44
submitted 3 days ago* (last edited 2 days ago) by j4p@lemm.ee to c/privacy@lemmy.ml

EDIT: Just thanking everyone for the thoughtful responses. Really enjoyed reading everyone's takes here and will definitely think on things moving forward and try various configurations out!

Hi all, interested in your thoughts here. Recently signed up for Proton Unlimited via Black Friday sale mainly for email/VPN/drive. For passwords I've been happy with Bitwarden and DDG for email forwarding (plus you get a duck.com address which is just fun).

If you were me would you move over to ProtonPass to streamline, or keep these things broken up? On one hand I don't want all my eggs in one basket, on the other hand I feel like it means I am trusting my info to one Swiss-based org vs Proton + DDG/Bitwarden which are US based. Plus if I am paying for a service I feel a little less like the product in the long term.

Feel pretty ok with both options as my main objective is de-Googling, but interested to hear what has worked well for others. Appreciate any input!

top 14 comments
sorted by: hot top controversial new old
[-] pineapple@lemmy.ml 6 points 2 days ago

I just wanna say email aliasing is an email related thing so why is it unlimited aliases included in proton pass plus and not proton mail plus???

[-] Broken@lemmy.ml 2 points 1 day ago

I got started with aliases on anonaddy (now just Addy). After using a while I jumped into using my own domain, this is the real game changer.

Aliases are great and do their thing, but owning your own domain let's you move everything all at once if you need to.

For instance, when proton added aliases I tried it out. I just redirected my MX records and was done. I didn't like how they handled the header data because it broke a majority of my filters, so I switched back. Again, a simple setting adjustment and done.

For the record, I'll probably switch everything over to proton eventually, but at the time didn't want to recreate my filters. It makes sense to have all email controls under your email provider.

[-] MangoPenguin@lemmy.blahaj.zone 13 points 3 days ago

I'm a fan of separating services when possible.

And emails are a huge pain to change, so it might be worth considering an email service with your own domain name.

[-] UnfortunateShort@lemmy.world 4 points 2 days ago* (last edited 2 days ago)

I'm using Proton Pass aliases and they work like a charm. With the browser plugin, it's easily feasible to generate one for every single thing you sign up for. I would argue that there are some advantages over DDG (although I haven't used their service in for quite a while):

  1. Proton applies E2EE to incoming mails
  2. If the mails go to your Proton account anyway, removing DDG means removing a proxy that could read your mails or be an attack vector to do so
  3. Afaik you can secure your proton account way beyond what DDG offers (password + 2FA + Sentinel + extra password for Mail + extra password for Pass) if you want to
  4. Convenience: You can manage everything in Pass and it tells you right away what you created an alias for, allows to create accounts from it etc.

Is it a total game changer? Probably not.

[-] ouch@lemmy.world 2 points 2 days ago
[-] Rand@lemmy.world 2 points 2 days ago

Proton service that tracks data breaches for your passwords & info. I believe it also provides extra protection in case somehow your Proton account is compromised.

[-] asudox@discuss.tchncs.de 3 points 2 days ago

No. Proton's sketchy business aside, I wouldn't put everything into one basket. Bitwarden also supports a few email aliasing services natively using an API token.

[-] Sunny@slrpnk.net 7 points 3 days ago

I was in your exact same boat a year ago, and decided to try both solutions. I ended going with the streamlined one. As you said, you are already paying for the service and Proton Pass is imo a pleasantly nice password manager to use. It is a lot easier to create and delete aliases there than through Bitwarden/DDG, at least that was my experience. Proton pass is now my most used day to day app list and I'm very happy with it.

While all eggs in one basket isn't great from a security stand point, I am pretty happy with this solution. I do however keep 2fa in separate app, Ente Auth.

[-] jjlinux@lemmy.ml 6 points 3 days ago

I took advantage of the lifetime protonpass offer for black Friday, since I already had 5 simplelogin emails for that purpose. Very happy now with the unlimited aliases.

[-] radau@lemmy.dbzer0.com 7 points 3 days ago

Proton with a domain you control and use their Simplelogin which you can self host down the line should there be a rug-pull event. I think you need to manually export this so make it a habit as you add them!

You can put your eggs in one basket, just make sure you have a plan B if the basket catches on fire, using their domain in my eyes you're going down with the ship, if you control it you're just repointing records to a new host and getting simplelogin going.

This is part of the reason I like to keep ALL of my emails on disk still as well, if you can't decrypt your mailbox for some reason they're about as good as gone.

[-] mac@lemm.ee 5 points 3 days ago

While I also use a custom domain with simple login, I feel like it does take away from the anonymity a bit. So sometimes I use my custom domain, others I use theirs.

[-] s3rvant@lemmy.ml 2 points 2 days ago

I use SimpleLogin emails but route them through DDG and works great

[-] RvTV95XBeo@sh.itjust.works 5 points 3 days ago

A custom domain is $12/yr, and SimpleLogin lets you do automatic regex emails, so I can just make a quick website.spam@customdomain.com email for each website. Would recommend.

[-] DaseinPickle@leminal.space 5 points 3 days ago

I think both solutions are probably reasonable secure. Personally I use the proton solution, because I like that my data is in Europe and I prefer to pay for services. I like the more transparent and honest business where I pay and get something in return.

this post was submitted on 24 Nov 2024
44 points (100.0% liked)

Privacy

32165 readers
592 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS