NOCTMAIL
Encrypted email · Zero knowledge

Email that's sealed before it leaves your device.

A modern, end-to-end encrypted mail service for people who don't want their inbox quietly read by their provider, their advertiser, or anyone else. Same crypto stack as Securewarp, now for messages.

Argon2idSRP-6aXChaCha20-Poly1305X25519ML-KEM-768HKDF-SHA256BIP39

End-to-end between Noctmail accounts

Subject, body, and attachments are encrypted on your device with X25519 + ML-KEM-768 hybrid wrap. The server only ever sees ciphertext.

Argon2id, in your browser

Your password is run through a memory-hard KDF before it touches the network. We verify you know it without ever seeing it.

Custom domains and aliases

Send and receive on noctmail.com or any domain you own. Aliases route to a single encrypted mailbox without any plaintext mapping table.

Recovery you control

A 24-word BIP39 phrase is generated client-side at signup. Lose your password and you can still get in. Lose the phrase and we can't help — that's the point.

What we mean by zero knowledge

The contents of your mailbox are not ours to see.

  • We never see your password.
  • We never see plaintext mail between Noctmail accounts.
  • Your encryption keys are wrapped under your password and a recovery phrase only you hold.
  • External recipients get TLS-only by default; the server stores ciphertext you can decrypt.