Tuta is a German E2E-encrypted email service that genuinely can't read your emails, stores all data in ISO 27001-certified German data centres, uses no cookies and no third-party analytics, and has a policy short enough to actually read — the main caveats are that some metadata (sender/recipient addresses, timestamps) is stored unencrypted, and campaign tracking via hashed connection data is present.
No known public data breaches
Tuta does not appear in the Have I Been Pwned database of publicly disclosed data breaches.
See all Email provider privacy grades →
Display Tuta's privacy grade on your own site. The badge links back to this analysis page.
<iframe src="https://privacy-decoded.com/badge/tuta" width="240" height="72" frameborder="0" scrolling="no" title="Tuta Privacy Grade — Privacy Decoded" ></iframe>