Bring Your Own Sharing Mechanism

Requirements for using your own secret sharing

If you cannot or prefer not to use Proton Drive, Oktually will exchange secrets using your own provided method assuming it meets the following requirements. Any dedicated platform for secure communications, like SendSafely or RocketChat, will meet these requirements easily.

Requirements

  1. It can be registered for using an email account
  2. Communication is end-to-end encrypted
  3. Security doesn’t rely purely on knowledge of a link (doesn’t use an anyone with this link access pattern)

Common Unacceptable Methods

  • Email from non-Proton mail servers (generally not encrypted)
  • Non-business WhatsApp, Signal or similar (require a phone number)
  • Google Drive or OneDrive (not end-to-end encrypted)
  • Slack (surprisingly, not end-to-end encrypted)