Technical Architecture & Threat Model
Sending confidential legal memos, financial records, or credentials to clients who use standard unencrypted email providers (like Gmail, Outlook, or Yahoo) usually compromises privacy. Foxcolab Mail solves this with an external zero-knowledge bridge. When composing, toggle 'Password Protection', enter a shared secret passphrase, and optionally provide a hint. The recipient receives a delivery notification with an authenticated link to Foxcolab's web decryptor (`/public/messages/:id/hint`). Entering the passphrase derives the decryption key locally in browser memory, unlocking the text and attachments without exposing data to external servers.
Most free and corporate email services scan your messages, analyze your purchase receipts, track when you open emails, and feed communication patterns into targeted advertising profiles. Foxcolab Mail was built to solve this fundamental invasion of business privacy. By deriving encryption keys on your personal computer or phone, your messages remain sealed in storage. Even if server equipment is inspected, only encrypted ciphertext is visible. Combined with custom domain hosting and disposable aliases, your organization gains complete ownership over its primary communication lifeline.
Zero Content Leakage Boundary
Under Foxcolab security architecture, administrative visibility never equals content visibility. No messages, documents, spreadsheets, recordings, or intake answers are ever logged, analyzed for advertising, or accessible to infrastructure operators. Keys remain strictly isolated on authorized endpoints.
