Plaintext stops here
Messages must use OpenPGP-compatible encryption, including GPG, before they can reach your private inbox. Unencrypted mail is declined at the gateway.
Onion Email puts a strict privacy layer in front of your inbox. It accepts OpenPGP/GPG-encrypted mail, declines plaintext, and keeps your real destination address out of public view.
OpenPGP/GPG required · Core ID optional · trusted-service exceptions supported
A quieter, safer inbox
Privacy policy is enforced at the email gateway—not left as another setting for the recipient to remember.
Messages must use OpenPGP-compatible encryption, including GPG, before they can reach your private inbox. Unencrypted mail is declined at the gateway.
Publish an Onion Email address while keeping the destination mailbox behind it undisclosed.
A sender may attach a Core ID for decentralized identity context. It is optional, and validated when present.
How it works
Onion Email is a routing layer, so you can keep using the mailbox you already trust.
Find a recipient’s public keyUse your @onion.email address publicly instead of exposing your everyday mailbox.
The message is protected with OpenPGP/GPG before it leaves the sender’s device.
Encrypted messages continue. Plaintext is rejected. Approved service senders may bypass the encryption rule.
Your private destination receives the original accepted message through authenticated email routing.
Clear rules, no mystery
Messages that do not meet the recipient’s policy are declined during processing. Approved transactional senders can be allowlisted for account verification and service notices.
Core ID adds identity context when supplied, but it is not required to send encrypted mail.
Read the rejection codesStart a private conversation
Use our public key and see the Onion Email gateway in action.