Skip to main content


The EU is moving forward with #eIDAS despite warnings from over 500 scientists & privacy advocates.

With no requirement that server-side code be released open source, we cannot be sure that our personal data is secure.😱

Thankfully, the #Pirates 🏴‍☠️ in the EU Parliament did manage to push for an #opensource release of the client-app & the eID will be voluntary.

This isn't over. EU citizens please contact your representatives and demand they respect our #privacy !🥊

https://www.patrick-breyer.de/en/eu-digital-identity-regulation-eidas-pirates-dont-support-blank-cheque-for-surveillance-of-citizens-online/

in reply to Tuta

If I may: even with open source server-side code, we do not, and cannot, have proof that the software actually running on the server matches the source code.
in reply to Tuta

Who’s good to follow (here or Bluesky) to keep up with European Parliament digital shitfuckery? So many of these kind of things come up in my timeline as “EU parliament about to pass some awful stupid shit” and I’ve never even heard it’s been on the table.
in reply to Tuta

An additional reason to use and provide .onion-services.
in reply to Tuta

So uh, this is a bit awkward, but is Tuta's server side open source yet? I don't want to invoke whataboutism, and I agree with your message here, but please use this opportunity to open source your server side before you claim the trustworthiness from being FOSS without being fully FOSS.

Even if your backend is a bunch of services stitched together, you can still "open source" it by at least describing your backend in a self hosting guide, or move to declarative infra like Supabase.

in reply to blebon

@blebon We did see this & have issued a statement on our subreddit:

Tutao GmbH, the company behind Tuta, was founded in 2011 by Arne Möhle and Matthias Pfau who knew each other from studying together at FHWD university in Hanover, Germany.

To this day, the company is wholly owned by Matthias and Arne, & is not liable to anyone else.

We are not owned or operated by any secret service, nor is Tuta (or Tutanota) a "storefront" as claimed by Cameron Ortis. These allegations are completely untrue.

in reply to Tuta

@blebon The person who posted this on our subreddit has deleted their post. You can find our original statement (and updates) here: https://www.reddit.com/r/tutanota/comments/17st2jh/tutanota_is_a_honeypot_according_to_cbc_any/

To be clear, the allegations made by Mr. Ortis are completely untrue. We are actively monitoring how this court case develops.

in reply to Tuta

Thanks for the reply and reassuring us.
in reply to blebon

@blebon You're very welcome. Thanks for the kind words and support!