top of page
How We Protect Your Privacy
Hushmail's main protections
-
OpenPGP encryption
-
Hushmail uses OpenPGP to encrypt the contents and attachments of encrypted messages.
-
Encrypted messages can remain encrypted while stored on Hushmail's servers.
-
-
TLS/SSL encryption
-
This protects information while it travels between your computer/phone and Hushmail's servers.
-
Hushmail also uses security features such as forward secrecy, HTTP Strict Transport Security (HSTS), and certificate pinning.
-
-
Encrypted private keys
-
Your private encryption key is protected using your password/passphrase.
-
Hushmail says your actual password is not stored on its servers; instead, a hashed value is stored for authentication.
-
-
Two-step verification
-
You can add a second authentication factor using a verification code sent by text, email, or an authentication app.
-
-
Secure message center
-
This is particularly useful when communicating with patients/clients who don't have Hushmail.
-
Instead of putting the confidential message directly into their ordinary email inbox, they receive a notification/link and view the message inside Hushmail's secure environment
-
Heading 4
bottom of page