Security without surveillance

Your privacy is protected by enterprise-grade security. Email content is processed in-memory and never stored in plaintext. We scan threats, not your life.

Core principle

Privacy-first architecture

Your emails pass through our servers only long enough to scan for threats and forward to your inbox. We never store plaintext email content. What we process, we discard.

  • In-memory processing only. Content discarded after forwarding
  • AES-256-GCM encryption with per-user keys for archived content
  • AI filtering uses headers only by default
  • Regular third-party security audits

During processing (ephemeral)

  • Email content (in-memory only, then discarded)
  • Email headers (for routing and filtering)
  • Mask addresses (to route emails)

What we never store

  • Plaintext email content
  • Email body logs
  • Content analysis results (unless opted-in)
  • Your real email address (hidden from senders)

Encryption standards

Industry-leading encryption at every layer.

TLS 1.3

All connections encrypted with the latest TLS standard. Perfect forward secrecy enabled.

AES-256

Data at rest encrypted with AES-256. The same standard used by governments worldwide.

RSA-4096

Asymmetric encryption for key exchange. Your keys, your control.

Compliance & certifications

Independently verified security and privacy practices.

GDPR

Compliant

CCPA

Compliant

SOC 2 Type I

Planned 2026

Infrastructure security

Data Centers

US, EU, and Singapore

Uptime SLA

99.9%

DDoS Protection

Cloudflare Enterprise

Backups

Daily, encrypted, geo-redundant

Account security

Multiple layers of protection for your account.

Two-factor auth

TOTP, SMS, or hardware keys

Login alerts

Email notifications for new devices

Session management

View and revoke active sessions

Audit logs

Track all account activity

Bug bounty program

We believe in security through transparency. Report vulnerabilities and get rewarded.

Your privacy, protected

Join thousands of users who trust SecuriMail with their email privacy.