calendars</a> at rest. However, Posteo still uses standard <a href="https://en.wikipedia.org/wiki/CalDAV">CalDAV</a> and <a href="https://en.wikipedia.org/wiki/CardDAV">CardDAV</a> for calendars and contacts. These protocols do not support <a href="https://en.wikipedia.org/wiki/End-to-end_encryption">E2EE (End-To-End Encryption)</a>. A <a href="/software/calendar-contacts/">standalone option</a> may be more appropiate.</p>
<h5>{% include badge.html color="success" text="Email Encryption" %}</h5>
<p>Posteo has <a href="https://posteo.de/en/site/encryption#pgp_webmailer">integrated encryption</a> in their webmail, which simplifies sending messages to users with public OpenPGP keys. They also support the discovery of public keys via HTTP from their <a href="https://wiki.gnupg.org/WKD">Web Key Directory (WKD)</a>. This allows users outside of Posteo to find the OpenPGP keys of Posteo users easily, for cross-provider E2EE.</p>
<h5>{% include badge.html color="danger" text=".onion Service" %}</h5>
<p>Posteo does not operate a .onion service.</p>
<h5>{% include badge.html color="info" text="Extra Functionality" %}</h5>
<p>Posteo allows users to <a href="https://posteo.de/en/help/does-posteo-offer-mailing-lists">set up their own mailing lists</a>. Each account can create one list for free.</p>
</div>
</div>
<div class="row mb-2">
<div class="col-lg-3 col-sm-12 pt-lg-5">
<img
-2
View File
@@ -1,2 +0,0 @@
<?xml version="1.0" encoding="UTF-8"?>
<svg width="384" height="128" version="1.1" viewBox="0 0 101.6 33.867" xmlns="http://www.w3.org/2000/svg"><g transform="matrix(2.0006 0 0 1.9999 -.0042735 -560.15)"><g transform="matrix(1.1993,0,0,1.1993,-54.058,-1.7408)" stroke-width=".26458"><rect id="bg" class="logo-bg" x="45.09" y="234.99" width="42.333" height="14.12" fill="#a9d158" stroke-width=".30561"/><g fill="#fff"><path class="logo-text" d="m48.066 242.26-1.7198 6.7204-1.27 0.13229 1.7198-6.7204z"/><path class="logo-text" d="m51.638 241.84-1.7198 6.7469-1.27 0.1323 1.7462-6.7469 1.2435-0.13229z"/><path id="letter_P" class="logo-text" d="m56.798 243.34c0.02646 0.26459 0.02646 0.55563-0.02646 0.82021-0.05292 0.26459-0.15875 0.52917-0.34396 0.74084-0.15875 0.21166-0.42333 0.39687-0.74083 0.55562-0.29104 0.15875-0.71438 0.23813-1.2171 0.29104l-0.3175 0.0265 0.23812 2.2754-1.4023 0.15875-0.74083-6.4294 1.8256-0.18521c0.42333-0.0265 0.79375-0.0265 1.1112 0.0265 0.29104 0.0529 0.58208 0.15875 0.82021 0.3175 0.21167 0.15875 0.39688 0.34396 0.52917 0.58208 0.13229 0.21167 0.21167 0.50271 0.26458 0.82021zm-2.7781 1.3229 0.26458-0.0265c0.39688-0.0265 0.68792-0.15875 0.87312-0.3175 0.15875-0.15875 0.23812-0.44979 0.21167-0.76729-0.02646-0.3175-0.15875-0.55562-0.34396-0.68792-0.18521-0.13229-0.50271-0.15875-0.87312-0.13229l-0.34396 0.0265z"/><path id="letter_O" class="logo-text" d="m63.571 243.82c0.05292 0.50271 0.02646 0.9525-0.02646 1.3758-0.07937 0.42333-0.21167 0.79375-0.42333 1.1377-0.21167 0.3175-0.50271 0.58208-0.84667 0.76729-0.34396 0.21166-0.76729 0.3175-1.2965 0.39687-0.50271 0.0529-0.9525 0.0265-1.3494-0.0794-0.39687-0.10584-0.71437-0.29104-0.97896-0.58209-0.26458-0.26458-0.50271-0.58208-0.66146-0.97895-0.15875-0.39688-0.26458-0.84667-0.3175-1.3494-0.05292-0.50271-0.05292-0.9525 0.02646-1.3758 0.07937-0.42334 0.21167-0.79375 0.42333-1.1112 0.21167-0.3175 0.50271-0.58209 0.84667-0.76729 0.34396-0.18521 0.79375-0.3175 1.2965-0.39688 0.50271-0.0529 0.9525-0.0265 1.3494 0.0794 0.39687 0.10583 0.71437 0.29104 0.97896 0.58208 0.26458 0.26458 0.50271 0.58208 0.66146 0.97896 0.13229 0.37041 0.26458 0.84666 0.3175 1.3229zm-4.4715 0.47625c0.02646 0.34396 0.10583 0.635 0.18521 0.89959 0.07937 0.26458 0.21167 0.47625 0.34396 0.66146 0.15875 0.15875 0.29104 0.29104 0.52917 0.39687 0.18521 0.0794 0.42333 0.10583 0.68792 0.0794 0.26458-0.0265 0.50271-0.0794 0.68792-0.21167 0.15875-0.10583 0.3175-0.26458 0.42333-0.47625s0.15875-0.44979 0.18521-0.71438c0.02646-0.26458 0.02646-0.58208-0.02646-0.92604-0.02646-0.34396-0.10583-0.635-0.18521-0.89958-0.10583-0.26458-0.21167-0.47625-0.34396-0.66146-0.13229-0.15875-0.29104-0.29104-0.52917-0.39687-0.18521-0.0794-0.42333-0.10584-0.68792-0.0794-0.26458 0.0265-0.50271 0.0794-0.66146 0.21167-0.15875 0.10583-0.3175 0.26458-0.42333 0.50271-0.10583 0.21166-0.15875 0.44979-0.18521 0.71437-0.07937 0.26458-0.05292 0.55563 0 0.89958z"/><path id="letter_S" class="logo-text" d="m68.572 244.59c0.05292 0.26458 0.05292 0.55562 0 0.79375-0.05292 0.23812-0.15875 0.47625-0.3175 0.66145-0.15875 0.18521-0.39688 0.37042-0.635 0.50271-0.26458 0.13229-0.55562 0.23813-0.92604 0.3175-0.29104 0.0529-0.635 0.0794-0.92604 0.0794s-0.58208-0.0529-0.87312-0.13229l-0.23812-1.27c0.15875 0.0529 0.3175 0.0794 0.47625 0.10583 0.15875 0.0265 0.3175 0.0794 0.47625 0.0794 0.15875 0.0265 0.3175 0.0265 0.47625 0.0265s0.29104 0 0.47625-0.0265c0.15875-0.0265 0.29104-0.0794 0.39688-0.13229 0.07937-0.0529 0.18521-0.10583 0.23812-0.18521 0.05292-0.0794 0.07937-0.15875 0.10583-0.23812v-0.26458c-0.02646-0.10584-0.07937-0.21167-0.13229-0.29105-0.05292-0.0794-0.15875-0.15875-0.26458-0.21166-0.10583-0.0529-0.23812-0.10584-0.37042-0.18521-0.13229-0.0529-0.3175-0.10583-0.50271-0.13229-0.15875-0.0529-0.3175-0.10584-0.50271-0.15875-0.18521-0.0529-0.37042-0.15875-0.55562-0.26459-0.18521-0.10583-0.3175-0.26458-0.50271-0.44979-0.15875-0.18521-0.23812-0.44979-0.29104-0.71437-0.05292-0.26459-0.05292-0.55563 0-0.79375 0.05292-0.23813 0.15875-0.47625 0.29104-0.66146s0.34396-0.34396 0.58208-0.50271c0.23812-0.13229 0.50271-0.23812 0.82021-0.26458 0.15875-0.0265 0.29104-0.0529 0.47625-0.0529h0.47625c0.15875 0 0.3175 0.0265 0.47625 0.0529 0.15875 0.0265 0.3175 0.0794 0.50271 0.10583l-0.21167 1.1642c-0.13229-0.0265-0.26458-0.0794-0.42333-0.0794-0.10583-0.0265-0.21167-0.0265-0.34396-0.0265-0.10583 0-0.23812-0.0265-0.3175 0-0.10583 0-0.21167 0.0265-0.3175 0.0529-0.21167 0.0265-0.39688 0.13229-0.50271 0.29104s-0.13229 0.3175-0.07938 0.52917c0.02646 0.10583 0.05292 0.21167 0.10583 0.26458 0.05292 0.0794 0.13229 0.13229 0.21167 0.18521 0.10583 0.0529 0.21167 0.10583 0.34396 0.15875 0.13229 0.0529 0.3175 0.10583 0.52917 0.15875 0.23812 0.0794 0.47625 0.15875 0.68792 0.21167 0.21167 0.0529 0.42333 0.18521 0.58208 0.3175 0.15875 0.10583 0.29104 0.26458 0.39688 0.44979-0.02646 0.0529 0.05292 0.26458 0.10583 0.52917z"/><path id="letter_T" class="logo-text" d="m72.091 246.17-1.4023 0.15875-0.58208-5.3181-1.6404 0.15875-0.13229-1.1377 4.7096-0.52916 0.10583 1.1377-1.6404 0.15875c0 0.0529 0.58208 5.37Line truncated

Before

Width:  |  Height:  |  Size: 6.8 KiB

+2 -1
View File
@@ -91,7 +91,8 @@ description: "Find a secure email provider that will keep your privacy in mind.
<li>No <a href="https://en.wikipedia.org/wiki/Opportunistic_TLS">TLS</a> errors/vulnerabilities when being profiled by tools such as <a href="https://www.hardenize.com">Hardenize</a>, <a href="https://testssl.sh">testssl.sh</a> or <a href="https://www.ssllabs.com/ssltest">Qualys SSL Labs</a>, this includes certificate related errors, poor or weak ciphers suites, weak DH parameters such as those that led to <a href="https://en.wikipedia.org/wiki/Logjam_(computer_security)">Logjam</a>.</li>
<li>A valid <a href="https://tools.ietf.org/html/rfc8461">MTA-STS</a> and <a href="https://tools.ietf.org/html/rfc8460">TLS-RPT</a> policy.</li>
<li>Valid <a href="https://en.wikipedia.org/wiki/DNS-based_Authentication_of_Named_Entities">DANE</a> records.</li>
<li>Valid <a href="https://en.wikipedia.org/wiki/Sender_Policy_Framework">SPF</a>, <a href="https://en.wikipedia.org/wiki/DomainKeys_Identified_Mail">DKIM</a> and <a href="https://en.wikipedia.org/wiki/DMARC">DMARC</a>, with the policy <code>p</code> value set to either <code>none</code>, <code>quarantine</code> or <code>reject</code>.</li>
<li>Valid <a href="https://en.wikipedia.org/wiki/Sender_Policy_Framework">SPF</a> and <a href="https://en.wikipedia.org/wiki/DomainKeys_Identified_Mail">DKIM</a> records.</li>
<li>Have a proper <a href="https://en.wikipedia.org/wiki/DMARC">DMARC</a> record and policy or utilize <a href="https://en.wikipedia.org/wiki/Authenticated_Received_Chain">ARC</a> for authentication. If DMARC authentication is being used, the policy must be set to <code>reject</code> or <code>quarantine</code>.</li>
<li>A server suite preference of TLS 1.2 or later and a plan for <a href="https://datatracker.ietf.org/doc/draft-ietf-tls-oldversions-deprecate/">Deprecating TLSv1.0 and TLSv1.1</a>.</li>
<li><a href="https://en.wikipedia.org/wiki/SMTPS">SMTPS</a> submission, assuming SMTP is used.</li>
<li>Website security standards such as:</li>