top of page

How We Protect Your Privacy

 
 

Hushmail's main protections

  1. OpenPGP encryption

    • Hushmail uses OpenPGP to encrypt the contents and attachments of encrypted messages.

    • Encrypted messages can remain encrypted while stored on Hushmail's servers.

  2. TLS/SSL encryption

    • This protects information while it travels between your computer/phone and Hushmail's servers.

    • Hushmail also uses security features such as forward secrecy, HTTP Strict Transport Security (HSTS), and certificate pinning.

  3. Encrypted private keys

    • Your private encryption key is protected using your password/passphrase.

    • Hushmail says your actual password is not stored on its servers; instead, a hashed value is stored for authentication.

  4. Two-step verification

    • You can add a second authentication factor using a verification code sent by text, email, or an authentication app.

  5. Secure message center

    • This is particularly useful when communicating with patients/clients who don't have Hushmail.

    • Instead of putting the confidential message directly into their ordinary email inbox, they receive a notification/link and view the message inside Hushmail's secure environment

Heading 4

bottom of page