I've just accepted that email isn't secure, so don't use it for secure communications.
I've seen the name here a little but first time looking them up. The page title "Secure email: Tutanota..." is super similar to "Secure email: Protonmail..." Even the page layout is similar.
And I'm trying to sign up and the whole flow is super similar to Proton. By design?
For a start you can't use PGP, which means external people cannot send you encrypted email unless they use a "temporary inbox" feature. Often they won't do that so the email you receive will be unencrypted at the point Tutanota's servers receive it.
ProtonMail uses PGP, so you can encrypt with that. https://protonmail.com/support/knowledge-base/encryption-loc...
Also Tutanota does not allow you to use email clients. You also can't import your email, and can only export per-folder.
It's also worth noting Tutanota, and Posteo (mentions TKU), and Mailbox and all the other providers will comply with lawful interception requests. Tutanota in the past has handed over email before it was encrypted.
https://www.theregister.com/2020/12/08/tutanota_backdoor_cou...
If you don't want this don't use email.
CTemplar: https://ctemplar.com/features/
Helm Personal Server: https://thehelm.com/
[1] https://hey.com
"On a final note, the Lavabit e-mail servers do record the IP address used to send an outgoing message in the header of an outgoing e-mail. Because of this, it is possible for the recipient of a message to identify what IP was used to send a message."
I love the final note... The worst is always at the end...
What people are looking for is a technical solution to a political problem.
There’s also riseup, which I avoid because instead of being at the behest of a Governments politics, you have to deal with theirs instead. I don’t want to be involved or associated with politics outside of my local voting booths (although inevitably unavoidable when you’re talking about free speech and privacy)
I think the solution is to host your own or find another protocol. At the end of the day only you have your best interests in mind.
There seem to be other GPG mail tools out there for different contexts (maybe one that runs in the gmail web interface?) too.
[1]: https://posteo.de/en