From ccb50a0dedf7fd6ea687dd9b8b91adfaa37428ac Mon Sep 17 00:00:00 2001 From: Jonah Date: Sat, 30 Nov 2019 01:36:43 -0600 Subject: [PATCH] Add warning to email clients --- pages/software/email.html | 9 +++++++++ 1 file changed, 9 insertions(+) diff --git a/pages/software/email.html b/pages/software/email.html index 1c9d9921..147ad114 100644 --- a/pages/software/email.html +++ b/pages/software/email.html @@ -5,6 +5,15 @@ title: "Email Clients" description: "Discover free, open-source, and secure email clients, along with some email alternatives you may not have considered." --- +
+
Warning
+
+

Even when using end-to-end encryption technology like GPG, email is inherently insecure and should not be trusted for sensitive communications. Metadata is always communicated in plaintext, and even when encryption is used correctly it is very easy for either party to acidentally respond to or forward a previously encrypted message in plaintext in many clients. GPG also does not easily support modern crypto functionality such as key rotation and forward secrecy.

+

We recommend the following email providers for routine notifications and messages from other services that require an email address. For communications that need to be safe and secure, you should use a dedicated instant messaging tool, such as Signal.

+ Recommended Instant Messengers +
+
+ {% include sections/email-clients.html %} {% include sections/email-alternatives.html %}