Is "sovereign washing" the new "privacy washing"?

Microsoft, Google, and AWS recently published “sovereign clouds”.

❌ BUT digital sovereignty doesn’t come from shiny new product names such as these “sovereign clouds” - which still must hand out data to US without a warrant based on the CLOUD Act and FISA.

✅ Digital sovereignty comes from full European legal and technical control. Everything else is nothing more than sovereign washing.

👉 https://tuta.com/blog/sovereign-washing

@Tutanota what is their selling point anyway?

EDIT: sorry, it's in the article that i haven't actually read before commenting.

@prinlu That's a very good questions - which can not be answered by us. 😅
@Tutanota - Be aware of Viruses bearing Gifts.
@Tutanota If American Big Tech are not even going to pay taxes, they should not get a single euro cent from our governments.
@Tutanota Yeah pretty cool but what if you promoted a little bit more of decentralization instead of proposing your own products
@Tutanota Why is import paywalled to what appears to be the top tier?
Not even the lower paid tier?
@Dragon It's still in beta, we plan to make it available on Revolutionary as well. You can book Legend just for one month and then switch to Revolutionary once you're done with the import. Apologies for the hassle.
@Tutanota I'll have to revisit it, I remember trying tuta a while ago and it not being suitable for me, it was before you even had Import though so that may have been why
@Dragon Any questions, do ask!

@Tutanota Created a free account to play with the android app (I did have one ages ago, but it got deleted due to inactivity so shouldn't be breaking the 1 free account rule)

Android app synced contacts, need to check I can export/import calendar.

I think the reason I ended up not going with tuta last time was the lack of import (which you now have) but i need to check.

@Tutanota I'm not sure if the lack of standard protocols bothers me, probably not although i once got burned trusting skiff
@Dragon Understood. Yet, we have an easy one-click export - in case you ever want to leave again.

@Tutanota If I did decide to use tuna I'd probably go for Revolutionary, outside the initial import, as I'd be coming from a 10GB Zoho mailbox.

At the moment I use active sync/nine folders for the phone rather than the zoho app.

That said the tuta app looks ok so as long as the contacts integration works nicely and the calendar notifications do. i'd consider switching.

@Dragon Yep, this should be working as expected, you can test on the free version before making the move: https://tuta.com/support#contacts-sync
Tuta Support | Tuta

Any questions about Tuta? Find out how we can help you.

Tuta

@Tutanota Yeh I just moved my domain over, had an issue with a + address not working but I think It just took a while for the alias to create.

I have a couple logins elsewher ethat use + addressing (which zoho just supported) looks like they DO work on tuta if you have either a catchall or create them explicitly.

Thankfully I didn't use + addressing much e.g me+service@mydomain.

@Tutanota Hmm did notice all imported emails show 1 jan 1970 as the date even though the correct date is present in the header

@Tutanota Ah I think thats just ones that came from skiff originally (who's export feature was crap and rushed after they decided to shutdown)

So probably either something about the messages or them being archived in zoho

Doesn't matter so much as it's only very old stuff, was worried it was everything

@Dragon Okay, thanks for the update, and glad everything it up and running already. You're quick! :)

@Tutanota while I get the "don't use American Cloud's Europe-compliant offerings" this blog post is taking about. There is a much darker side to this story.

How could a user vet a truly European company, who might under the hood use these American sovereignty offerings? It feels basically impossible to validate.

@Tutanota

Like qwant and duckduckgo pretend to on your side.

@Tutanota What a large FUD article. All conclusions, no real details to back the conclusions.

I invite you to do better.
Especially since you, as a European mail provider, have everything to gain from creating FUD instead of providing transparency.

Not all hyperscalers are equal in their attempts to be EU complaint, sovereign or which ever trendy word is next.

Yes, my professional background lies in working with a large US hyperscaler. That however doesn’t make me blind to regulations around data privacy and security.

So to reiterate: please do better.

@Tutanota
Ok. So why are you using Amazon nameservers for your tuta.com domain? Check: https://en.internet.nl/site/tuta.com/3332849/#control-panel-0

Seems about time to switch to a EU-based DNS provider :-) For options see: https://european-alternatives.eu/category/managed-dns-providers

@bartknubben Actually, we used to use a small German provider, but had to switch because they could not defend adequately against attacks, see here: https://tuta.com/blog/ddos-dns-attack

We don't like having to use AWS, but for the domain, we must use something big as for some reason we're a high-profile target for attacks. 🤔

What alternatives would you suggest (we'd love to switch to something better!)?

DDoS attack on our DNS infrastructure | Tuta

Multiple DNS providers were attacked to take down Tutanota.

Tuta

@Tutanota
There are certainly EU anycast DNS providers that could fix this for you. Might also be a good idea to use two of them. See for example:
- https://www.cloudns.net/
- https://www.rcodezero.at/en
- https://www.netnod.se/dns

See further: https://european-alternatives.eu/category/managed-dns-providers

Free DNS hosting, Cloud DNS hosting and Domain names | ClouDNS

ClouDNS provides Free DNS, Cloud DNS, Managed DNS, GeoDNS and DDoS Protected DNS hosting with included web redirects, mail forwards and Round-Robin load balancing. Instant updates in Europe, North and South America, Asia and Australia.

@bartknubben Thanks, we'll look into this!
@Tutanota still waiting on secure cloud storage rn my data sits on multiple external drives