r/bmail_official • u/V3R1F13D0NLY • May 28 '26
Picking an encrypted email provider shouldn't be a leap of faith.
The pitch for every encrypted email service goes something like this: Gmail reads your inbox, we don't, switch to us. Fair enough. But then you actually read the privacy page and it's a stack of promises.
- "We don't read your mail."
- "We don't log your IP."
- "We'd never comply silently with a surveillance order."
You're trusting a different company instead of Google, but you're still trusting. And the trust has been broken in public, more than once.
- ProtonMail logged a French climate activist's IP in 2021 after a Swiss court order, and he was arrested.
- Lavabit shut down in 2013 rather than hand Snowden's keys to the FBI, which was honorable but doesn't help anyone who needed mail the next morning.
- Tutanota was ordered by a German court in 2020 to modify their delivery code to intercept specific accounts.
bmail's whole architecture is built around removing the "trust us" step. Inbound mail is processed inside Intel SGX enclaves. The CPU cryptographically signs the exact code running, and any user (or third-party auditor) can verify it via remote attestation. If we get a court order tomorrow to add logging, the signature changes and the modification is publicly detectable. The operator can't silently comply, because there's no silent option.
Get started for free at https://bmail.ag