ProtonMail
Secure email service with End-to-End Encryption based in Switzerland.
Score
Citation
Such data will only be used to contact you with important notifications about ProtonMail, to send you information related to security, to send you an invitation link to create your ProtonMail account, to verify your ProtonMail account, or to send you password recovery links if you enable the option. We may also inform you about new Proton products in which you might have an interest. You are free, at any given time, to opt-out of those features through the account settings panel.
Notes
ProtonMail subscribes users to 4 individual mailing lists, that they can opt-out from at any time, and all emails are the same to everyone.
Even if there is a reasonable delay before the data is fully deleted (as is common), the data still counts as "permanently deleted" and satisfies the parameters for this question.
Score
Citation
When a ProtonMail account is closed, data is immediately deleted from production servers. [...] Deleted emails are also permanently deleted from production servers. Deleted data may be retained in our backups for up to 14 days.
Score
Citation
We will only disclose the limited user data we possess if we are instructed to do so by a fully binding request coming from the competent Swiss authorities (legal obligation).
ProtonMail may from time to time, contest requests if there is a public interest in doing so. In such situations, the Company will not comply with the request until all legal or other remedies have been exhausted. Therefore, not all requests described in our Transparency Report will lead to data disclosure.
Notes
ProtonMail is willing to disclose just enough personal data that they think will help authorities investigate a criminal activity, given enough reasons to do so.
This may come in the form of outright data sharing or by using local third-party analytics software (such as Google Analytics, which collects a plethora of user information).
Note that whether the policy allows sharing aggregated user data does not affect this question.
If the personal data is encrypted when it passes through the third-party, it does not count as third-party access (as the data is inaccessible to that party).
If personal data has been made public by, for example, posting it to a blog, it does not count as private personal information (and is therefore not considered by this question).
Score
Citation
The Company relies on third parties to process credit card, PayPal, and Bitcoin transactions so the Company necessarily must share payment information with third parties. Anonymous cash or Bitcoin payments and donations are accepted however. The legal basis of this processing is the necessity to the execution of the contract between you and us.
Notes
They don't explicitly list the actual third-parties involved.
Note that all companies operating in the EU are subject to Art. 33 of the GDPR, which requires companies to notify their data protection authority of a data breach within 72 hours of discovering it.
Score
Notes
The policy does not specify a data breach protocol.
Score
Notes
A "Last modified" date is present at the start of the policy.
Score
Citation
ProtonMail reserves the right to periodically review and change this policy from time to time and we will notify users who have enabled the notification preference about changes to our Privacy Policy.
Score
Citation
All servers used in connection with the provisioning of the Service are located in Switzerland and wholly owned and operated by the Company. Only employees of the Company have physical or other access to the servers. Data is ALWAYS stored in encrypted format on our servers. Offline backups may be stored periodically, but these are also encrypted. We do not possess the ability to access any user encrypted message content on either the production servers or in the backups.
Notes
[All ProtonMail apps are now open source and audited. See: openPGP library Android, iOS, bridge.
Score
Notes
ProtonMail includes an extensive list of data that it collects, and the reasons why.
Score
Notes
ProtonMail includes an extensive list of data that it collects, and the reasons why.
Some services allow users to opt-out or opt-in to of non-critical collection or use of personal data, such as collecting data for personalized advertisements.
Score
Citation
We employ a local installation of Matomo, an open source analytics tool. Analytics are anonymized whenever possible and stored locally (and not on the cloud).
When you use our native applications, we (or the mobile app platform providers) may collect certain information in addition to the information mentioned elsewhere in this Policy. We may use mobile analytics software (such as fabric.io app statistics and crash reporting, Play Store app statistics, App Store app statistics, or self-hosted Sentry crash reporting) to send crash information to our developers so that we can fix bugs rapidly.
Any personal data acquired during this process is anonymized.
This includes the use of data brokers and independent verification authorities (such as background check providers).
Score
Notes
Their policy does not contain information regarding data collection from third-parties.
Last Updated
June 16, 2021
Sources
Contributors