<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>The Proton Blog</title><description>News from the front lines of privacy and security</description><link>https://proton.me/</link><language>en</language><feed_url>https://proton.me/feed</feed_url><item><title>A journalist’s safety guide to the 2026 FIFA World Cup</title><link>https://proton.me/blog/journalist-safety-guide-2026-fifa-world-cup</link><guid isPermaLink="true">https://proton.me/blog/journalist-safety-guide-2026-fifa-world-cup</guid><description>Covering the 2026 FIFA World Cup? Here&apos;s how journalists can stay safe from physical threats, border scrutiny, and digital surveillance.</description><pubDate>Tue, 09 Jun 2026 18:05:07 GMT</pubDate><content:encoded>
&lt;p&gt;Three countries and 16 cities are slated to host the 23rd FIFA World Cup this June. The event, which will be held in the United States, Mexico, and Canada, is expected to bring in more than 5 million fans from around the world, including an estimated 50,000 journalists.&lt;/p&gt;



&lt;p&gt;Large crowds and global security threats like cyber, drone, or mass-casualty attacks pose risks to reporters and fans at all locations. In the US, travel bans and increased ICE activity should also be considered. If you are a journalist or media professional covering the 2026 FIFA World Cup, there are ways to ensure your safety as you travel through the event&amp;#8217;s host cities.&lt;/p&gt;



&lt;p&gt;Proton has assembled a guide to assist journalists navigate the World Cup safely. The tips below can help protect journalists and media against security threats while reporting from the ground at the World Cup.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Reporting from the United States&lt;/h2&gt;



&lt;p&gt;11 cities in the United States are hosting FIFA World Cup games in 2026, including Atlanta, Boston, Dallas, Houston, Kansas City, Los Angeles, Miami, New York, Philadelphia, San Francisco, and Seattle.&lt;/p&gt;



&lt;p&gt;According to The Athletic, the Federal Emergency Management Agency granted $625 million in security funding toward those 11 US cities for operational exercises, staff background checks, and cybersecurity defense.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Travel restrictions and border crossings&lt;/h2&gt;



&lt;p&gt;Given the location, size, and scope of the World Cup, journalists traveling from outside the US should consider the risks when entering the country. In 2025, the Trump Administration announced a travel ban for citizens of Afghanistan, Myanmar, Chad, Republic of Congo, Guinea, Eritrea, Haiti, Iran, Libya, Somalia, Sudan, and Yemen. There are partial restrictions for residents of Burundi, Cuba, Laos, Sierra Leone, Togo, Turkmenistan, and Venezuela.&lt;/p&gt;



&lt;p&gt;According to the Committee to Protect Journalists, border agents in the US &amp;#8220;maintain broad discretionary authority to implement travel restrictions.&amp;#8221; Additionally, &amp;#8220;increased vetting, inconsistent enforcement, and sudden policy changes suggest an unpredictable environment,&amp;#8221; in which traveling journalists should prepare.&lt;/p&gt;



&lt;p&gt;Media personnel can anticipate being questioned at the border by Customs and Border Protection (CBP), especially if journalists represent a country on the travel ban list or have a history of covering politically sensitive issues. Journalists with dual citizenship from a country on the travel ban list should use the passport of their nation that does not appear on the banned list.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Protecting your devices and data&lt;/h2&gt;



&lt;p&gt;Precautions should be taken to encrypt or back up sensitive or personal information on electronic devices, as CBP does not need a warrant or probable cause to search your person or electronics. To protect your personal data and ensure it isn&amp;#8217;t copied or stored by CBP, journalists should:&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Use strong passwords and store them in a &lt;a href=&quot;https://proton.me/business/pass&quot;&gt;password manager&lt;/a&gt; like Proton Pass.&lt;/li&gt;



&lt;li&gt;Use an&lt;a href=&quot;https://proton.me/learn/encryption/types-of-encryption/what-is-end-to-end&quot;&gt; end-to-end encrypted&lt;/a&gt; email service like Proton Mail so messages can&amp;#8217;t be surveilled.&lt;/li&gt;



&lt;li&gt;Employ&lt;a href=&quot;https://proton.me/pass/aliases&quot;&gt; email aliases&lt;/a&gt; so your personal or work email isn&amp;#8217;t exposed.&lt;/li&gt;



&lt;li&gt;Enable&lt;a href=&quot;https://proton.me/authenticator&quot;&gt; two-factor authentication&lt;/a&gt; so CBP can&amp;#8217;t access your accounts.&lt;/li&gt;



&lt;li&gt;Back up sensitive information on a &lt;a href=&quot;https://proton.me/business/drive&quot;&gt;cloud storage service&lt;/a&gt; like Proton Drive, so privileged documents don&amp;#8217;t live on your phone or electronic devices.&lt;/li&gt;



&lt;li&gt;Make social media accounts private and/or delete any apps that may be subject to search.&lt;/li&gt;
&lt;/ul&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Legal resources for journalists&lt;/h2&gt;



&lt;p&gt;If a legal concern should arise during your coverage of the FIFA World Cup, journalists can call the Reporters Committee for Freedom of the Press legal hotline at 1-800-336-4243.&amp;nbsp;&lt;/p&gt;



&lt;p&gt;Media members can also text CPJ&amp;#8217;s chatbot for assistance using the number 1-206-590-6191 or email the committee at emergencies@cpj.org.&lt;/p&gt;



&lt;p&gt;If you are denied entry into the country or into the World Cup, are facing detention or arrest, have been assaulted, or had equipment damaged, you can file a report using the &lt;a href=&quot;https://pressfreedomtracker.us/submit-incident/&quot;&gt;U.S. Press Freedom Tracker&lt;/a&gt;.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;General safety tips for all host cities&lt;/h2&gt;



&lt;p&gt;Whether reporting from the United States, Mexico, or Canada, you should familiarize yourself with the country&amp;#8217;s local laws. Before heading to your destination, research the location and have an exit strategy should an emergency arise.&lt;/p&gt;



&lt;p&gt;Have an emergency contact on standby, work in pairs whenever possible, and designate meet-up locations ahead of time should cell service or Wi-Fi go down. Identify exits, medical tents, rideshare drop off and pickup locations and media areas before arrival.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Proton for journalists and newsrooms&lt;/h2&gt;



&lt;p&gt;To counter unprecedented threats toward journalists, Proton offers discounts on Proton for Business to &lt;a href=&quot;https://proton.me/business/media&quot;&gt;news media&lt;/a&gt;. Protect your emails, contacts, documents, sources, and other sensitive data with end-to-end encryption, so your team can work safely no matter where they are.&lt;/p&gt;



&lt;p&gt;Proton has been &lt;a href=&quot;https://proton.me/about/impact&quot;&gt;committed to press freedom&lt;/a&gt; for more than 10 years. Learn more about how Proton protects journalists and get &lt;a href=&quot;https://proton.me/business/contact?int=media&quot;&gt;Proton for your newsroom&lt;/a&gt; today.&lt;/p&gt;
</content:encoded><category>Privacy guides</category><author>Proton Team</author></item><item><title>Cybersecurity compliance 101: What small businesses need to know</title><link>https://proton.me/business/blog/blog-cybersecurity-compliance</link><guid isPermaLink="true">https://proton.me/business/blog/blog-cybersecurity-compliance</guid><description>Learn how your small businesses can build a compliance foundation that wins deals, protects data, and proves your security posture.</description><pubDate>Tue, 09 Jun 2026 17:34:04 GMT</pubDate><content:encoded>
&lt;p&gt;You&amp;#8217;ve likely experienced this scenario: You&amp;#8217;re in the final stages of a deal with a promising enterprise client. The contract is ready, the price is agreed upon, and then the conversation stalls. &lt;/p&gt;



&lt;p&gt;The reason? They asked for your &lt;a href=&quot;https://proton.me/business/blog/cybersecurity-compliance&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;cybersecurity compliance documentation&lt;/a&gt;, and you couldn&amp;#8217;t provide it.&lt;/p&gt;



&lt;p&gt;It&amp;#8217;s a frustrating moment. It&amp;#8217;s understandable to feel that cybersecurity compliance is a game for large corporations with dedicated security teams and massive budgets. For a growing startup or a small business, it can feel like an overwhelming administrative burden. &lt;/p&gt;



&lt;p&gt;The good news is that there are simple ways to prove you take data protection seriously. &lt;/p&gt;



&lt;p&gt;This guide breaks down what compliance actually means for your business, the key frameworks you&amp;#8217;ll encounter, and how to get started without needing a team of IT experts.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;What is cybersecurity compliance?&amp;nbsp;&lt;/h2&gt;



&lt;p&gt;Cybersecurity compliance is how you prove you are protecting sensitive data according to recognized standards. It&amp;#8217;s not just about having the right tools; it&amp;#8217;s about having the right processes and the documentation to back them up.  &lt;/p&gt;



&lt;p&gt;Think of it as your business&amp;#8217;s &amp;#8220;report card&amp;#8221; for security. It shows prospects and partners that you have rules in place, you follow them, and you can prove it.  &lt;/p&gt;



&lt;p&gt;It&amp;#8217;s not optional. Regulations like &lt;a href=&quot;https://proton.me/business/gdpr&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;GDPR&lt;/a&gt; and &lt;a href=&quot;https://proton.me/business/healthcare&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;HIPAA&lt;/a&gt; carry real legal weight. Fines, lawsuits, and operational restrictions are all on the table. And cybersecurity threats aren&amp;#8217;t theoretical. &lt;a href=&quot;https://proton.me/business/pass/breach-observatory&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Four in five small businesses&lt;/a&gt; have suffered a recent data breach.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;The risks of data non-compliance&lt;/h3&gt;



&lt;p&gt;Skipping compliance might seem like a way to save time and money, but it&amp;#8217;s a short-sighted gamble. The fallout hits in three critical areas:&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;&lt;strong&gt;Financial penalties:&lt;/strong&gt; A single GDPR violation can cost millions. For a small business, even a mid-range fine can mean layoffs, frozen growth, or closure.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Operational disruption:&lt;/strong&gt; A breach takes systems offline for weeks. Your staff gets pulled from revenue-generating work to manage the crisis. Recovery costs can easily exceed &lt;a href=&quot;https://proton.me/business/pass/breach-observatory&quot;&gt;$1 million&lt;/a&gt; when you factor in downtime, legal fees, and lost contracts.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Reputation damage: &lt;/strong&gt;Customers who trusted you with their data may not give you a second chance. In tight-knit industries, word travels fast. A compliance failure doesn&amp;#8217;t just hurt your brand; it can shrink your sales pipeline for years.&lt;/li&gt;
&lt;/ul&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Key cybersecurity frameworks every business should know &lt;/h2&gt;



&lt;p&gt;These are the standards your customers, regulators, and enterprise partners will likely ask about.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;GDPR (General Data Protection Regulation)&lt;/h3&gt;



&lt;p&gt;If you have even one customer in the European Union, or if you collect email addresses from EU visitors on your website, &lt;a href=&quot;https://gdpr.eu/what-is-gdpr/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;GDPR&lt;/a&gt; applies to you—regardless of where your company is based. Non-compliance can result in fines of up to €20 million or 4% of your annual global revenue, whichever is higher.&lt;/p&gt;



&lt;p&gt;&lt;strong&gt;What it means: &lt;/strong&gt;You must be transparent about how you collect and use data. You must give people the right to access, correct, or delete their information.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;HIPAA (Health Insurance Portability and Accountability Act)&lt;/h3&gt;



&lt;p&gt;Are you a SaaS company serving a US healthcare provider? Or perhaps a clinic managing appointments? The moment patient data touches your systems, &lt;a href=&quot;https://www.hhs.gov/hipaa/index.html&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;HIPAA&lt;/a&gt; applies.Penalties range from thousands to millions of dollars, depending on the severity and whether negligence was involved&lt;/p&gt;



&lt;p&gt;&lt;strong&gt;What it means:&lt;/strong&gt; You need strict safeguards like data encryption, controlled access, and clear procedures for reporting breaches.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;NIS2 (Network and Information Security Directive)&lt;/h3&gt;



&lt;p&gt;This is an EU directive strengthening cybersecurity in essential sectors like energy, transport, and digital infrastructure.Even if you aren&amp;#8217;t directly regulated, your enterprise customers may require you to meet &lt;a href=&quot;https://digital-strategy.ec.europa.eu/en/policies/nis2-directive&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;NIS2&lt;/a&gt; standards as part of their vendor checks.&lt;/p&gt;



&lt;p&gt;&lt;strong&gt;What it means: &lt;/strong&gt;It requires risk management practices and strict incident reporting.&amp;nbsp;&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;ISO 27001 &amp;amp; SOC 2&lt;/h3&gt;



&lt;p&gt;These are international standards that evaluate how you manage and protect data. The stakes: For enterprise clients, having &lt;a href=&quot;https://proton.me/business/iso-27001-certification&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;ISO 27001&lt;/a&gt; certification or a &lt;a href=&quot;https://proton.me/blog/soc-2&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;SOC 2&lt;/a&gt; report is a massive trust signal. It tells them, &amp;#8220;We have been audited by independent experts, and our security is solid.&amp;#8221;&lt;/p&gt;



&lt;p&gt;&lt;strong&gt;What it means: &lt;/strong&gt;You need to implement documented security controls, submit to independent audits, and maintain that certification on an ongoing basis.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;How to get started with compliance in cybersecurity&amp;nbsp;&amp;nbsp;&lt;/h2&gt;



&lt;p&gt;Compliance can feel like a long list of boxes to check, but the basics come down to five practical steps.&lt;/p&gt;



&lt;ol class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Map out what data you have, where it lives, and who has access. You might be surprised to find a customer list saved on a contractor&amp;#8217;s personal Dropbox or a shared spreadsheet with sensitive info that anyone can edit.&lt;/li&gt;



&lt;li&gt;Write down your policies. Who can access what? How do you report a breach? How do you dispose of old data? If it isn&amp;#8217;t written down, it doesn&amp;#8217;t exist. Keep these documents clear, current, and ensure your team actually follows them.&lt;/li&gt;



&lt;li&gt;Give your team a &lt;a href=&quot;https://proton.me/pass/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;business password manager&lt;/a&gt;. It generates strong credentials, stores them securely, and makes good habits the default. It removes the friction of remembering complex passwords.&lt;/li&gt;



&lt;li&gt;Use a &lt;a href=&quot;https://proton.me/business/vpn&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;business VPN&lt;/a&gt;. It encrypts all your team&amp;#8217;s internet traffic, ensuring data stays protected no matter where they log in. This is a straightforward way to meet network security requirements for almost every major framework.&lt;/li&gt;



&lt;li&gt;Assign a specific person (even if it&amp;#8217;s part of their role) to be accountable for your compliance posture. They should track regulatory changes, keep documentation updated, and ensure leadership stays informed.&lt;/li&gt;
&lt;/ol&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;How to stay compliant with cybersecurity regulations&lt;/h2&gt;



&lt;p&gt;Regulations change, your team grows, and the tools you use evolve. That&amp;#8217;s why requires ongoing attention.&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;&lt;strong&gt;Review policies regularly:&lt;/strong&gt; Conduct quarterly reviews to ensure your documentation reflects how you actually work.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Monitor for exposure:&lt;/strong&gt; Don&amp;#8217;t wait for a breach to find out your credentials leaked. Use tools that &lt;a href=&quot;https://proton.me/business/pass&quot;&gt;monitor the dark web&lt;/a&gt; and alert you if your company data appears in a breach.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Conduct internal audits:&lt;/strong&gt; Test your controls before an auditor does. Find the gaps yourself — it&amp;#8217;s always cheaper than having them exposed externally.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Train your team:&lt;/strong&gt; Policies only work if people follow them. Short, practical training on phishing and data handling keeps security habits sharp.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Use tools that enable good security: &lt;/strong&gt;Compliance is easier when security is the default. Choose tools that encrypt your business data, give you granular control over access, and flag risks like weak passwords automatically.&lt;/li&gt;
&lt;/ul&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Make cybersecurity compliance a part of BAU&lt;/h2&gt;



&lt;p&gt;Compliance doesn&amp;#8217;t have to be a scramble. With the right tools, it becomes part of how your business operates, giving you concrete answers to security questionnaires and audits.&lt;/p&gt;



&lt;p&gt;&lt;a href=&quot;https://proton.me/business/pass&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Proton Pass&lt;/a&gt; and &lt;a href=&quot;https://proton.me/business/vpn&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Proton VPN&lt;/a&gt; are built for this. Setup takes minutes, and you don&amp;#8217;t need an IT team to manage them.&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Proton VPN encrypts all company network traffic and restricts access to approved devices, meeting strict network security requirements.&lt;/li&gt;



&lt;li&gt;Proton Pass lets you enforce two-factor authentication, manage credentials securely, and pull activity logs directly from the admin panel for audits. When a new hire joins, you can provision access in clicks; when someone leaves, you revoke it instantly.&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;You also get to leverage our compliance for yours. When enterprise clients ask about the security of the software you use, you can point to our credentials. &lt;/p&gt;



&lt;p&gt;Proton is ISO 27001-certified and SOC 2 Type II-verified, based in &lt;a href=&quot;https://proton.me/blog/switzerland&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Switzerland&lt;/a&gt;, and fully open-source. This gives you verifiable, third-party proof that your data is protected by the highest global standards.&lt;/p&gt;



&lt;p&gt;&lt;a href=&quot;https://proton.me/business&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Proton for Business&lt;/a&gt; gives you the tools you need not just to start your compliance journey, but to maintain it long term.&lt;/p&gt;



&lt;p&gt;&lt;/p&gt;
</content:encoded><category>For business</category><author>Alanna Alexander</author></item><item><title>How to use Google Photos Locked Folder (and a safer alternative)</title><link>https://proton.me/blog/locked-folder-google-photos</link><guid isPermaLink="true">https://proton.me/blog/locked-folder-google-photos</guid><description>Learn how to use Google Photos&apos; Locked Folder, how it exposes your photos to Google, and a safer way to store sensitive images privately.</description><pubDate>Tue, 09 Jun 2026 14:10:53 GMT</pubDate><content:encoded>
&lt;p&gt;Most people have images meant for their eyes only, like snapshots of personal documents or intimate &lt;a href=&quot;https://proton.me/drive/photo-storage&quot;&gt;photos&lt;/a&gt; they&amp;#8217;d rather keep out of the main gallery. These are the kinds of images people would not want to accidentally &lt;a href=&quot;https://proton.me/blog/best-way-to-share-photos&quot;&gt;share with someone else&lt;/a&gt; or have exposed to anyone who gains physical access to their phone.&lt;/p&gt;



&lt;p&gt;Traditional photo libraries like &lt;a href=&quot;https://proton.me/blog/is-google-photos-safe&quot;&gt;Google Photos aren’t safe for private photos&lt;/a&gt; because they are not built for privacy. They can help protect your pictures from &lt;a href=&quot;https://proton.me/business/blog/unauthorized-access&quot;&gt;unauthorized access&lt;/a&gt;, but that doesn’t necessarily mean your sensitive photos are hidden from the service provider. Because Google Photos is not &lt;a href=&quot;https://proton.me/learn/encryption/types-of-encryption/what-is-end-to-end&quot;&gt;end-to-end encrypted&lt;/a&gt;, Google can technically access and process your photos in accordance with its policies.&lt;/p&gt;



&lt;p&gt;The Locked Folder feature in &lt;a href=&quot;https://proton.me/drive/google-photos-alternative&quot;&gt;Google Photos&lt;/a&gt; can be useful, but it doesn&amp;#8217;t change the underlying privacy model of the app. So before relying on it for sensitive images, it’s worth understanding what Locked Folder does, how to use it, and what its privacy limits are.&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;&lt;a href=&quot;#what-is&quot;&gt;What is the Google Photos Locked Folder feature?&lt;/a&gt;&lt;/li&gt;



&lt;li&gt;&lt;a href=&quot;#how-to&quot;&gt;How to hide photos in the Google Photos Locked Folder&lt;/a&gt;
&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;&lt;a href=&quot;#managing&quot;&gt;Managing photos and videos&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;



&lt;li&gt;&lt;a href=&quot;#limitations&quot;&gt;Limitations&lt;/a&gt;
&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;&lt;a href=&quot;#privacy-cost&quot;&gt;The privacy cost of backing up Locked Folder photos&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;



&lt;li&gt;&lt;a href=&quot;#proton-drive&quot;&gt;A more private way to store sensitive photos&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;



&lt;h2 class=&quot;wp-block-heading&quot; id=&quot;what-is&quot;&gt;What is the Google Photos Locked Folder feature?&lt;/h2&gt;



&lt;p&gt;Locked Folder is a Google Photos feature that lets you store selected photos and videos in a separate, protected space on your device. When you add items to this hidden folder, they:&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Don’t appear in your photo grid, albums, search results, Memories, or partner sharing&lt;/li&gt;



&lt;li&gt;Are hidden from other apps on your device that have access to your regular photo library&lt;/li&gt;



&lt;li&gt;Require your device screen lock to view and manage, such as your PIN, password, fingerprint, or face unlock&lt;/li&gt;
&lt;/ul&gt;



&lt;h2 class=&quot;wp-block-heading&quot; id=&quot;how-to&quot;&gt;How to hide photos in the Google Photos Locked Folder&lt;/h2&gt;



&lt;p&gt;Setting up the Google Photos Locked Folder to &lt;a href=&quot;https://proton.me/blog/hide-photos-ios-android&quot;&gt;hide your photos&lt;/a&gt; takes only a few moments:&lt;/p&gt;



&lt;ol class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Open &lt;strong&gt;Google Photos.&lt;/strong&gt;&lt;/li&gt;



&lt;li&gt;Tap &lt;strong&gt;Collections.&lt;/strong&gt;&lt;/li&gt;
&lt;/ol&gt;


&lt;div class=&quot;wp-block-image&quot;&gt;
&lt;figure class=&quot;aligncenter size-full is-resized&quot;&gt;&lt;img width=&quot;945&quot; height=&quot;1865&quot; loading=&quot;lazy&quot; decoding=&quot;async&quot; src=&quot;https://res.cloudinary.com/dbulfrlrz/images/w_945,h_1865,c_scale/f_auto,q_auto/v1781006670/wp-pme/google-photos-locked-folder-1/google-photos-locked-folder-1.jpeg?_i=AA&quot; alt=&quot;How to use Locked folder in Google Photos&quot; class=&quot;wp-post-152354 wp-image-152356&quot; style=&quot;width:400px&quot; data-format=&quot;jpeg&quot; data-transformations=&quot;f_auto,q_auto&quot; data-filesize=&quot;104 KB&quot; data-optsize=&quot;28 KB&quot; data-optformat=&quot;image/webp&quot; data-percent=&quot;72.6&quot; data-version=&quot;1781006670&quot; data-seo=&quot;1&quot; srcset=&quot;https://res.cloudinary.com/dbulfrlrz/images/f_auto,q_auto/v1781006670/wp-pme/google-photos-locked-folder-1/google-photos-locked-folder-1.jpeg?_i=AA 945w, https://res.cloudinary.com/dbulfrlrz/images/w_152,h_300,c_scale/f_auto,q_auto/v1781006670/wp-pme/google-photos-locked-folder-1/google-photos-locked-folder-1.jpeg?_i=AA 152w, https://res.cloudinary.com/dbulfrlrz/images/w_519,h_1024,c_scale/f_auto,q_auto/v1781006670/wp-pme/google-photos-locked-folder-1/google-photos-locked-folder-1.jpeg?_i=AA 519w, https://res.cloudinary.com/dbulfrlrz/images/w_768,h_1516,c_scale/f_auto,q_auto/v1781006670/wp-pme/google-photos-locked-folder-1/google-photos-locked-folder-1.jpeg?_i=AA 768w, https://res.cloudinary.com/dbulfrlrz/images/w_778,h_1536,c_scale/f_auto,q_auto/v1781006670/wp-pme/google-photos-locked-folder-1/google-photos-locked-folder-1.jpeg?_i=AA 778w&quot; sizes=&quot;auto, (max-width: 945px) 100vw, 945px&quot; /&gt;&lt;/figure&gt;
&lt;/div&gt;


&lt;ol start=&quot;3&quot; class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Scroll down, and tap &lt;strong&gt;Locked&lt;/strong&gt;. You will be prompted to open the Locked Folder using your device screen lock option.&lt;/li&gt;



&lt;li&gt;Tap &lt;strong&gt;Move items.&lt;/strong&gt;&lt;/li&gt;



&lt;li&gt;Select the photos or videos you want to add, and tap &lt;strong&gt;Move&lt;/strong&gt;.&lt;/li&gt;
&lt;/ol&gt;


&lt;div class=&quot;wp-block-image&quot;&gt;
&lt;figure class=&quot;aligncenter size-full is-resized&quot;&gt;&lt;img width=&quot;945&quot; height=&quot;1876&quot; loading=&quot;lazy&quot; decoding=&quot;async&quot; src=&quot;https://res.cloudinary.com/dbulfrlrz/images/w_945,h_1876,c_scale/f_auto,q_auto/v1781006675/wp-pme/google-photos-locked-folder-2/google-photos-locked-folder-2.jpeg?_i=AA&quot; alt=&quot;How to use Locked folder in Google Photos&quot; class=&quot;wp-post-152354 wp-image-152377&quot; style=&quot;width:400px&quot; data-format=&quot;jpeg&quot; data-transformations=&quot;f_auto,q_auto&quot; data-filesize=&quot;288 KB&quot; data-optsize=&quot;91 KB&quot; data-optformat=&quot;image/webp&quot; data-percent=&quot;68.3&quot; data-version=&quot;1781006675&quot; data-seo=&quot;1&quot; srcset=&quot;https://res.cloudinary.com/dbulfrlrz/images/f_auto,q_auto/v1781006675/wp-pme/google-photos-locked-folder-2/google-photos-locked-folder-2.jpeg?_i=AA 945w, https://res.cloudinary.com/dbulfrlrz/images/w_151,h_300,c_scale/f_auto,q_auto/v1781006675/wp-pme/google-photos-locked-folder-2/google-photos-locked-folder-2.jpeg?_i=AA 151w, https://res.cloudinary.com/dbulfrlrz/images/w_516,h_1024,c_scale/f_auto,q_auto/v1781006675/wp-pme/google-photos-locked-folder-2/google-photos-locked-folder-2.jpeg?_i=AA 516w, https://res.cloudinary.com/dbulfrlrz/images/w_768,h_1525,c_scale/f_auto,q_auto/v1781006675/wp-pme/google-photos-locked-folder-2/google-photos-locked-folder-2.jpeg?_i=AA 768w, https://res.cloudinary.com/dbulfrlrz/images/w_774,h_1536,c_scale/f_auto,q_auto/v1781006675/wp-pme/google-photos-locked-folder-2/google-photos-locked-folder-2.jpeg?_i=AA 774w&quot; sizes=&quot;auto, (max-width: 945px) 100vw, 945px&quot; /&gt;&lt;/figure&gt;
&lt;/div&gt;


&lt;ol start=&quot;6&quot; class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Confirm using your device screen lock option.
&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;If Locked Folder backup is off, you can turn it on by tapping &lt;strong&gt;Manage backup&lt;/strong&gt; or skip by tapping &lt;strong&gt;Continue&lt;/strong&gt;.&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;



&lt;li&gt;Tap &lt;strong&gt;Move&lt;/strong&gt; to confirm.&lt;/li&gt;
&lt;/ol&gt;



&lt;p&gt;To add new items, tap the &lt;strong&gt;new photo icon 🖼&lt;/strong&gt; on the bottom left. It’s not possible to create subfolders in the Locked Folder feature for organization.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot; id=&quot;managing&quot;&gt;Managing photos and videos in Locked Folder&lt;/h3&gt;



&lt;p&gt;To return a photo or video to your main Google Photos library, select it in &lt;strong&gt;Locked Folder&lt;/strong&gt;, tap &lt;strong&gt;Move&lt;/strong&gt;, and tap &lt;strong&gt;Move&lt;/strong&gt; again to confirm. The item will leave Locked Folder and reappear in its original position in your photo timeline.&lt;/p&gt;



&lt;p&gt;You can also permanently delete items by pressing &lt;strong&gt;Delete&lt;/strong&gt;, and again &lt;strong&gt;Delete&lt;/strong&gt; to confirm.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot; id=&quot;limitations&quot;&gt;Limitations of the Locked Folder feature in Google Photos&lt;/h2&gt;



&lt;p&gt;The Locked Folder feature is useful for keeping private photos out of your main gallery, such as when you hand your phone to someone else and don’t want them scrolling into something sensitive. But it does not create a separate, end-to-end encrypted vault.&lt;/p&gt;



&lt;p&gt;&lt;a href=&quot;https://proton.me/drive/security&quot;&gt;End-to-end encryption&lt;/a&gt; means your data is encrypted on your device before it reaches a company’s servers, and only you hold the keys to decrypt it. Not even the service provider can read your files. Google Photos does not offer end-to-end encryption for your photo library — so Google retains access to your images&amp;nbsp;— and the Locked Folder tool is governed by the underlying policy of the Google Photos privacy policy.&lt;/p&gt;



&lt;p&gt;That matters because Google does not simply store photos passively. Its automated systems can scan content for policy violations, and mistakes can have serious consequences.&lt;/p&gt;



&lt;p&gt;In one widely reported case, a father in California &lt;a href=&quot;https://www.google.com/search?q=google+photos+toddler+california&amp;amp;oq=google+photos+toddler+california&amp;amp;sourceid=chrome&amp;amp;ie=UTF-8#:~:text=A%20Dad%20Took,08/21%20%E2%80%BA%20technology&quot;&gt;took medical photos of his toddler&lt;/a&gt; at a doctor’s request and sent them to the healthcare provider. Because the photos were also backed up to his Google account, Google’s systems flagged them as potential CSAM, reported him to law enforcement, and terminated his account. Police cleared him of wrongdoing, but Google still refused to restore the account, leaving him without access to years of emails, photos, purchase history, and other data.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot; id=&quot;privacy-cost&quot;&gt;The privacy cost of backing up Locked Folder photos&lt;/h3&gt;



&lt;p&gt;By default, items you move to the Google Locked Folder only exist on your local device. If you don’t &lt;a href=&quot;https://proton.me/blog/how-to-back-up-files&quot;&gt;turn on backup&lt;/a&gt;, you could lose your photos if your device is damaged or lost.&lt;/p&gt;



&lt;p&gt;On the other hand, backing up your Locked Folder photos means keeping them stored on Google’s servers and giving the company broad access to your sensitive content that you don’t feel comfortable sharing with anyone else.&lt;/p&gt;



&lt;p&gt;That leaves you stuck between two bad options:&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Keep photos on your local device only and risk losing them, or&lt;/li&gt;



&lt;li&gt;Back them up to Google Photos and accept they may be scanned by Google’s automated systems and reviewed by humans if an algorithm flags something, even by mistake.&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;If neither option sits right with you, there’s a better, safer way to store sensitive photos without risking that your &lt;a href=&quot;https://proton.me/drive&quot;&gt;cloud storage&lt;/a&gt; provider can take a sneak peek.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot; id=&quot;proton-drive&quot;&gt;A more private way to store sensitive photos&lt;/h2&gt;



&lt;p&gt;If you want to safely store sensitive photos long-term, use Proton Drive. While Proton Drive does not have a direct equivalent to Google Photos’ Locked Folder, it approaches photo privacy differently by protecting your photos with &lt;a href=&quot;https://proton.me/drive/security&quot;&gt;end-to-end encryption&lt;/a&gt; so no one can see them except you and the people you choose to share them with — not even us.&lt;/p&gt;



&lt;p&gt;You can &lt;a href=&quot;https://proton.me/support/enable-photo-backup&quot;&gt;enable automatic photo backup&lt;/a&gt; on your phone to keep them synced across your devices, browse photos in a timeline, organize them into albums, mark favorites, filter by media type, and securely share individual photos or full albums with passwords and expiration dates. Shared links can be easily revoked anytime.&lt;/p&gt;



&lt;p&gt;Unlike Google Photos and &lt;a href=&quot;https://proton.me/drive/google-drive-alternative&quot;&gt;Google Drive&lt;/a&gt;, Proton Drive is transparent when it comes to your data: All Drive apps are &lt;a href=&quot;https://proton.me/community/open-source&quot;&gt;open source&lt;/a&gt; and independently audited, which means anyone can verify our security. We never scan your files or photo library, show ads, use your photos for AI or product improvement, or share your information with anyone.&lt;/p&gt;



&lt;p&gt;When you’re ready to move on from Google Photos, you can &lt;a href=&quot;https://proton.me/support/how-to-import-from-google-photos&quot;&gt;easily migrate your memories to Proton Drive&lt;/a&gt;. And when you’re ready to &lt;a href=&quot;https://proton.me/degoogle&quot;&gt;deGoogle&lt;/a&gt; more broadly, you can take the next steps toward a &lt;a href=&quot;https://proton.me/&quot;&gt;privacy-first ecosystem&lt;/a&gt; built to protect your data rather than exploit it.&lt;br&gt;&lt;/p&gt;
</content:encoded><category>Privacy guides</category><author>Elena Constantinescu</author></item><item><title>Top 7 internal communication tools for companies</title><link>https://proton.me/business/blog/internal-communication-tools</link><guid isPermaLink="true">https://proton.me/business/blog/internal-communication-tools</guid><description>Compare internal communication software to find tools that keep every message, file, and meeting your team exchanges private.</description><pubDate>Tue, 09 Jun 2026 13:19:20 GMT</pubDate><content:encoded>
&lt;p&gt;Every internal communication tool was built simply to host workplace conversations. They do far more than that today.&lt;/p&gt;



&lt;p&gt;Platforms like Slack, Microsoft Teams, and Zoom have become the vaults for a company&amp;#8217;s most valuable intellectual property, retaining critical decisions, sensitive documents, and proprietary data. &lt;/p&gt;



&lt;p&gt;The problem is that all this valuable data is often protected only by basic encryption — a security measure that leaves the door wide open for providers, third parties, and even AI models to access it.&lt;/p&gt;



&lt;p&gt;This guide explores the top seven internal communication tools available in 2026, weighing their functionality against their privacy practices. &lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;What are internal communication tools?&lt;/h2&gt;



&lt;p&gt;Internal communication tools are software platforms designed to facilitate real-time interaction and information sharing within an organization. &lt;/p&gt;



&lt;p&gt;They were designed to solve a specific friction point: the latency of poorly designed email platforms. A quick answer from a colleague would require hours of waiting and valuable ideas would get lost in a thread of replies.&lt;/p&gt;



&lt;p&gt;Businesses adopted internal communication tools with the hope that it would break down silos, enabling real-time collaboration across departments and time zones. It did. It’s now become the digital water cooler and the virtual conference room.&lt;/p&gt;



&lt;p&gt;Teams now use internal communication tools to make hiring decisions, finalize product roadmaps, store legal contracts, and conduct sensitive client negotiations — high stakes for a tool designed to facilitate the exchange of information, not secure it.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Why modern communication stacks are actually failing businesses&lt;/h2&gt;



&lt;p&gt;Fast and convenient internal communication often comes at a cost. Because many modern communication tools are built to prioritize speed and scale over security, they rely on basic &lt;a href=&quot;https://proton.me/learn/encryption&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;encryption&lt;/a&gt; that doesn’t adequately protect your data. &lt;/p&gt;



&lt;p&gt;This means providers can access your messages, calls, and files which can be shared, leaked, or sold to advertisers. In some cases, they’re even used to train AI models.&lt;/p&gt;



&lt;p&gt;This creates real business risks. These range from compliance violations to data exposure in a breach. Together, these risks make it even more important to choose the right internal communication tool. In addition to affordability and convenience, you should prioritize security.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;What to look for in an internal communication tool&lt;/h2&gt;



&lt;p&gt;Internal communication software is essential to keeping teams aligned. When choosing a secure internal communication tool, look for:&lt;/p&gt;



&lt;h4 class=&quot;wp-block-heading&quot;&gt;End-to-end encryption &lt;/h4&gt;



&lt;p&gt;Most tools encrypt data in transit, but that&amp;#8217;s not enough. &lt;a href=&quot;https://proton.me/learn/encryption/types-of-encryption/what-is-end-to-end&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;End-to-end encryption&lt;/a&gt; ensures that only participants can access the content of your communications — not the provider, third parties, or AI models.&lt;/p&gt;



&lt;h4 class=&quot;wp-block-heading&quot;&gt;Data minimization&lt;/h4&gt;



&lt;p&gt;Every tool collects some data to function. The question is how much, and what happens to it. Look for tools that collect only what&amp;#8217;s necessary and don&amp;#8217;t share or monetize your data.&lt;/p&gt;



&lt;h4 class=&quot;wp-block-heading&quot;&gt;Open source transparency&lt;/h4&gt;



&lt;p&gt;If a provider publishes its code as open source, anyone can verify its security claims. Look for independent audits and clear privacy policies that explain exactly how your data is handled.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;&lt;strong&gt;The 7 best internal communication tools&lt;/strong&gt;&lt;/h2&gt;



&lt;p&gt;There’s no one-size-fits-all internal communication tool. The right one depends on your business needs, your existing software, and how you handle sensitive information. &lt;/p&gt;



&lt;p&gt;Here are seven of the best options you can find today.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Proton Meet&lt;/h3&gt;



&lt;p&gt;&lt;strong&gt;Best for: &lt;/strong&gt;Private and secure business meetings&lt;/p&gt;



&lt;p&gt;Proton Meet combines the familiarity of &lt;a href=&quot;https://proton.me/business/meet&quot;&gt;video conferencing software&lt;/a&gt; with a privacy-first, web-based design. End-to-end encryption is enabled by default, so meetings remain confidential and only accessible to participants, not even Proton can access them.&lt;/p&gt;



&lt;p&gt;If your business is concerned about compliance and data exposure, Proton Meet offers additional protection through Swiss privacy laws. There&amp;#8217;s no ad-based business model, which means there’s no incentive to collect or monetize user data.&lt;/p&gt;



&lt;p&gt;Proton Meet includes all the video conferencing features you’ve come to expect — chat messaging, screen sharing, blurred backgrounds, noise reduction filters, and more. All in a single secure video conferencing tool, a part of a suite that helps you stay &lt;a href=&quot;https://proton.me/business/gdpr&quot;&gt;GDPR-&lt;/a&gt; and &lt;a href=&quot;https://proton.me/business/healthcare&quot;&gt;HIPAA-compliant&lt;/a&gt;.&lt;/p&gt;



&lt;p&gt;&lt;strong&gt;Strengths:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;End-to-end encrypted by default&lt;/li&gt;



&lt;li&gt;&lt;a href=&quot;https://proton.me/blog/zero-access-encryption&quot;&gt;Zero-knowledge architecture&lt;/a&gt; (your data is encrypted so only you can access it, not Proton)&lt;/li&gt;



&lt;li&gt;Guests can join calls without a Proton account&lt;/li&gt;



&lt;li&gt;Part of Proton’s privacy-first suite&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;&lt;strong&gt;Keep in mind:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Fewer integrations available&lt;/li&gt;



&lt;li&gt;Free plan limited to one-hour calls and 50 participants&lt;/li&gt;
&lt;/ul&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Proton Mail&lt;/h3&gt;



&lt;p&gt;&lt;strong&gt;Best for: &lt;/strong&gt;Secure email communication&lt;/p&gt;



&lt;p&gt;&lt;a href=&quot;https://proton.me/business/mail&quot;&gt;Proton Mail&lt;/a&gt; is how emails should be — private by default. Email remains the backbone of business communication and should be appropriately protected. Unlike other email providers, Proton Mail is end-to-end encrypted by default. Your emails are fully secured whether in transit or at rest; only you and your intended recipient can read them.&amp;nbsp;&lt;/p&gt;



&lt;p&gt;End-to-end encryption also ensures your emails can never be scanned, shared with third parties, or used to train AI. This ad-free business model means Proton does not benefit from your data.&lt;/p&gt;



&lt;p&gt;&lt;strong&gt;Strengths:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;End-to-end encrypted by default&lt;/li&gt;



&lt;li&gt;&lt;a href=&quot;https://proton.me/blog/zero-access-encryption&quot;&gt;Zero-knowledge architecture&lt;/a&gt; (your data is encrypted so only you can access it)&lt;/li&gt;



&lt;li&gt;Data is protected by Swiss privacy laws&lt;/li&gt;



&lt;li&gt;Part of the Proton ecosystem&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;&lt;strong&gt;Keep in mind:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Emails to non-Proton recipients aren&amp;#8217;t end-to-end encrypted unless &lt;a href=&quot;https://proton.me/support/password-protected-emails&quot;&gt;password-protected&lt;/a&gt;&lt;/li&gt;



&lt;li&gt;Fewer native integrations than Gmail or Outlook&lt;/li&gt;
&lt;/ul&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Slack&lt;/h3&gt;



&lt;p&gt;&lt;strong&gt;Best for: &lt;/strong&gt;Instant messaging and app integration&lt;/p&gt;



&lt;p&gt;Slack is the iMessage of the enterprise world. Slack simplifies workplace discussions; instead of drawn-out email threads, conversations happen in organized channels sorted by team, project, or however you choose.&amp;nbsp;&lt;/p&gt;



&lt;p&gt;Slack features an extensive integration library that lets you connect to popular enterprise software, such as Jira and Google Calendar. These integrations turn Slack from a chat tool into a central hub for notifications and workflows. Additionally, Slack allows you to hold video and voice calls, making it a versatile communication tool.&lt;/p&gt;



&lt;p&gt;Slack has come under scrutiny for privacy concerns — from allowing admins to &lt;a href=&quot;https://nypost.com/2023/06/15/your-boss-can-read-all-your-slacks-even-private-ones-heres-how/&quot;&gt;read employee messages&lt;/a&gt; to the &lt;a href=&quot;https://slack.com/intl/en-gb/trust/privacy/privacy-policy&quot;&gt;sharing of identifiable information&lt;/a&gt; with advertisers. Depending on your location, you may not be able to opt out of this data sharing.&lt;/p&gt;



&lt;p&gt;&lt;strong&gt;Strengths:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Extensive app integration library&lt;/li&gt;



&lt;li&gt;Organized channels for teams and projects&lt;/li&gt;



&lt;li&gt;Supports chat, voice, and video functionality&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;&lt;strong&gt;Keep in mind:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Admins can read employee messages&lt;/li&gt;



&lt;li&gt;Your data is shared with advertisers&lt;/li&gt;



&lt;li&gt;Opt-out options vary by jurisdiction&lt;/li&gt;
&lt;/ul&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Microsoft Teams&lt;/h3&gt;



&lt;p&gt;&lt;strong&gt;Best for: &lt;/strong&gt;Microsoft-reliant organizations&lt;/p&gt;



&lt;p&gt;Microsoft Teams is the obvious choice for businesses that rely on Microsoft services. Its deep integration with the Microsoft ecosystem enables many quality-of-life conveniences, such as real-time document collaboration within the app and an automatic Outlook sync. It scales well too, Teams can handle everything from small-group chats to company-wide town halls.&amp;nbsp;&lt;/p&gt;



&lt;p&gt;However, Microsoft’s privacy practices have long faced criticism. Concerns range from auto-enabling &lt;a href=&quot;https://changepilot.cloud/blog/microsoft-teams-update-causes-privacy-concerns-in-australian-education-sector&quot;&gt;features that collect user data&lt;/a&gt; to bossware features such as &lt;a href=&quot;https://www.itpro.com/security/privacy/microsoft-teams-is-getting-a-new-location-tracking-feature-that-lets-bosses-snoop-on-staff-research-shows-it-could-cause-workforce-pushback&quot;&gt;location tracking&lt;/a&gt; and the &lt;a href=&quot;https://www.microsoft.com/en-gb/privacy/data-collection-teams&quot;&gt;volume of data&lt;/a&gt; they collect.&lt;/p&gt;



&lt;p&gt;&lt;strong&gt;Strengths:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Part of Microsoft 365&lt;/li&gt;



&lt;li&gt;Scales from small teams to large organizations&lt;/li&gt;



&lt;li&gt;Seamless integration with Microsoft software&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;&lt;strong&gt;Keep in mind:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Auto-enabled features may collect user data&lt;/li&gt;



&lt;li&gt;Includes location tracking capabilities&lt;/li&gt;



&lt;li&gt;Significant data collection across Microsoft products&lt;/li&gt;
&lt;/ul&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Connecteam&lt;/h3&gt;



&lt;p&gt;&lt;strong&gt;Best for: &lt;/strong&gt;Deskless teams&lt;/p&gt;



&lt;p&gt;Connecteam is designed for teams that don’t work in corporate environments, such as retail and healthcare. The app-based design combines chat, announcements, and employee directory in one place, making it seamless for cross-team communication. It includes operation-centric features such as scheduling, time tracking, and task management to make it easy to manage a distributed, deskless team.&lt;/p&gt;



&lt;p&gt;Some features of Connecteam can raise privacy concerns for your team. The app collects extensive data, including location data, that is shared with employers and may also be used for targeted ads. However, Connecteam assures that it &lt;a href=&quot;https://au.connecteam.com/trust-center/&quot;&gt;handles data in compliance with regulations&lt;/a&gt; such as GDPR and HIPAA. It is also ISO 27001 and SOC 2 certified.&lt;br&gt;&lt;/p&gt;



&lt;p&gt;&lt;strong&gt;Strengths:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Mobile-first design for field teams&lt;/li&gt;



&lt;li&gt;Includes scheduling and time tracking&lt;/li&gt;



&lt;li&gt;Bridges communication between corporate and frontline workers&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;&lt;strong&gt;Keep in mind:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Collects extensive data, including location data&lt;/li&gt;



&lt;li&gt;Data shared with employers and potentially advertisers&lt;/li&gt;



&lt;li&gt;May raise privacy concerns for your team&lt;/li&gt;
&lt;/ul&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Haiilo&lt;/h3&gt;



&lt;p&gt;&lt;strong&gt;Best for: &lt;/strong&gt;Employee engagement&lt;/p&gt;



&lt;p&gt;Haiilo is an internal communication tool focused on employee engagement. It functions like a private social network for your organization. It is built to foster company culture and streamline communication, and allows your employees to share content on their personal social networks. As an internal communications tool, it is more specialized than the other options on the list.&lt;/p&gt;



&lt;p&gt;Haiilo is geared towards large enterprises with large workforces. It may be more than you need for smaller organizations. The platform collects data on behalf of employers, who control how it is used. This means you are responsible for how employee data is handled, and employees may not have opt-out rights.&lt;/p&gt;



&lt;p&gt;&lt;strong&gt;Strengths:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Designed specifically for employee engagement&lt;/li&gt;



&lt;li&gt;Centralized hub for company updates&lt;/li&gt;



&lt;li&gt;Encourages employee advocacy&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;&lt;strong&gt;Keep in mind:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Better suited for large enterprises&lt;/li&gt;



&lt;li&gt;You control employee data&lt;/li&gt;



&lt;li&gt;Employees may have limited opt-out rights depending on your setup&lt;/li&gt;
&lt;/ul&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Proton Workspace&lt;/h3&gt;



&lt;p&gt;&lt;strong&gt;Proton Workspace&lt;/strong&gt; &lt;strong&gt;Best for:&lt;/strong&gt; Organizations that need a secure, compliant alternative to Google Workspace or Microsoft 365&lt;/p&gt;



&lt;p&gt;Proton Workspace is a fully encrypted productivity suite that replaces the tools your team already uses — email, calendar, file storage, documents, spreadsheets, and video meetings — without the data exposure that comes with mainstream platforms. End-to-end encryption is built into every product, meaning your data is protected in transit, at rest, and from the platform itself.&lt;/p&gt;



&lt;p&gt;For compliance-driven organizations, Proton Workspace offers a defensible answer to auditors: zero-knowledge architecture means no one — including Proton — can access your data. Swiss jurisdiction puts it beyond the reach of FISA court orders and the CLOUD Act. Workspace Premium includes Lumo, a privacy-first AI assistant that doesn&amp;#8217;t use your data for model training.&lt;/p&gt;



&lt;p&gt;Migration from Google Workspace, Outlook, or other providers is handled through Easy Switch, with no engineering resources required.&lt;/p&gt;



&lt;p&gt;&lt;strong&gt;Strengths:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;End-to-end encrypted across every product&lt;/li&gt;



&lt;li&gt;Zero-knowledge architecture — your data is inaccessible even to Proton&lt;/li&gt;



&lt;li&gt;Swiss jurisdiction, outside US legal reach&lt;/li&gt;



&lt;li&gt;ISO 27001 and SOC 2 certified; GDPR and HIPAA compliant&lt;/li&gt;



&lt;li&gt;Open-source code, independently audited&lt;/li&gt;



&lt;li&gt;Lumo AI assistant included in Premium (data never used for training)&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;&lt;strong&gt;Keep in mind:&lt;/strong&gt;&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Fewer third-party integrations than Google Workspace or Microsoft 365&lt;/li&gt;



&lt;li&gt;Lumo is available on Workspace Premium only&lt;/li&gt;



&lt;li&gt;Teams migrating complex workflows may need adjustment time&lt;/li&gt;
&lt;/ul&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Keep your business communications private&lt;/h2&gt;



&lt;p&gt;The right internal communication tool depends on how your team works, but privacy shouldn&amp;#8217;t be a tradeoff. Look for &lt;a href=&quot;https://proton.me/business&quot;&gt;team collaboration tools&lt;/a&gt; that offer end-to-end encryption by default. &lt;/p&gt;



&lt;hr class=&quot;wp-block-separator has-alpha-channel-opacity&quot;/&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Frequently asked questions&lt;/h2&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;How do I choose the best internal communication tool for my business?&amp;nbsp;&lt;/h3&gt;



&lt;p&gt;Consider your business&amp;#8217;s needs, such as your team&amp;#8217;s distribution and the type of communication they rely on most. &lt;/p&gt;



&lt;p&gt;Next, evaluate how the choices integrate with your existing software, or if they’re part of a suite that is easy to migrate to.&lt;/p&gt;



&lt;p&gt;Lastly, consider the platform’s security. Business communications are highly sensitive, and you should choose a tool with robust privacy protections.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Is internal communication software secure?&amp;nbsp;&lt;/h3&gt;



&lt;p&gt;Not all of them are. Many platforms collect user data and use basic encryption that keeps the providers in control of your data. &lt;/p&gt;



&lt;p&gt;Third-party integration (such as with AI assistants and note-takers) also creates additional security concerns as each app operates under its own privacy policy. &lt;/p&gt;



&lt;p&gt;Security should be a priority when choosing business communication software. Choose tools like Proton Meet and Proton Mail that protect your data with end-to-end encryption by default, ensuring your communications and data are accessible only to intended recipients.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Can internal communication tools replace email?&lt;/h3&gt;



&lt;p&gt;Not entirely. Email itself is an internal communication tool. Other tools, such as instant messaging and video conferencing software, complement email communication, enabling quick collaboration and coordination among teams. However, email is still essential for external correspondence and formal communications.&lt;/p&gt;
</content:encoded><category>For business</category><author>Alanna Alexander</author></item><item><title>Introducing Proton Drive CLI: Use Drive from your terminal</title><link>https://proton.me/blog/proton-drive-cli</link><guid isPermaLink="true">https://proton.me/blog/proton-drive-cli</guid><description>Proton Drive CLI is now available for Windows, macOS, and Linux. Upload, download, share, and automate your Drive workflows from the terminal.</description><pubDate>Tue, 09 Jun 2026 11:53:13 GMT</pubDate><content:encoded>
&lt;p&gt;Last week, we finished launching the &lt;a href=&quot;https://proton.me/blog/drive-sdk-may-2026&quot;&gt;Proton Drive SDK&lt;/a&gt;, a shared engine designed to harmonize Proton Drive across all platforms and to bring you the features you need faster. Today, we&amp;#8217;re taking the next step: &lt;strong&gt;Proton Drive CLI is here, available for Windows, macOS, and Linux&lt;/strong&gt;.&lt;/p&gt;



&lt;p&gt;The CLI brings the power of our &lt;a href=&quot;https://proton.me/drive/&quot;&gt;cloud storage&lt;/a&gt; and &lt;a href=&quot;https://proton.me/drive/security&quot;&gt;end-to-end encryption&lt;/a&gt; to scripts, backups, and deployment pipelines without the hassle of writing code. It&amp;#8217;s built on the same Proton Drive SDK that powers our official Proton Drive client applications, and is fully interoperable with them.&lt;/p&gt;



&lt;p&gt;For our developer community: While &lt;strong&gt;we are developing our fully-featured Linux app&lt;/strong&gt;, the CLI already allows you to script a lot of Proton Drive&amp;#8217;s key features from your favorite scripting environments (or even schedule jobs with cron). The CLI is intended to complement the Proton Drive application. It&amp;#8217;s not a full replacement — for example, only the applications include a full synchronization engine that runs in the background — but rather a way to achieve many goals from a lightweight scripting environment.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;What is the CLI?&lt;/h2&gt;



&lt;p&gt;A &lt;strong&gt;command-line interface (CLI)&lt;/strong&gt; is a program you run from a shell, such as Terminal, PowerShell, or SSH. You pass a command and arguments, it does the job, and exits. Like other Unix command-line tools, you can pipe and script the Proton Drive CLI together with other tools into larger workflows.&lt;/p&gt;



&lt;p&gt;The Proton Drive CLI is a single binary you can drop into that world. It supports common Drive operations such as listing folders, uploading and downloading files, trash, sharing, or invitations. Results are displayed in plain, readable text by default — and if you&amp;#8217;re building automation on top, you can switch to a machine-friendly format using the &lt;code&gt;--json&lt;/code&gt; (or &lt;code&gt;-j&lt;/code&gt;) parameter.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;How does Proton Drive CLI help?&lt;/h2&gt;



&lt;p&gt;Until now, using Proton Drive as part of an automated workflow — alongside tools like deployment scripts, backup jobs, cron, or internal runbooks — meant either doing it manually (like opening the app or dragging files) or reverse-engineering Drive&amp;#8217;s internals to write custom scripts that were brittle and hard to maintain. The CLI changes that by allowing you to run Proton Drive operations directly from the terminal. It can, for example, upload files after a build finishes, back up a folder on a schedule, invite a reviewer, or check what&amp;#8217;s been shared.&lt;/p&gt;



&lt;p&gt;This is especially useful when you need a specific action to happen at a specific time, rather than keeping folders continuously in sync, such as publishing files after a release, taking a snapshot of a shared folder before an audit, or revoking access when someone &lt;a href=&quot;https://proton.me/business/drive/templates/offboarding-checklist&quot;&gt;offboards&lt;/a&gt;. The CLI runs the operation, tells you if it worked, and exits.&lt;/p&gt;



&lt;p&gt;It&amp;#8217;s a natural fit for anyone who already works in the terminal and for teams who want their Drive workflows written down as repeatable commands rather than a series of clicks to remember.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Get started with Proton Drive CLI&lt;/h2&gt;



&lt;p&gt;At launch, the CLI covers the essentials: sign in and out, browse and manage files and folders (including trash), and handle sharing and invitations.&lt;/p&gt;



&lt;p&gt;A few typical flows:&lt;/p&gt;



&lt;pre class=&quot;wp-block-preformatted&quot;&gt;proton-drive auth login&lt;br&gt;&lt;br&gt;# Upload files from local directory to folder in My files&lt;br&gt;proton-drive filesystem upload ./reports/* /my-files/Reports --conflict-strategy skip&lt;br&gt;&lt;br&gt;# See who has access, then invite a colleague&lt;br&gt;proton-drive sharing status /my-files/Reports&lt;br&gt;proton-drive sharing invite --user example@pm.me --role editor --message &quot;Please review reports&quot; /my-files/Reports&lt;br&gt;&lt;br&gt;# Download to a local backup directory&lt;br&gt;proton-drive filesystem download /my-files/Reports ./backups&lt;/pre&gt;



&lt;p&gt;For the full command set and flags, run &lt;code&gt;proton-drive help&lt;/code&gt; or &lt;code&gt;proton-drive &amp;lt;command&amp;gt; --help&lt;/code&gt;. For example, &lt;code&gt;proton-drive filesystem upload --help&lt;/code&gt;.&lt;/p&gt;



&lt;p&gt;&lt;a href=&quot;https://proton.me/support/drive-cli&quot;&gt;Find out more about using the Proton Drive CLI&lt;/a&gt;.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;What comes next&lt;/h2&gt;



&lt;p&gt;Upcoming additions to the Proton Drive CLI include support for:&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;&lt;a href=&quot;https://proton.me/drive/photo-storage&quot;&gt;Photos and albums&lt;/a&gt;&lt;/li&gt;



&lt;li&gt;Files and folders shared using a secure, public link&lt;/li&gt;



&lt;li&gt;Multi-account support for larger teams and managed service providers&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;Our long-term goal is to bring everything you can do in the Proton Drive app to the command line.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Download Proton Drive CLI&lt;/h2&gt;



&lt;p&gt;The fastest way to get started is to download the pre-built binaries for your platform:&lt;/p&gt;



&lt;div class=&quot;text-center&quot;&gt;&lt;a class=&quot;btn inline-block rounded-full font-bold btn-small bg-purple-500 text-white hover:text-white focus:text-white&quot; href=&quot;https://proton.me/drive/download&quot;&gt;Download Proton Drive CLI&lt;/a&gt;&lt;/div&gt;



&lt;p&gt;On macOS and Linux, you&amp;#8217;ll need to make the file executable after downloading (&lt;code&gt;chmod +x proton-drive&lt;/code&gt;). Once that&amp;#8217;s done, run &lt;code&gt;proton-drive version&lt;/code&gt; to confirm the build.&lt;/p&gt;



&lt;p&gt;Sign-in happens through your browser — no password on the command line. Your sessions are stored securely by your operating system (Windows Credential Manager, macOS Keychain, or libsecret on Linux).&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Build from source&lt;/h3&gt;



&lt;p&gt;Prefer to build from source? The CLI is implemented in TypeScript, packaged with &lt;a href=&quot;https://bun.sh/&quot;&gt;Bun&lt;/a&gt;, and available for download in the &lt;a href=&quot;https://github.com/ProtonDriveApps/sdk&quot;&gt;Drive SDK repository&lt;/a&gt;. After cloning it, you can install the dependencies and build the CLI from the main directory:&lt;/p&gt;



&lt;pre class=&quot;wp-block-preformatted&quot;&gt;cd js/cli&lt;br&gt;bun install&lt;br&gt;bun run build&lt;br&gt;./release/proton-drive auth login&lt;br&gt;./release/proton-drive filesystem list /my-files&lt;/pre&gt;



&lt;p&gt;See the CLI README in the repository for more details.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Fair use and rate limits&lt;/h2&gt;



&lt;p&gt;Proton Drive CLI follows the same fair use policies as all Proton Drive clients. To stay within limits, only upload or download what has actually changed — don&amp;#8217;t reupload the same files repeatedly or rewrite entire folders when only a few files are new. Accounts that generate unusually high traffic are temporarily throttled to protect the service for everyone.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Now in your terminal, with the same level of privacy&lt;/h2&gt;



&lt;p&gt;Proton Drive CLI is available today, and more features will soon follow. Everything you do through the terminal is protected by the same &lt;a href=&quot;https://proton.me/learn/encryption/types-of-encryption/what-is-end-to-end&quot;&gt;end-to-end encryption&lt;/a&gt; as the rest of Proton Drive. Download it, try it, and let us know what you build. And if you&amp;#8217;re on Linux: a full-featured desktop client with sync is on its way.&lt;/p&gt;
</content:encoded><category>Product updates</category><category>Proton Drive</category><author>Michal Hořejšek</author></item><item><title>What to look for in an AI assistant</title><link>https://proton.me/business/blog/ai-assistants-for-businesses</link><guid isPermaLink="true">https://proton.me/business/blog/ai-assistants-for-businesses</guid><description>Here&apos;s what SMB founders and IT leaders should look for before connecting an AI assistant to their business data.</description><pubDate>Mon, 08 Jun 2026 18:37:16 GMT</pubDate><content:encoded>
&lt;p&gt;AI assistants have promised what most businesses lack: Efficiency without any additional cost. &lt;/p&gt;



&lt;p&gt;They can summarize your emails, respond on your behalf, decide which messages need decisions, automate calendar events, extract information from your documents, and even organize them.&amp;nbsp;&lt;/p&gt;



&lt;p&gt;For a founder or executive at a small or medium-sized business, where needs outpace resources, it can feel like a wish granted just in time. All it asks of you is absolutely everything — access to your inbox, calendar, files, and even confidential business information.&lt;/p&gt;



&lt;p&gt;As much as 69% of firms are already using AI assistants like ChatGPT, Claude, and Grammarly — but 30% are unsure or &lt;a href=&quot;https://proton.me/business/blog/smb-cybersecurity-report&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;don&amp;#8217;t trust AI companies&lt;/a&gt; to safeguard their proprietary business data. &lt;/p&gt;



&lt;p&gt;The trade off isn’t obvious at first. But what SMBs get in efficiency, they pay for in security.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;The price of efficiency &lt;/h2&gt;



&lt;p&gt;When you connect your Gmail, Google Drive, or calendar to a tool such as Perplexity’s Comet, you&amp;#8217;re granting it OAuth permissions — often beyond ‘view’ access. Depending on the scopes requested, the tool may be able to download contacts, control your entire calendar, and even write emails on your behalf.&amp;nbsp;&lt;/p&gt;



&lt;p&gt;These permissions are technically disclosed during the authorization flow, but most users don’t fully evaluate what they mean in practice. Once granted, the tool can access and process sensitive company data at scale.&lt;/p&gt;



&lt;p&gt;The same pattern applies to other AI assistance workflows. Indexing internal knowledge bases, summarizing proprietary documents, or contextualizing company data, they all expand your exposure.&lt;/p&gt;



&lt;p&gt;When you don’t know what access you’ve granted, you can’t accurately assess the risk you’ve introduced.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;How much AI assistants and browsers can see&lt;/h2&gt;



&lt;p&gt;You know AI browsers like Perplexity’s Comet or &lt;a href=&quot;https://thehackernews.com/2025/10/new-chatgpt-atlas-browser-exploit-lets.html&quot;&gt;ChatGPT’s Atlas&lt;/a&gt; can read the page you’re on, summarize it, and rewrite text. But did you know it can act on your behalf? &lt;/p&gt;



&lt;p&gt;Because the efficiency depends on deep integration, the assistant needs visibility into your browsing activity and may request access to connected accounts. In some cases, it can trigger actions rather than simply generate text.&lt;/p&gt;



&lt;p&gt;This is the architecture of AI agents more broadly. They&amp;#8217;re designed to act across connected systems. A &lt;a href=&quot;https://proton.me/blog/ai-agent&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;single compromised or manipulated agent&lt;/a&gt; can move through your email, calendar, files, and credentials in sequence.&lt;/p&gt;



&lt;p&gt;That&amp;#8217;s a consequence of how these tools are built. It creates a surface that researchers are already finding ways to exploit.&lt;/p&gt;



&lt;p&gt;Security researchers have already demonstrated how hidden instructions embedded in web content can manipulate these systems in unintended ways. &lt;/p&gt;



&lt;p&gt;One recent exploit, &amp;#8220;&lt;a href=&quot;https://layerxsecurity.com/blog/cometjacking-how-one-click-can-turn-perplexitys-comet-ai-browser-against-you/&quot;&gt;CometJacking&lt;/a&gt;,&amp;#8221; demonstrated how instructions embedded in URLs could manipulate the AI into accessing personal or company data or executing harmful actions without the user&amp;#8217;s knowledge. &lt;/p&gt;



&lt;p&gt;Vendors respond quickly with patches and safeguards. In this case, Perplexity responded with a four-layer safeguarding approach. But the pattern highlights something more fundamental: These tools are designed to interpret and act. &lt;/p&gt;



&lt;p&gt;Even Perplexity states in their &lt;a href=&quot;https://www.perplexity.ai/hub/legal/privacy-policy&quot;&gt;Privacy Policy&lt;/a&gt;: “No security measures are impenetrable, and we cannot guarantee ‘perfect security’”. The question isn&amp;#8217;t whether a tool is secure now. It&amp;#8217;s whether you’re comfortable with how much access it requires. &lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Where the burden of privacy lies&lt;/h2&gt;



&lt;p&gt;AI vendors emphasize privacy controls and opt-outs. Perplexity&amp;#8217;s Comet Assistant, for instance, assures users that &amp;#8220;Comet Assistant puts you in control&amp;#8221;.&amp;nbsp;&lt;/p&gt;



&lt;p&gt;But those controls assume something incorrectly: that users understand how their data is processed, actively configure the relevant settings, and monitor how policies evolve over time.&amp;nbsp;&lt;/p&gt;



&lt;p&gt;In practice, most don&amp;#8217;t. According to Proton&amp;#8217;s &lt;a href=&quot;https://proton.me/business/blog/smb-cybersecurity-report&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;2026 SMB Cybersecurity Report&lt;/a&gt;, 43% of SMBs say they can&amp;#8217;t independently verify provider privacy, and 35% don&amp;#8217;t understand how providers handle their data at all.&lt;/p&gt;



&lt;p&gt;Some information may be excluded from model training. Other data may be retained to improve personalization. Policies can differ across features and change as products develop. Turning off certain functions may limit the very capabilities that make the tool attractive in the first place.&lt;/p&gt;



&lt;p&gt;In that environment, privacy is no longer a static product promise. It becomes an ongoing operational responsibility.&amp;nbsp;&lt;/p&gt;



&lt;p&gt;The burden shifts to you, the user. You must decide what data can be shared, to monitor policy updates, to configure settings appropriately, and to reassess risk as the product evolves.&lt;/p&gt;



&lt;p&gt;This page collects practical guides and explainers on &lt;a href=&quot;https://proton.me/lumo/ai&quot; type=&quot;link&quot; id=&quot;https://proton.me/lumo/ai&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;AI privacy and security&lt;/a&gt;, so you know exactly what you&amp;#8217;re working with.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Features of a private AI assistant or AI-powered browser&lt;/h2&gt;



&lt;p&gt;Your team should be able to use an AI assistant without concern that every interaction is being stored, profiled, or used to train the next version of the model.&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;&lt;strong&gt;No data logging. By default. &lt;/strong&gt;Your team should be able to use an AI assistant or agent without concern that every interaction is being stored, profiled, or monetized. If a tool builds &amp;#8220;memories&amp;#8221; or &amp;#8220;preferences,&amp;#8221; you should ask: Who controls this data? Is it truly off by default, or is it buried in settings? And if I turn it off, what product capabilities do I lose?&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;No model training on your business information. &lt;/strong&gt;Business documents, partners’ information, reports, or plans should never be used for AI model training. This is not only a fairness concern but also a security matter, as the data can resurface in incidents you cannot control.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Real transparency. &lt;/strong&gt;Transparency builds trust, but only if it’s real. This means that you should be able to understand, at every step, how your data is handled and what principles guide the product. If you need to spend two hours parsing Terms &amp;amp; Conditions that contradict your actual experience with the tool, that&amp;#8217;s not transparency. It’s just a tagline.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Zero-access encryption. &lt;/strong&gt;With zero-access encryption, your data is protected by keys that only you control—not even the provider can read it. This removes the need to trust policies or promises because the architecture makes misuse technically impossible.&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;Most AI tools extract value from the businesses that use them. Your conversations, documents, and files feed model training, audience profiling, and in some cases government data requests — typically without meaningful disclosure or consent. Not Lumo.&lt;/p&gt;



&lt;p&gt;Lumo is the AI assistant built for businesses that refuse afford to hand over their data for convenience. Zero-access encryption, no data logging, no model training on your business information. &lt;/p&gt;



&lt;p&gt;&lt;a href=&quot;https://lumo.proton.me/u/7/&quot; type=&quot;link&quot; id=&quot;https://lumo.proton.me/u/7/&quot;&gt;Try Lumo for free&lt;/a&gt;&lt;/p&gt;
</content:encoded><category>For business</category><category>Lumo AI</category><author>Alanna Alexander</author></item><item><title>Why business data security is a growth issue, not just a tech problem</title><link>https://proton.me/business/blog/business-data-security</link><guid isPermaLink="true">https://proton.me/business/blog/business-data-security</guid><description>Business data security can affect how you find customers, win deals, and scale without stopping to untangle early mistakes. Learn how.</description><pubDate>Mon, 08 Jun 2026 12:27:32 GMT</pubDate><content:encoded>
&lt;p&gt;No business owner wants their company to become the cautionary tale LinkedIn influencers post about. &lt;/p&gt;



&lt;p&gt;But anyone with entrepreneurship experience will know that every part of your business demands attention in the first 100 days. Everything from product development, marketing, fundraising, to hiring is a fire to put out.&lt;/p&gt;



&lt;p&gt;That&amp;#8217;s why business data security becomes an afterthought, only getting attention when something goes so wrong you can&amp;#8217;t ignore it. &lt;/p&gt;



&lt;p&gt;That could be a breach that exposes sensitive client data, a ransomware attack that stops every area of operations, or a compliance failure that only comes to light during a pre-investment security audit.&lt;/p&gt;



&lt;p&gt;Those events aren&amp;#8217;t tech problems. They&amp;#8217;re growth problems that affect whether customers trust you, whether deals close, and whether you can scale without rebuilding everything from scratch. And it all comes down to business data security.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;What is business data security?&lt;/h2&gt;



&lt;p&gt;Business data security is how your company controls what data it holds, where it lives, who can access it, and what happens if something goes wrong. &lt;/p&gt;



&lt;p&gt;In practice, that means choosing the right tools to store and share your business data, deciding policies to govern who has access to what, and setting defaults for how every team handles sensitive data. &lt;/p&gt;



&lt;p&gt;Keep reading to learn why building security into the foundations of your business helps it grow faster. &lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Should business data security be a part of your growth infrastructure? Key factors to consider&lt;/h2&gt;



&lt;p&gt;The way you handle data early determines your ability to grow later. &lt;/p&gt;



&lt;p&gt;It affects three concrete things — whether customers trust you, whether you can win and close enterprise deals, and whether you can scale without stopping to untangle early mistakes.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Trust &lt;/h3&gt;



&lt;p&gt;Security is now &lt;a href=&quot;https://proton.me/business/blog/smb-cybersecurity-report&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;a selling point&lt;/a&gt;. Whether you’re selling to enterprises or consumers, trust is what wins and keeps customers. &lt;/p&gt;



&lt;p&gt;Businesses want clear answers about how you handle data before they sign anything. That transparency builds confidence and assures potential clients their data will remain safe in your hands.&lt;/p&gt;



&lt;p&gt;Consumers want to know their personal data isn&amp;#8217;t being mishandled. A public breach tells them otherwise.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Compliance &lt;/h3&gt;



&lt;p&gt;SOC 2, GDPR, and HIPAA are often prerequisites for enterprise and government contracts. Those certifications determine who you can sell to and how quickly deals close. &lt;/p&gt;



&lt;p&gt;When your security posture is documented and auditable, you spend less time answering due diligence questionnaires and more time closing.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Momentum &lt;/h3&gt;



&lt;p&gt;Early security shortcuts are just points of friction that you&amp;#8217;ve deferred. When enterprise or government contracts ask about data access levels during due diligence, those shortcuts surface as a tangled web of unclear permissions that slow everything down at exactly the wrong moment.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;The risk of patchwork security&lt;/h2&gt;



&lt;p&gt;&lt;a href=&quot;https://proton.me/business/pass/breach-observatory&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Four in five&lt;/a&gt; small businesses have suffered a recent data breach, and a single incident can cost over $1 million. &lt;/p&gt;



&lt;p&gt;These cybersecurity threats are common and expensive. Yet, many startups rely on default security settings from a patchwork of solutions. &lt;/p&gt;



&lt;p&gt;A default browser password vault in place of a dedicated password manager, a free-tier cloud storage account cobbled together with a second when the first runs out of space, and a consumer messaging app the team already has on their phones. Each tool is technically in place, but none are configured to meet your business&amp;#8217;s actual security needs.&lt;/p&gt;



&lt;p&gt;That fragmentation has real consequences. You might see it in the onboarding/offboarding process, when access has to be granted or revoked manually across every tool, leaving dozens of former employee with &lt;a href=&quot;https://proton.me/business/blog/spreadsheet-security-business-survey&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;an active login to your cloud storage&lt;/a&gt;.&lt;/p&gt;



&lt;p&gt;Patchwork security also means no one has a complete picture of who has access to what. Gaps don&amp;#8217;t announce themselves. They hide in the spaces between tools until something goes wrong.&lt;/p&gt;



&lt;p&gt;Establishing secure defaults reveal security gaps. When there&amp;#8217;s a standard for how data is stored, shared, and accessed, anything outside that standard stands out, like unusual access requests or unexpected 2FA requests. Without defaults, nothing looks unusual, so security gaps hide in plain sight.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Where do you start with business data security?&lt;/h2&gt;



&lt;p&gt;It’s impossible to solve every security problem on day one. Instead, build a strong foundation that covers how data moves, where it lives, and who can access it.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Secure your business email&lt;/h3&gt;



&lt;p&gt;Businesses live on email, so make sure you choose an &lt;a href=&quot;https://proton.me/business/mail&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;encrypted email&lt;/a&gt; solution. &lt;a href=&quot;https://proton.me/learn/encryption/types-of-encryption/what-is-end-to-end&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;End-to-end encryption&lt;/a&gt; protects your emails from unauthorized access, rendering their content unreadable to snoops. This is important protection, as unsecured email leaves sensitive communication exposed.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Store data in encrypted cloud storage&lt;/h3&gt;



&lt;p&gt;Your intellectual property, customer data, and financial documents all need secure storage. Choose encrypted &lt;a href=&quot;https://proton.me/business/drive&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;cloud storage&lt;/a&gt; with built-in granular access controls to ensure only the right people can access sensitive data.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Control identity and access&lt;/h3&gt;



&lt;p&gt;Ensure that every team member has individual credentials, not shared accounts, and that they use a &lt;a href=&quot;https://proton.me/business/pass&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;password manager&lt;/a&gt;. This way, you can control access levels to match their roles, so you don&amp;#8217;t have to default to admin permissions for everyone. Equally important, ensure access is completely revoked when an employee leaves.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Make business data security your growth advantage&lt;/h2&gt;



&lt;p&gt;&lt;a href=&quot;https://proton.me/business&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Proton for Business&lt;/a&gt; is the simple way to build a strong security foundation for your business. &lt;/p&gt;



&lt;p&gt;With encrypted &lt;a href=&quot;https://proton.me/business/mail&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;email&lt;/a&gt;, &lt;a href=&quot;https://proton.me/business/drive&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;cloud storage&lt;/a&gt;, &lt;a href=&quot;https://proton.me/business/vpn&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;VPN&lt;/a&gt;, and a &lt;a href=&quot;https://proton.me/business/pass&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;password manager&lt;/a&gt; in one secure, compliance-ready suite. It&amp;#8217;s how over 50,000 businesses have built their security baseline without adding complexity. Get started for free. &lt;/p&gt;



&lt;p&gt;&lt;/p&gt;
</content:encoded><category>For business</category><author>Alanna Alexander</author></item><item><title>Does sharenting put kids at risk?</title><link>https://proton.me/blog/sharenting</link><guid isPermaLink="true">https://proton.me/blog/sharenting</guid><description>Posting pictures of your children online can be dangerous. Find out what sharenting is and why you should think twice before doing it.</description><pubDate>Fri, 05 Jun 2026 15:42:07 GMT</pubDate><content:encoded>
&lt;p&gt;Children face all kinds of threats online, from harassment or blackmail on social media to &lt;a href=&quot;https://proton.me/blog/ed-tech-trackers&quot;&gt;education tools&lt;/a&gt; that surveil them. These harms are caused by bullies, criminals, and Big Tech companies, but one of the biggest threats comes from the unlikeliest source: their parents.&lt;/p&gt;



&lt;p&gt;&amp;#8220;Sharenting&amp;#8221; describes the intersection of our digital and family lives. It&amp;#8217;s natural to want to celebrate your children and share updates about them, but once you share a photo, you lose control of who can access it and what they can do with it — especially if you share it on social media.&lt;/p&gt;



&lt;p&gt;The potential ramifications of sharenting have grown increasingly dire thanks to advancements in AI and photo generation. Previously, the worst outcomes of sharenting could be strangers seeing your photos or Big Tech using them to target you with ads. But today the risks are much higher: It only takes a few images to create believable deepfakes that could be used for identity theft or worse.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;What is sharenting?&lt;/h2&gt;



&lt;p&gt;Sharenting is a portmanteau of &amp;#8220;sharing&amp;#8221; and &amp;#8220;parenting&amp;#8221;. It refers to sharing pictures or videos of your child or other personal information online. When you post a photo or share an update on social media, you&amp;#8217;re doing it because you&amp;#8217;re proud of them and you want to involve your friends and family in your life. But you&amp;#8217;re building a &lt;a href=&quot;https://proton.me/blog/what-is-digital-footprint&quot;&gt;digital footprint&lt;/a&gt; for your child before they can consent, which can have real consequences. Sharenting could look like:&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;Posting pictures of your child and other children at a school event on your Instagram or Snapchat.&lt;/li&gt;



&lt;li&gt;Sharing a picture of your child on your personal website or blog.&lt;/li&gt;



&lt;li&gt;Writing a blog post about your child&amp;#8217;s important milestones, such as moving schools, joining a new club, or becoming a teenager.&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;These are good intentions, but sharing online comes with inherent risks. When you make these decisions for yourself, &lt;em&gt;you&lt;/em&gt; take on the risk. But when you share your children&amp;#8217;s data, whether it&amp;#8217;s their face or personal stories, you&amp;#8217;re making decisions for them that they might not have chosen for themselves and can lead to serious consequences. To understand how sharenting can affect children, we need to understand the risks it poses.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Threats to children online are increasing&lt;/h2&gt;



&lt;p&gt;Unfortunately, the internet is becoming more hostile to children as unregulated services give bad actors access to powerful AI tools. X&amp;#8217;s chatbot Grok has come under fire for allowing users to generate pornographic deepfake images of women and children. A &lt;a href=&quot;https://www.404media.co/x-premium-grok-paywall-images-ai-generator/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;paywall&lt;/a&gt; was put in place after image generation spiked, suggesting that X was more interested in monetizing the problem than fixing it.&lt;/p&gt;



&lt;p&gt;Backlash surged globally: Malaysia and Indonesia temporarily &lt;a href=&quot;https://www.bbc.com/news/articles/cg7y10xm4x2o&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;blocked access&lt;/a&gt; to the platform. In the UK, the privacy watchdog Ofcom &lt;a href=&quot;https://www.theguardian.com/technology/2026/feb/03/uk-privacy-watchdog-opens-inquiry-into-x-over-grok-ai-sexual-deepfakes&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;opened an inquiry&lt;/a&gt; into X over the deepfakes. The cybercrime unit in Paris raided X&amp;#8217;s French office, summoning Elon Musk for questioning.&lt;/p&gt;



&lt;p&gt;Since this backlash began, a class action lawsuit has been launched by four anonymous women against X who allegedly had deepfake nudes generated of them using Grok. xAI has insisted that the plaintiffs be &lt;a href=&quot;https://www.wired.com/story/xai-asks-court-to-strip-alleged-grok-deepfake-nudes-victims-of-anonymity/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;stripped of their anonymity&lt;/a&gt; as there is a &amp;#8220;public interest in their identities&amp;#8221;, despite the very real risks of doxing and harassment. Instead of being protected, the victims of these deepfakes are put on trial.&lt;/p&gt;



&lt;p&gt;What can we do about these hostile platforms? Removing children&amp;#8217;s access to social media is being touted as a popular solution for combating online exploitation. &lt;a href=&quot;https://www.cnbc.com/2026/01/15/australias-social-media-ban-for-teens-how-its-going.html&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Australia&lt;/a&gt; has already banned children under the age of 16 from accessing social media apps, and the &lt;a href=&quot;https://www.bbc.com/news/articles/c5y7d2zx63jo&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;UK&lt;/a&gt; is looking to do the same. This may feel like a solution that protects children, but ultimately children are incredibly adept when it comes to illicitly gaining access to websites and apps. It also doesn&amp;#8217;t prevent bad actors from seeking out contact with children.&lt;/p&gt;



&lt;p&gt;Now that it&amp;#8217;s so easy to misuse pictures and personal data, are we taking the risks of sharenting seriously enough?&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;What are the risks of sharenting?&lt;/h2&gt;



&lt;p&gt;You can&amp;#8217;t control where pictures and information end up after you post them on social media, a blog, or a website. Once you put the data on a third-party platform, a number of bad things can happen:&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Data brokers and Big Tech surveillance&lt;/h3&gt;



&lt;p&gt;The classic risk of online sharing is that anyone can find your data. This is bad enough for adults; it&amp;#8217;s worse for children. Because they&amp;#8217;re still learning how to make the kind of complex judgments that adults can about technology, children are vulnerable to online exploitation. Making accounts online to talk to their friends or research their interests are innocent actions that can lead to data leaks and targeted ads that follow children around the internet. This can even apply to the &lt;a href=&quot;https://proton.me/blog/ed-tech-trackers&quot;&gt;ed tech&lt;/a&gt; they&amp;#8217;re encouraged to use at school.&lt;/p&gt;



&lt;p&gt;Things as commonplace as privacy policies and cookies aren&amp;#8217;t things that children intuitively understand. They may click &amp;#8216;agree&amp;#8217; or &amp;#8216;share&amp;#8217; without understanding the consequences. Just one click can grant hundreds of third parties legitimate interest in their online activity and their data.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Child identity theft&lt;/h3&gt;



&lt;p&gt;Child identity theft has risen as well-meaning parents, relatives, and friends share information about children online. Even details that feel insignificant can be used over time to build a profile of a child and create accounts in their names, phish for further information, or cyberbully them.&lt;/p&gt;



&lt;p&gt;A stranger operating a social media account in your child&amp;#8217;s name can be disturbing, but there are more insidious risks when it comes to personal data. If your child&amp;#8217;s home address or SSN is compromised, criminals could apply for loans, open bank accounts, and even max out credit cards in their name. Giving your child a good start in life means protecting their personal data until they&amp;#8217;re old enough to protect it themselves. As a parent, this means protecting their face, name, address, school, medical information, and any other personal information.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Cyberattacks&lt;/h3&gt;



&lt;p&gt;Just like adults, children can be targeted by &lt;a href=&quot;https://proton.me/blog/what-is-phishing&quot;&gt;phishing scams&lt;/a&gt;, affected by &lt;a href=&quot;https://proton.me/blog/breach-recommendations&quot;&gt;data breaches&lt;/a&gt;, and vulnerable to &lt;a href=&quot;https://proton.me/blog/what-is-social-engineering&quot;&gt;social engineering&lt;/a&gt; without the right education. Taking the time to explain what &lt;a href=&quot;https://proton.me/blog/what-is-data-privacy&quot;&gt;personal data&lt;/a&gt; is and who you should share it with is essential when children begin to use the internet.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Deepfakes and CSAM&lt;/h3&gt;



&lt;p&gt;It only takes a few shared birthday photos to create convincing &lt;a href=&quot;https://www.internetmatters.org/resources/what-is-a-deepfake/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;deepfakes&lt;/a&gt;. Deepfakes are &lt;a href=&quot;https://www.telekom.com/en/media/media-information/archive/sharewithcare-children-s-images-deserve-protection-on-the-net-1048376&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;manipulated images and videos&lt;/a&gt; in which a person&amp;#8217;s likeness is used to make it look like they&amp;#8217;re saying or doing things that never happened. Once created, deepfakes can be circulated on the internet without your or your child&amp;#8217;s consent.The risks of deepfakes range from spreading misinformation to cyberbullying to creating sexually explicit content.&lt;/p&gt;



&lt;p&gt;The Internet Watch Foundation has released &lt;a href=&quot;https://www.iwf.org.uk/media/nadlcb1z/iwf-ai-csam-report_update-public-jul24v13.pdf&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;several reports&lt;/a&gt; identifying the rise of AI-generated child sexual abuse material. Creating this material is possible using image generation tools as well as &amp;#8220;nudify&amp;#8221; apps. These apps take existing pictures of adults or children and use them to digitally create nude images. The legality of nudify apps is questionable, as many countries have intimate abuse image laws in place, but they remain largely accessible online. Many countries and companies are beginning to combat them, with &lt;a href=&quot;https://theconversation.com/australia-set-to-ban-nudify-apps-how-will-it-work-264349&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Australia&lt;/a&gt; aiming to ban them entirely, and &lt;a href=&quot;https://about.fb.com/news/2025/06/taking-action-against-nudify-apps/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Meta&lt;/a&gt; filing a lawsuit against the entity behind a popular nudify app.&lt;/p&gt;



&lt;p&gt;As AI models and generative AI tools become more powerful, it&amp;#8217;s going to become easier to create even more convincing images and videos of children. According to &lt;a href=&quot;https://www.mcafee.com/blogs/internet-security/from-cyberbullying-to-ai-generated-content-mcafees-research-reveals-the-shocking-risks/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;research from McAfee&lt;/a&gt;, 19% of targeted children have faced deepfake and nudify app misuse, with 38% of girls aged 13-15 affected.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Sextortion and blackmail&lt;/h3&gt;



&lt;p&gt;A knock-on effect of the easy creation of deepfake nudes is the potential for sextortion. As the initial deepfakes have already been generated, children may be scared that their parents will punish the. Children can be blackmailed or extorted using deepfakes, and exploited to engage in further acts or conversations.&lt;/p&gt;



&lt;p&gt;It isn&amp;#8217;t just children who can be targeted. The Internet Watch Foundation has warned that cybercriminals are &lt;a href=&quot;https://www.independent.co.uk/tech/security/ai-deepfake-school-blackmail-b2974349.html&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;contacting schools&lt;/a&gt; with deepfaked CSAM of pupils, demanding money to prevent them from being leaked. Schools in the UK have been recommended to blur the faces of pupils wherever possible for safeguarding purposes.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;Cyberbullying&lt;/h3&gt;



&lt;p&gt;Bullying is a phenomena that has evolved significantly as technology has advanced. As children begin to learn about social and physical power, shaped by the people and media around them, they may use technology to target other children. Deepfakes can be used as a form of online harassment amongst students: This particularly affects young girls, but &lt;a href=&quot;https://theportager.com/streetsboro-reports-more-cases-of-sextortion-as-ohio-considers-social-media-regulations/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;all young children&lt;/a&gt; can be targeted and a sense of stigma may prevent them from telling an adult.&lt;/p&gt;



&lt;p&gt;Not only can this cause significant distress to young children, it can impact their future lives negatively. If those deepfakes are uploaded to the internet, they may remain attached to that person&amp;#8217;s digital identity indefinitely. Nudify apps effectively endorse this behavior, making it seem like a fun trick or a prank for children to play on each other.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;How to have a conversation about sharenting&lt;/h2&gt;



&lt;p&gt;You are the best advocate for your child&amp;#8217;s safety, and you are best placed to give your child a healthy relationship with the internet and online sharing. By talking with your children and your friends and/or family, you can help ensure your child avoids having their identity stolen or abused.&lt;/p&gt;



&lt;p&gt;Older children can also be their own advocates. They should talk to their parents if they think too much of their information is being shared.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;With your kids&lt;/h3&gt;



&lt;p&gt;The easiest way to respect your children&amp;#8217;s wishes is to simply ask them what they&amp;#8217;re comfortable with. Until your children are old enough to consent, it&amp;#8217;s best to only share photos using &lt;a href=&quot;https://proton.me/mail&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;encrypted communications&lt;/a&gt; services or &lt;a href=&quot;https://proton.me/drive&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;encrypted drives&lt;/a&gt;.&lt;/p&gt;



&lt;p&gt;Letting your children know they have agency and autonomy helps them create healthy boundaries in both real life and online. It lets them decide what they&amp;#8217;re comfortable letting other people knowing about them —&amp;nbsp;the foundation of privacy. Given that you&amp;#8217;ll likely be the one to introduce your child to the internet, it&amp;#8217;s up to you to show them exactly how much control they have and what the potential risks are.&lt;/p&gt;



&lt;p&gt;The National Crime Agency&amp;#8217;s CEOP Education website has &lt;a href=&quot;https://www.ceopeducation.co.uk/parents/home-activity-worksheets/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;activity worksheets&lt;/a&gt; aimed to help you start conversations about topics including sharing photos, social media, live streaming, and cybersecurity. The topics they recommend discussing with your children about sharing photos are:&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;What does your child share online, and what is OK and isn&amp;#8217;t OK to share&lt;/li&gt;



&lt;li&gt;Who your child shares with, and whether their online accounts public or private&lt;/li&gt;



&lt;li&gt;Understanding privacy settings and exploring the privacy settings for their favorite apps together&lt;/li&gt;



&lt;li&gt;Helping them understand that if they regret sharing an image, they can get help removing it from services such as &lt;a href=&quot;https://www.childline.org.uk/info-advice/bullying-abuse-safety/online-mobile-safety/report-remove/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Report Remove&lt;/a&gt; in the UK or &lt;a href=&quot;https://takeitdown.ncmec.org/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Take It Down&lt;/a&gt; (which is available globally). They can also request that the image be removed from platforms such as &lt;a href=&quot;https://support.google.com/websearch/contact/content_removal_form?sjid=12934627284627589946-EU&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Google&lt;/a&gt;, &lt;a href=&quot;https://www.facebook.com/help/383420348387540/?helpref=related_articles&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Facebook&lt;/a&gt;, &lt;a href=&quot;https://www.facebook.com/help/instagram/150792105063683/&quot;&gt;Instagram&lt;/a&gt;, or &lt;a href=&quot;https://help.snapchat.com/hc/en-us/articles/7012399221652-How-do-I-report-abuse-or-illegal-content-on-Snapchat&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Snapchat&lt;/a&gt;.&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;To help your children learn, you can also play a &lt;a href=&quot;https://www.internetmatters.org/digital-matters/lesson/introduction-to-protecting-personal-information-online/?section=story&amp;amp;user_type=parent&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;digital interactive story&lt;/a&gt; about online sharing with your child, where you&amp;#8217;ll read scenarios and decide which actions the character should take together. When it comes to educating your children as they create their own online accounts, Internet Matters provides extensive parental controls and privacy settings guides for &lt;a href=&quot;https://www.internetmatters.org/parental-controls/social-media/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;social media accounts&lt;/a&gt;. Proton&amp;#8217;s &lt;a href=&quot;https://www.youtube.com/protonprivacy&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;YouTube&lt;/a&gt;, &lt;a href=&quot;https://www.tiktok.com/@privacytok&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Tiktok&lt;/a&gt; and &lt;a href=&quot;https://www.instagram.com/protonprivacy/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;Instagram&lt;/a&gt; channels also post short educational videos about internet privacy, news stories, and more.&lt;/p&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;With friends and family&lt;/h3&gt;



&lt;p&gt;Having a conversation about sharing images or information about your children can be complicated. Not all parents feel the same way about their children&amp;#8217;s digital lives, and they may be unaware of the risks. If you&amp;#8217;ve decided you&amp;#8217;d like to ask a friend or a family member not to share information about your child online, you can send a request via text message or email, or you could have a one-on-one conversation with them. Consider using one of the following points as a jumping-off point for your own conversations:&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;We&amp;#8217;ve decided not to upload any pictures showing our child&amp;#8217;s face to protect their privacy. We&amp;#8217;ll be using emojis to obscure their face until they&amp;#8217;re old enough to decide if they&amp;#8217;d like to show their face on social media, and we&amp;#8217;re asking our friends and family to do the same.&lt;/li&gt;



&lt;li&gt;Our child has requested that we ask them before anyone posts a picture of them online. We will be respecting their boundaries and ask that you do the same in the future.&lt;/li&gt;



&lt;li&gt;We&amp;#8217;re concerned about some of the risks of posting information about our child online, and we think it would be helpful to have a conversation about it so that you can make that decision for your child too.&lt;/li&gt;
&lt;/ul&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;With your parents&lt;/h3&gt;



&lt;p&gt;If you&amp;#8217;re a child and you&amp;#8217;re upset by what your parents post about you online, you have a right to ask them to stop. Whether it&amp;#8217;s a picture you don&amp;#8217;t like or information you&amp;#8217;d prefer remain private, your face and your identity belong solely to you. Your parents are your caretakers, and they may think they&amp;#8217;re making harmless decisions.&lt;/p&gt;



&lt;p&gt;This is a very common experience for children in today&amp;#8217;s online world. Apple Martin, 14-year-old daughter of Gwyneth Paltrow, criticized her mother for not respecting her boundaries after Paltrow &lt;a href=&quot;https://www.bbc.com/news/world-47722427&quot;&gt;posted a photo&lt;/a&gt; of them skiing together on her Instagram. Martin replied on the post, &amp;#8220;Mom we have discussed this. You may not post anything without my consent.&amp;#8221; Any child should have the right to decide how and if they appear on the internet. The UN Convention on the Rights of the Child even specifies children&amp;#8217;s &lt;a href=&quot;https://www.ohchr.org/en/instruments-mechanisms/instruments/convention-rights-child&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;right to express themselves&lt;/a&gt;, with their views &amp;#8220;being given due weight in accordance with the age and maturity of the child&amp;#8221;.&lt;/p&gt;



&lt;p&gt;If you don&amp;#8217;t like the way your parents are sharing information about or pictures of you, you can explain this to them using some of the following points:&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;I&amp;#8217;m worried about the &lt;a href=&quot;https://proton.me/blog/what-is-digital-footprint&quot;&gt;digital footprint&lt;/a&gt; you&amp;#8217;re creating for me. When I&amp;#8217;m an adult, the things you post about me will follow me, and I want to have a choice about what the internet knows about me.&lt;/li&gt;



&lt;li&gt;I don&amp;#8217;t like that you share information about me without asking me first. Can we have a conversation about what is and isn&amp;#8217;t OK to tell people about me?&lt;/li&gt;



&lt;li&gt;I find the things you share about me embarrassing, and you need to respect my privacy. My life belongs to me, and I want to decide who knows what about me.&lt;/li&gt;
&lt;/ul&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;How to share responsibly&lt;/h2&gt;



&lt;p&gt;Fortunately, there are steps you can take to keep friends and family members updated about your family without putting your kids&amp;#8217; privacy at risk. Here&amp;#8217;s a quick recap of how you can protect your child&amp;#8217;s privacy and share updates with friends and family.&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;&lt;strong&gt;Ask first.&lt;/strong&gt; If your child can consent, let them.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Limit public sharing.&lt;/strong&gt; Use encrypted services over public platforms.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Talk to your circle.&lt;/strong&gt; Set boundaries with friends and family about what’s OK to post.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Identify the risks.&lt;/strong&gt; Explain that theft and deepfake exploitation are real threats.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Educate early.&lt;/strong&gt; Teach kids what personal data is — and how to protect it.&lt;/li&gt;
&lt;/ul&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Share safely&lt;/h2&gt;



&lt;p&gt;Instead of relying on social media to share updates about your children, consider moving to an encrypted drive shared with friends and family whom you trust. You can talk with your children about what you share, and effectively create a &lt;a href=&quot;https://proton.me/drive&quot;&gt;secure, digital photo album&lt;/a&gt; that your child is happy to be a part of. That way, when it comes time for your child to become an online citizen, they&amp;#8217;re starting with the privacy and the education they need to make the most of their digital world. Proton Drive can help you create that secure place for your precious memories without compromising your child&amp;#8217;s online safety or their future digital footprint.&lt;/p&gt;



&lt;p&gt;As Stacey B. Steinberg, a prominent online voice about the legal and ethical concerns surrounding sharenting, puts it in &lt;a href=&quot;https://scholarlycommons.law.emory.edu/elj/vol66/iss4/2/&quot; target=&quot;_blank&quot; rel=&quot;noreferrer noopener&quot;&gt;her article&lt;/a&gt;: &amp;#8220;By approaching a child’s right to online privacy in a child-centered manner, future generations will be able to enter adulthood unburdened by others’ decisions and free to define themselves on their own terms.&amp;#8221; Privacy is for everyone, and that must include children.&lt;/p&gt;
</content:encoded><category>Privacy guides</category><author>Kate Menzies</author></item><item><title>This week tells you everything about Europe’s digital sovereignty transition</title><link>https://proton.me/business/blog/europe-us-tech-dependence-qwant</link><guid isPermaLink="true">https://proton.me/business/blog/europe-us-tech-dependence-qwant</guid><description>European Parliament just dropped Google Search. It&apos;s a start. Here&apos;s why your business can&apos;t afford to wait for Europe&apos;s institutions to catch up.</description><pubDate>Fri, 05 Jun 2026 14:48:01 GMT</pubDate><content:encoded>
&lt;p&gt;Two decisions from the EU this week illustrate the state of digital sovereignty in Europe.&lt;/p&gt;



&lt;p&gt;Facing existential &lt;a href=&quot;https://proton.me/blog/nordic-alternative-us-tech-survey&quot;&gt;threats from the US&lt;/a&gt; and a crippling &lt;a href=&quot;https://proton.me/business/europe-tech-watch&quot;&gt;reliance on foreign tech providers&lt;/a&gt;, the European Commission announced an &lt;a href=&quot;https://digital-strategy.ec.europa.eu/en/policies/eu-tech-sovereignty&quot;&gt;ambitious legislative package on tech sovereignty&lt;/a&gt;. The commission wants the EU to compete alongside the US and China on chips, data centers, and AI, building local resilience and infusing the latest IT revolution with European values like data protection. The plan is expected to &lt;a href=&quot;https://www.europarl.europa.eu/RegData/etudes/BRIE/2026/785742/EPRS_BRI(2026)785742_EN.pdf&quot;&gt;mobilize hundreds of billions of euros&lt;/a&gt; for local industry.&lt;/p&gt;



&lt;p&gt;The next day, European Parliament took its own step. They &lt;a href=&quot;https://www.politico.eu/article/european-parliament-ditches-google-for-french-search-engine/&quot;&gt;updated the default search engine&lt;/a&gt; on their browsers, from Google to &lt;a href=&quot;https://www.qwant.com/?l=en&quot;&gt;Qwant&lt;/a&gt;, a privacy-first provider in France.&lt;/p&gt;



&lt;p&gt;The gap between the European government&amp;#8217;s bold ambitions, through a serious legislative intervention, and its own baby-step implementation within one of its branches shows how difficult this kind of transition can be. They will have to migrate massive amounts of data and retool thousands of employees and departments. And they will need to encourage European businesses to do the same. (European tech companies often simplify migration, with tools like &lt;a href=&quot;https://proton.me/easyswitch&quot;&gt;Proton&amp;#8217;s Easy Switch&lt;/a&gt;.)&lt;/p&gt;



&lt;p&gt;By switching to Qwant, the EU is leading by example. Small adjustments can have a large impact — in this case, lawmakers will no longer feed all their search queries into Google&amp;#8217;s surveillance machine.&lt;/p&gt;



&lt;p&gt;But they will need to go much, much further.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Europe&amp;#8217;s dependence on US tech is bigger than search&lt;/h2&gt;



&lt;p&gt;The EU&amp;#8217;s reliance on Big Tech could become an existential threat. Proton research shows businesses in Europe have a crippling &lt;a href=&quot;https://proton.me/business/europe-tech-watch&quot;&gt;dependence on US-based tech&lt;/a&gt;, including cloud infrastructure, communications, productivity software, and AI.&lt;/p&gt;



&lt;p&gt;EU-US relations are under more strain than they’ve been in decades. New &lt;a href=&quot;https://www.europarl.europa.eu/topics/en/article/20250210STO26801/eu-us-tariffs-tensions-trade-deal-and-what-could-change&quot;&gt;tariffs&lt;/a&gt;, &lt;a href=&quot;https://time.com/article/2026/04/01/trump-considering-pulling-us-out-of-nato-iran-war-legal-options/&quot;&gt;NATO escalations&lt;/a&gt;, and &lt;a href=&quot;https://fortune.com/2025/12/17/trump-administration-threatens-eu-tech-regulations-retaliation-dma-dsa-digital-markets-services-act/&quot;&gt;open threats of retaliation from Washington&lt;/a&gt; have been pulling apart once-close allies. Digital infrastructure sits squarely in the middle of that tension.&lt;/p&gt;



&lt;p&gt;More than &lt;a href=&quot;https://proton.me/business/europe-tech-watch&quot;&gt;two-thirds of businesses&lt;/a&gt; in Spain, France, and the UK run on US tech. The top three cloud providers — AWS, Microsoft Azure, and Google Cloud — are all American and together command an estimated &lt;a href=&quot;https://www.cnbc.com/2026/02/13/four-charts-europes-reliance-us-digital-infrastructure.html&quot;&gt;85% of the European cloud market&lt;/a&gt;. The Commission&amp;#8217;s own tech sovereignty package puts a number on it: Over 80% of the EU&amp;#8217;s key digital products, services, infrastructure, and intellectual property &lt;a href=&quot;https://cerre.eu/wp-content/uploads/2022/12/Digital-Industrial-Policy-for-Europe.pdf&quot;&gt;comes from outside the bloc&lt;/a&gt;. US leadership &lt;a href=&quot;https://foreignpolicy.com/2026/02/27/europe-technology-digital-sovereignty-eu-decoupling-us/&quot;&gt;knows how to leverage&lt;/a&gt; that structural vulnerability.&lt;/p&gt;



&lt;p&gt;European leaders are taking note. Belgium’s director of the Centre for Cybersecurity, &lt;a href=&quot;https://www.ft.com/content/854fcad0-0d39-438b-975b-adf9d8b89827&quot;&gt;Miguel De Bruycker&lt;/a&gt;, has stated that “Europe has lost the internet” — the continent’s digital infrastructure is so deeply embedded with American platforms that keeping data fully within European borders is, right now, effectively impossible. &lt;a href=&quot;https://www.theregister.com/software/2026/02/04/mep-the-eu-runs-on-microsoft-uncle-sam-cou%20ld-turn-it-off/4192943&quot;&gt;Finnish MEP Aura Salla&lt;/a&gt; put it more starkly: “The US could turn us off in an hour.” France has already announced it will &lt;a href=&quot;https://lasuite.numerique.gouv.fr/&quot;&gt;roll out LaSuite&lt;/a&gt;, a sovereign digital ecosystem, to replace Zoom and Microsoft Teams across all government departments by 2027.&lt;/p&gt;



&lt;p&gt;Consumers feel the reality of this dependence too. More than &lt;a href=&quot;https://proton.me/blog/european-alternative-us-tech-survey&quot;&gt;8 out of 10 people&lt;/a&gt; in the UK, Germany, and France believe their countries have become too reliant on US tech companies, according to a survey of 3,000 people across the three countries. Following &lt;a href=&quot;https://www.theguardian.com/business/2026/jan/21/davos-2026-trump-greenland-rules-out-force-part-north-america&quot;&gt;Trump’s threats to annex Greenland&lt;/a&gt;, signups for privacy-first services from Proton alone &lt;a href=&quot;https://proton.me/blog/european-alternative-us-tech-survey&quot;&gt;surged nearly 80%&lt;/a&gt; across Nordic countries — with Denmark alone exceeding 100% growth. The appetite for alternatives is real, and it’s accelerating.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;What&amp;#8217;s at stake for European businesses&lt;/h2&gt;



&lt;p&gt;When the US imposed sanctions on the International Criminal Court, the chief prosecutor &lt;a href=&quot;https://www.heise.de/en/news/Criminal-Court-Microsoft-s-email-block-a-wake-up-call-for-digital%20-sovereignty-10387383.html&quot;&gt;lost access to his Microsoft inbox overnight&lt;/a&gt; and had to migrate to alternative services just to keep working. Other ICC officials &lt;a href=&quot;https://www.justiceinfo.net/en/156847-living-with-us-sanctions-means-living-in-constant-uncertainty.html&quot;&gt;similarly lost access&lt;/a&gt; to PayPal and Apple services and had US-based assets frozen without warning. US tech companies apparently felt compelled to comply immediately with executive orders against perceived adversaries in Europe.&lt;/p&gt;



&lt;p&gt;The question is: Will it stop there?&lt;/p&gt;



&lt;p&gt;If you&amp;#8217;re a business leader, geopolitical instability is now an operational risk that leaves your email, your files, your communications, and your cloud infrastructure exposed. If they&amp;#8217;re running on US platforms, they&amp;#8217;re subject to US law, US political decisions, and US corporate obligations to the US government.&amp;nbsp;&lt;/p&gt;



&lt;p&gt;Beyond geopolitics, the structural risks are compounding. Because so much of the world’s infrastructure runs on a handful of US platforms, those platforms have become single points of failure.&lt;/p&gt;



&lt;p&gt;AWS, Microsoft Azure, and Google Cloud together serve the vast majority of Europe’s cloud market — which means a single outage or configuration error doesn’t just affect one company. It takes down entire ecosystems of businesses at once. This has happened repeatedly: A major &lt;a href=&quot;https://www.reuters.com/business/retail-consumer/amazons-cloud-unit-reports-outage-several-websites-down-2025-10-20/&quot;&gt;AWS outage in late 2025&lt;/a&gt; crashed apps across industries; nine days later, &lt;a href=&quot;https://www.cnbc.com/2025/10/29/microsoft-hit-with-azure-365-outage-ahead-of-quarterly-earnings.html&quot;&gt;an Azure outage&lt;/a&gt; knocked out Outlook, Teams, and dozens of enterprise services for eight hours straight.&lt;/p&gt;



&lt;p&gt;Then there&amp;#8217;s the problem of your data being exposed. The US demands more data from Big Tech than any other country in the world — more than Germany, France, and the UK. The number of accounts shared by Google, Apple, and Meta with US authorities has increased by &lt;a href=&quot;https://proton.me/blog/big-tech-data-requests-surge&quot;&gt;over 500% since 2014&lt;/a&gt;.&lt;/p&gt;



&lt;p&gt;Under the CLOUD Act, US authorities can demand your business data even if you’re based in Europe, potentially putting you in direct conflict with GDPR. In April 2026, the EU fined Google, Meta, and other US tech companies a combined &lt;a href=&quot;https://www.cnbc.com/2026/04/10/google-meta-big-tech-6-billion-euros-eu-fine.html&quot;&gt;€6 billion for a range of violations&lt;/a&gt;. The US government’s response was not to encourage compliance — it was to threaten retaliation.&lt;/p&gt;



&lt;p&gt;For European businesses that can’t absorb GDPR fines or afford service disruptions, dependence on US tech is a live compliance risk, a geopolitical exposure, and a structural vulnerability all at once.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;How to start de-coupling from Big Tech&lt;/h2&gt;



&lt;p&gt;To varying degrees, the European Commission&amp;#8217;s tech sovereignty package and parliament&amp;#8217;s move to Qwant are signs that Europe&amp;#8217;s institutions are waking up and trying to act. For businesses, there&amp;#8217;s no reason to wait — you can take action to get ahead of the risks right now.&lt;/p&gt;



&lt;p&gt;Steps you can take are simple and practical. And most US services have a market-ready &lt;a href=&quot;https://proton.me/learn/european-alternatives&quot;&gt;European alternative&lt;/a&gt;. Here&amp;#8217;s where to start:&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;&lt;strong&gt;Audit your stack.&lt;/strong&gt; List every third-party tool your business uses and flag which are US-headquartered.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Identify your critical dependencies.&lt;/strong&gt; Which tools, if suddenly unavailable, would stop your business from operating? (This should already be part of &lt;a href=&quot;https://proton.me/business/business-continuity&quot;&gt;business continuity&lt;/a&gt; planning.)&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Check your data exposure.&lt;/strong&gt; Understand where your business data is stored, who can access it, and under what &lt;a href=&quot;https://proton.me/blog/switzerland&quot;&gt;legal jurisdiction&lt;/a&gt;.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Research &lt;/strong&gt;&lt;a href=&quot;https://proton.me/learn/european-alternatives&quot;&gt;&lt;strong&gt;European alternatives&lt;/strong&gt;&lt;/a&gt;&lt;strong&gt;.&lt;/strong&gt; For each critical tool, find out whether a privacy-first, non-US equivalent exists and start testing it.&lt;/li&gt;



&lt;li&gt;&lt;strong&gt;Start migrating where it matters most.&lt;/strong&gt; You don&amp;#8217;t need to replace everything at once — prioritize the tools that carry the highest risk and move.&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;Europe hasn&amp;#8217;t lost the internet. But it might if the only thing that changes are search defaults.&lt;/p&gt;
</content:encoded><category>For business</category><author>Ben Wolford</author></item><item><title>Proton Drive uploads are up to 4x faster with our new cryptographic update</title><link>https://proton.me/blog/drive-cryptography-update</link><guid isPermaLink="true">https://proton.me/blog/drive-cryptography-update</guid><description>Proton Drive’s cryptography update brings up to 4x faster file encryption and decryption while keeping end-to-end encryption at its core.</description><pubDate>Thu, 04 Jun 2026 11:53:30 GMT</pubDate><content:encoded>
&lt;p&gt;&lt;a href=&quot;https://proton.me/drive/security&quot;&gt;End-to-end encryption&lt;/a&gt; is at the core of Proton Drive. It&amp;#8217;s what keeps your files private, so only you and the people you choose can access them — not even us. Because every file operation is protected this way in our &lt;a href=&quot;https://proton.me/drive/download&quot;&gt;cloud storage apps&lt;/a&gt;, cryptographic performance has a direct impact on how fast uploads and downloads feel.&lt;/p&gt;



&lt;p&gt;After our &lt;a href=&quot;https://proton.me/blog/drive-sdk-january-2026&quot;&gt;previous SDK performance improvements&lt;/a&gt; across uploads and downloads, this latest update builds on that work by making Proton Drive’s core encryption layer even more efficient.&lt;/p&gt;



&lt;p&gt;Proton Drive uses the &lt;a href=&quot;https://proton.me/blog/what-is-pgp-encryption&quot;&gt;OpenPGP&lt;/a&gt; standard to encrypt file contents, and we&amp;#8217;ve now adopted a cryptographic advance introduced in an &lt;a href=&quot;https://proton.me/blog/openpgp-crypto-refresh&quot;&gt;update to the standard&lt;/a&gt;. A big part of building the &lt;a href=&quot;https://proton.me/blog/drive-sdk-may-2026&quot;&gt;SDK&lt;/a&gt; throughout this year has been moving Drive’s file operations onto a shared foundation, making the apps faster and smoother across all platforms. The result is an up to &lt;strong&gt;4x boost in performance for file uploads&lt;/strong&gt;. It also lays the groundwork for the next generation of Drive features.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;Performance impact&lt;/h2&gt;



&lt;p&gt;&lt;a href=&quot;https://proton.me/learn/encryption&quot;&gt;Encryption&lt;/a&gt; has a major impact on how smooth the app feels during everyday use, so cutting that cost by up to 4x makes file uploads feel much faster, especially on the devices where performance matters most:&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;On mobile, our benchmarks show encryption of a 4MB file that used to take &lt;strong&gt;97ms now takes 32ms&lt;/strong&gt;.&lt;/li&gt;



&lt;li&gt;On more powerful processors, the same operation that used to take &lt;strong&gt;12ms now takes 3ms&lt;/strong&gt;.&lt;/li&gt;
&lt;/ul&gt;



&lt;p&gt;Encrypting an HD movie or 1,000 high-resolution photos used to take your phone about a minute and a half, or a fast desktop around 12 seconds. With this update, the same work finishes in about 30 seconds on mobile and around 3 seconds on a desktop.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;How Proton Drive become faster&lt;/h2&gt;



&lt;p&gt;The structure that Proton Drive uses is a file &lt;em&gt;node&lt;/em&gt;, which can have many &lt;em&gt;revisions&lt;/em&gt;, each representing a version of the file. The contents are then chunked into &lt;em&gt;blocks&lt;/em&gt;. The node contains cryptographic material which is used to encrypt the blocks. This cryptographic material on the file node consists of the &lt;em&gt;node key&lt;/em&gt; (a locked PGP secret key) and a &lt;em&gt;content key packet&lt;/em&gt; (a PKESK encrypted with the node key).&lt;/p&gt;


&lt;div class=&quot;wp-block-image&quot;&gt;
&lt;figure class=&quot;aligncenter size-full&quot;&gt;&lt;img width=&quot;2400&quot; height=&quot;1912&quot; loading=&quot;lazy&quot; decoding=&quot;async&quot; src=&quot;https://res.cloudinary.com/dbulfrlrz/images/w_2400,h_1912,c_scale/f_auto,q_auto/v1780404330/wp-pme/proton-drive-crypto-update/proton-drive-crypto-update.webp?_i=AA&quot; alt=&quot;A diagram explaining the Proton Drive cryptographic update&quot; class=&quot;wp-post-149173 wp-image-149174&quot; data-format=&quot;webp&quot; data-transformations=&quot;f_auto,q_auto&quot; data-filesize=&quot;308 KB&quot; data-optsize=&quot;74 KB&quot; data-optformat=&quot;image/webp&quot; data-percent=&quot;76&quot; data-version=&quot;1780404330&quot; data-seo=&quot;1&quot; srcset=&quot;https://res.cloudinary.com/dbulfrlrz/images/f_auto,q_auto/v1780404330/wp-pme/proton-drive-crypto-update/proton-drive-crypto-update.webp?_i=AA 2400w, https://res.cloudinary.com/dbulfrlrz/images/w_300,h_239,c_scale/f_auto,q_auto/v1780404330/wp-pme/proton-drive-crypto-update/proton-drive-crypto-update.webp?_i=AA 300w, https://res.cloudinary.com/dbulfrlrz/images/w_1024,h_816,c_scale/f_auto,q_auto/v1780404330/wp-pme/proton-drive-crypto-update/proton-drive-crypto-update.webp?_i=AA 1024w, https://res.cloudinary.com/dbulfrlrz/images/w_768,h_612,c_scale/f_auto,q_auto/v1780404330/wp-pme/proton-drive-crypto-update/proton-drive-crypto-update.webp?_i=AA 768w, https://res.cloudinary.com/dbulfrlrz/images/w_1536,h_1224,c_scale/f_auto,q_auto/v1780404330/wp-pme/proton-drive-crypto-update/proton-drive-crypto-update.webp?_i=AA 1536w, https://res.cloudinary.com/dbulfrlrz/images/w_2048,h_1632,c_scale/f_auto,q_auto/v1780404330/wp-pme/proton-drive-crypto-update/proton-drive-crypto-update.webp?_i=AA 2048w, https://res.cloudinary.com/dbulfrlrz/images/w_1568,h_1249,c_scale/f_auto,q_auto/v1780404330/wp-pme/proton-drive-crypto-update/proton-drive-crypto-update.webp?_i=AA 1568w&quot; sizes=&quot;auto, (max-width: 2400px) 100vw, 2400px&quot; /&gt;&lt;/figure&gt;
&lt;/div&gt;


&lt;p&gt;The PGP messages that Proton Drive uses for file contents consist of two packets:&lt;/p&gt;



&lt;ul class=&quot;wp-block-list&quot;&gt;
&lt;li&gt;A public key encrypted session key (PKESK): This is the node’s content key packet, shared for all blocks.&lt;/li&gt;



&lt;li&gt;A symmetrically encrypted integrity protected data packet (SEIPD): This is the encrypted block contents.&lt;/li&gt;
&lt;/ul&gt;



&lt;h3 class=&quot;wp-block-heading&quot;&gt;The new encryption scheme&lt;/h3&gt;



&lt;p&gt;Before this cryptography update, uploaded files used a v3 PKESK and a v1 SEIPD. Now, the encryption algorithm requires a &lt;strong&gt;v6 PKESK and a v2 SEIPD&lt;/strong&gt;. The symmetric encryption used for content is &lt;a href=&quot;https://proton.me/learn/encryption/types-of-encryption/aes-encryption&quot;&gt;AES-GCM&lt;/a&gt;, which makes full use of hardware encryption on most modern devices.&lt;/p&gt;



&lt;p&gt;Because the session key is shared between revisions when files are updated, &lt;strong&gt;all revisions on a file must match the encryption scheme used by the first one&lt;/strong&gt;. This means clients must be updated to take the PKESK version into account when making a change to a file and uploading a new revision. Clients built on the Proton Drive SDK will handle this automatically, as the information is carried in the session key. The key is generated &lt;a href=&quot;https://github.com/ProtonDriveApps/sdk/blob/a0f3c02231758aba040b015f4ce248e329b0db96/js/sdk/src/crypto/driveCrypto.ts#L127&quot;&gt;here&lt;/a&gt; and used when &lt;a href=&quot;https://github.com/ProtonDriveApps/sdk/blob/a0f3c02231758aba040b015f4ce248e329b0db96/js/sdk/src/crypto/driveCrypto.ts#L723&quot;&gt;encrypting the blocks&lt;/a&gt;.&lt;/p&gt;



&lt;p&gt;To avoid issues with decryption later, revisions submitted with the wrong version will be rejected. This means that clients which don’t support the feature will not be able to update files uploaded after this change comes into effect. Make sure to update your Proton Drive clients to get all the performance benefits.&lt;/p&gt;



&lt;h2 class=&quot;wp-block-heading&quot;&gt;What&amp;#8217;s next&lt;/h2&gt;



&lt;p&gt;This is an big step in evolving Proton Drive’s shared core model toward more performant, more capable &lt;a href=&quot;https://proton.me/drive/&quot;&gt;cloud storage&lt;/a&gt; protected by &lt;a href=&quot;https://proton.me/learn/encryption/types-of-encryption/what-is-end-to-end&quot;&gt;end-to-end encryption&lt;/a&gt;. The SDK gives every Drive client a shared cryptographic core, making changes of this scope possible — and helping us move faster on what comes next. Stay tuned for more improvements this year.&lt;/p&gt;



&lt;p&gt;&lt;/p&gt;



&lt;p&gt;Thank you for your continued support,&lt;/p&gt;



&lt;p&gt;The Proton Drive engineering team&lt;/p&gt;
</content:encoded><category>Product updates</category><category>Proton Drive</category><author>Jonathan Villemaire-Krajden</author></item></channel></rss>