Skip to main content

Answers for private customers

The Knowledge Base for private customers is already largely up to date. A few individual articles are currently being revised and will be updated shortly. We thank you for your understanding and look forward to providing you with the latest information on using mailbox.

Please note: The Knowledge Base has changed slightly. Categories have been adjusted and any URLs stored in the old Knowledge Base are no longer valid.

Upload the private key to the server

Isn’t it unsafe to upload your private key to the server?

You should definitely ask yourself critically whether you want to upload your private key to a server.

On your desktop PC or your smartphone, you must trust that the manufacturer of your operating system does not deliberately or negligently leave security vulnerabilities that would allow third parties to access your data. Likewise, you must be able to rely on the software you use not compromising your security on its own, for example by collecting and passing on sensitive data.

At mailbox, your private key – if you entrust it to the Guard – is secured multiple times and stored on external data storage systems in our data centers, protected with a password known only to you.

Whether this is more secure or less secure is something you as the user must decide for yourself.

Of course, you also have the option not to upload your private key to our servers. You can then continue to retrieve your encrypted mails via IMAP or POP3 and read them locally with the mail client of your choice and the respective PGP program.

In short: We provide PGP support in the browser to offer you a good balance of security and convenience. However, this offer is entirely optional.