{
  "slug": "cypht",
  "category": "webmail",
  "name": "Cypht",
  "description": "Self-hosted, open-source webmail that combines several IMAP, JMAP and SMTP accounts, plus feeds, in one interface, built from optional modules.",
  "website": "https://www.cypht.org",
  "source": "https://github.com/cypht-org/cypht",
  "license": "LGPL-2.1",
  "platforms": [
    "web"
  ],
  "jurisdiction": null,
  "pick": false,
  "pick_reason": null,
  "disclosure": null,
  "grade": "B",
  "score": 84,
  "coverage": 100,
  "summary": "Cypht scores 84 out of 100 (grade B) on the webmail criteria. It meets 7 of 9 criteria: open source, no trackers or telemetry, no ads or data sales, connects directly, blocks remote content, works with any provider and self-hostable. It partly meets OpenPGP support. It does not meet independent audit.",
  "url": "https://privacyratings.com/webmail/cypht/",
  "markdown": "https://privacyratings.com/webmail/cypht/index.md",
  "answers": {
    "open_source": {
      "title": "Open source",
      "weight": 3,
      "answer": "yes",
      "evidence": "https://github.com/cypht-org/cypht/blob/master/LICENSE",
      "note": "LGPL-2.1."
    },
    "no_trackers": {
      "title": "No trackers or telemetry",
      "weight": 3,
      "answer": "yes",
      "evidence": "https://github.com/cypht-org/cypht",
      "note": "No telemetry or analytics in the source code. Error reporting to a GlitchTip server runs only when the administrator configures one."
    },
    "no_ads": {
      "title": "No ads or data sales",
      "weight": 2,
      "answer": "yes",
      "evidence": "https://github.com/cypht-org/cypht",
      "note": "Free open-source software with no ads."
    },
    "independent_audit": {
      "title": "Independent audit",
      "weight": 2,
      "answer": "no",
      "evidence": null,
      "note": "No independent audit is published."
    },
    "transparency_report": {
      "title": "Transparency report",
      "weight": 2,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "user_notice": {
      "title": "Tells users about requests",
      "weight": 1,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "tls": {
      "title": "TLS configuration",
      "weight": 2,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "security_headers": {
      "title": "Security headers",
      "weight": 1,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "web_standards": {
      "title": "Modern web standards",
      "weight": 1,
      "answer": "n/a",
      "evidence": null,
      "note": "Only applies to hosted services with a website to test."
    },
    "openpgp": {
      "title": "OpenPGP support",
      "weight": 2,
      "answer": "partial",
      "evidence": "https://github.com/cypht-org/cypht/blob/master/modules/pgp/README.md",
      "note": "PGP signing and encryption come from a bundled module that is experimental and off by default."
    },
    "no_cloud_relay": {
      "title": "Connects directly",
      "weight": 3,
      "answer": "yes",
      "evidence": "https://github.com/cypht-org/cypht",
      "note": "Self-hosted. Connects from the server where it is installed directly to the IMAP and SMTP servers, with no vendor service involved."
    },
    "remote_content_blocked": {
      "title": "Blocks remote content",
      "weight": 2,
      "answer": "yes",
      "evidence": "https://github.com/cypht-org/cypht/blob/master/.env.example",
      "note": "External image sources are disabled by default with ALLOW_EXTERNAL_IMAGE_SOURCES=false."
    },
    "any_provider": {
      "title": "Works with any provider",
      "weight": 1,
      "answer": "yes",
      "evidence": "https://github.com/cypht-org/cypht",
      "note": "Works with any IMAP, JMAP and SMTP server."
    },
    "self_hostable": {
      "title": "Self-hostable",
      "weight": 1,
      "answer": "yes",
      "evidence": "https://www.cypht.org/install/",
      "note": "Self-hosted software with an official installation guide."
    }
  },
  "tests": {
    "ssllabs": null,
    "observatory": null,
    "internetnl_web": null,
    "internetnl_mail": null,
    "trackers": [
      {
        "name": "Google Fonts",
        "host": "fonts.googleapis.com",
        "effect": "none"
      }
    ],
    "tested_at": "2026-10-01T07:01:34.291Z"
  },
  "last_modified": "2026-10-01T07:44:20Z"
}