End-to-End Encrypted Mail & Documents.
Zero Compromise.
One Password.

AurionMail Suite delivers a seamless Proton-like experience on a 100% open-source stack, orchestrating CryptPad and JMAP email into a unified workflow.

OpenPGP CryptPad Bulwark Webmail Stalwart JMAP Ory Hydra

Why Choose AurionMail Suite?

Bridge the gap between closed commercial clouds and fragmented self-hosted alternatives.

Feature Proton Suite Nextcloud + Mail Standard CryptPad AurionMail Suite
100% Open Source & Self-Hosted Proprietary Backend Yes Yes Yes
E2EE Email & Documents Yes Complex / Plugins N/A for email Yes
Unified Single Password Yes Fragmented / Manual PGP Fragmented Yes
Open Standards (OpenPGP, JMAP) Limited Yes N/A for email Yes

Key Suite Features

Designed from the ground up for strict privacy, ease of use, and self-hosted control.

Single Password Encryption

Authenticate once per session. Your master password derives client-side keys to decrypt both your emails and CryptPad documents simultaneously.

Unified Logout Routines

Logging out from either Webmail or CryptPad instantly clears state and logs you out across all apps and active sessions globally.

Key Synchronization

Seamlessly sync PGP and document encryption keys across authorized user devices without compromising Zero-Knowledge architecture.

Account Provisioning

Sysadmins can provision LDAP accounts as they usually do. Users initialize their master password safely via /init.

Modern Refreshed UI

CryptPad has been visually overhauled to deliver a sleek, modern, cohesive design theme across the entire suite.

Roadmap

Emergency Account Safeguards

Upcoming features include dynamic emergency URLs for instant account hold or complete self-destruction upon compromise.

Suite Interface

Explore the clean, unified interface across email and document workspace.

SSO Login sso.domain/login
Login Screenshot

Single Sign-On & Client-Side Key Derivation

Webmail Client mail.domain
Mails Screenshot

Bulwark Webmail with Seamless OpenPGP

CryptPad Drive drive.domain
CryptPad Screenshot

Refreshed Modern CryptPad Integration

Aurion Key Manager plugin/keys
Keys Screenshot

OpenPGP Key Management & Password Sync

Settings & Security settings
Settings Screenshot

CryptPad & Email Preferences

Session Control logout
Logout Screenshot

Clean Session Teardown & Purge

Modular Architecture

Explore the sub-modules comprising the AurionMail ecosystem.

Security Model

Zero-Knowledge & Ephemeral Secret Sharing

Secrets are kept strictly in client RAM using Argon2id and HKDF derivation. Cross-origin secret transfers use non-extractable AES-GCM keys with server-side ephemeral RAM storage (5-minute max TTL with Burn-on-Read guarantees).

Argon2id Client-side hashing
100% RAM Unencryted Aurion data nerver touch your disk
AES-GCM 256 In-memory wrapping