Hacker News new | past | comments | ask | show | jobs | submit login

Adam Langley's Pond protocol for anonymous email uses the Axolotl ratchet with PFS.

https://pond.imperialviolet.org/




> Pond messages are asynchronous, but are not a record; they expire automatically a week after they are received.

That's not email.

Ok, that's less "instant" than most instant messaging system. But it has the same trade-off. It has a bigger time window when messages can be decrypted, and messages last for longer.

If you give-up on reading your email latter, yes, you can have some kind of forward secrecy.


But the idea of perfect forward secrecy is not that your locally stored mail is securely encrypted in the future, but instead that mail that was intercepted in transfer should not become readable, even if your key is later recovered.

With your locally saved mail/messages it is up to you how to and whether to securely store them. You can save them decrypted if you are not worried about getting your device stolen. You can securely delete them if you think that you can not keep their content safe. You can do anything in between, it's your choice to make.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: