Zum Inhalt springen
Unabhängig verifiziert · Quartalsweises Re-Audit
EU VETTED

Posteo

VERIFIZIERT
Privates E-Mail · Germany
Founded 2009 · posteo.de ↗

Berlin one-person-shop privacy email at €1/mo (Posteo e.K., since 2009); anonymous signup, BSI TR-03108 certified.

Warum diese Bewertung?

Posteo e.K. (Berlin DE, since 2009) is a small founder-owned privacy-maximalist email service — €1/mo flat, anonymous signup + anonymous payment, German data centres, 100% renewable energy (Green Planet Energy), BSI TR-03108 v2 certified for secure email transport, public transparency reports for authority requests; PGP + S/MIME end-to-end encryption support; 5/5 with no CLOUD Act exposure.

SCORE
5.0/5
CLOUD ACT
OWNERSHIP
SUB-PROCS
not disclosed
JUMP TO
OVERVIEW

About Posteo

**Posteo** (Berlin, founded 2009, Posteo e.K. — owner Patrik Löhr) is the small-and-cult European privacy email service — **€1/mo flat-rate for 4GB**, **anonymous signup** and **anonymous payment** options (postal cash, no payment-to-account link kept), all servers in German data centres, **100% renewable energy** from Green Planet Energy, no advertising, no profiling. **BSI TR-03108 v2** certified (Bundesamt für Sicherheit in der Informationstechnik standard for secure email transport). Supports PGP and S/MIME end-to-end encryption. Publishes annual transparency reports for authority requests. The Guardian and Stiftung Warentest both cite Posteo as a global leader in secure email. Single-vendor concentration risk because of the tiny team, but for personal privacy-first use this is the cleanest possible pick.
SUB-PROCESSORS

Unterauftragsverarbeiter-Karte · not disclosed

Vendor does not publish a sub-processors list. Schrems II compliance and CLOUD Act exposure cannot be independently verified without it.
CERTIFICATIONS

Rahmenwerke & Zertifizierungen · none listed

We checked the vendor's website and standard certification body registries. No active certifications found at the time of last audit (2026-05-12).
FEATURES

Funktionsmatrix

INTEGRATION & ACCESS
REST API No
SSO (SAML / OIDC) No
COMPLIANCE & GOVERNANCE
Audit log No
Self-host / on-prem option No
PRICING

Preise & Tarife

KOSTENPFLICHTIG
ab €1/Monat
Preisseite ansehen ↗
PUBLIC DOCUMENTS

Öffentliche Dokumente

DPA accessibility is not scored for this listing. Self-hosted or local software, vendors that are not data processors, and products carrying a SecNumCloud, EUCS or BSI C5 certification are not assessed on DPA accessibility — see How we score.
Vendor does not publish a sub-processors list. Schrems II compliance and CLOUD Act exposure cannot be independently verified without it.
  • Data Processing Addendum (DPA)
    — not assessed
    n/a
  • Sub-processors list
    — missing
    missing
ALTERNATIVES

Alternativen in dieser Kategorie