Secure Mail Guide
Isometric illustration of a sealed envelope beside a padlock and shield connected by glowing nodes, representing encrypted email privacy
comparisons

Proton Mail vs Gmail Privacy: Encryption and Data Access

This Proton Mail vs Gmail privacy comparison explains encryption, data collection, jurisdiction, legal disclosure, and practical tradeoffs.

By Secure Mail Guide Editorial · ·Updated August 22, 2026 · 6 min read

Anyone running a proton mail vs gmail privacy comparison is really asking two separate questions: who can read my email, and who can be legally compelled to hand it over. The two services answer both questions differently by design. Gmail is free, deeply integrated with the rest of Google’s ecosystem, and built around a business model that depends on knowing things about you. Proton Mail charges for storage beyond 1 GB and is built around a business model that depends on knowing as little about you as possible. Neither framing is marketing spin — it shows up in the architecture.

How each service handles encryption

The core technical difference is what happens to a message once it lands in your inbox. The terms below do a lot of work, and how email encryption actually works separates transport encryption from end-to-end encryption if the distinction is new.

Proton Mail encrypts messages sent between two Proton accounts with true end-to-end encryption (E2EE), meaning the message is encrypted on the sender’s device and only decrypted on the recipient’s device — Proton itself cannot read the contents at any point in transit or storage, according to Proton’s documentation on its encryption architecture. Messages arriving from non-Proton addresses (which is most of what lands in anyone’s inbox) don’t arrive pre-encrypted, so Proton applies zero-access encryption instead: the message is encrypted with your key the moment it hits Proton’s servers, so Proton can’t read it afterward even though it briefly touched the plaintext on the way in, per Proton’s explanation of zero-access encryption. Message bodies and attachments get this protection; sender, recipient, and subject-line metadata are encrypted but not end-to-end encrypted, since mail routing needs to read that much to deliver anything.

Gmail does not offer end-to-end encryption for standard mail. Google holds the decryption keys to everything in your inbox, which is what lets Gmail offer search, Smart Compose, spam filtering, and other features that require reading message content server-side. Google states directly that Gmail data can be used to power features like Smart Reply and Smart Compose — a tradeoff, not a secret, but a structurally different starting point than Proton’s.

What each company can see, and what it does with it

The advertising question is where a lot of confusion sits. Google’s own help documentation states plainly that Gmail does not process email content to serve ads, and personal Google accounts see ads based on activity elsewhere in the Google ecosystem, not inbox contents — work and school Google Workspace accounts see no ads at all. That claim has held since Google ended content-based Gmail ad targeting years ago, and Google’s current privacy policy reflects the same position.

What Google does collect, broadly, is account metadata: your name, phone number, IP address, device information, and behavioral signals across every other Google product you’re logged into — Search, YouTube, Maps, Android. Gmail doesn’t sell your emails, but it sits inside a system built to build an ad profile from everything around your emails. Proton’s model has no equivalent — there’s no cross-product ad network to feed, because Proton doesn’t run one.

Jurisdiction: Switzerland vs the United States

This is the part most comparisons flatten into “Switzerland good, US bad,” and it’s more nuanced than that.

Gmail data is subject to US law, including the CLOUD Act, which lets US authorities compel American companies to produce data stored anywhere, and to FISA and National Security Letter processes for national-security requests. Google publishes a Transparency Report detailing government request volume, though it’s legally barred from disclosing exact FISA request counts — only bucketed ranges.

Proton is a Swiss company, and Switzerland’s data protection framework and criminal procedure law generally require a valid Swiss court order before any user data is released, with foreign authorities barred from compelling Proton directly under Article 271 of the Swiss Criminal Code — they have to route requests through Swiss courts. Proton has written at length about why Swiss jurisdiction shapes its threat model more favorably than most alternatives.

The nuance worth knowing: Proton complies with valid Swiss court orders, and Switzerland’s bar for a “valid” order is lower than some users assume. In 2021, Proton was compelled by a Swiss court order — after a French law-enforcement request routed through Europol — to hand over the IP address and device information tied to an account used by a climate activist group, who was subsequently arrested, as reported by TechCrunch at the time. Proton didn’t have a choice under Swiss law, and the incident forced the company to soften language that had implied broader anonymity than the service actually guaranteed. A Swiss court later ruled that email providers aren’t classified as telecommunications providers under Swiss law, which narrowed what future orders can compel — but the episode is the clearest evidence that “based in Switzerland” reduces exposure to compelled disclosure, it doesn’t eliminate it. Zero-access encryption protects message content from this kind of order; it does not protect metadata like IP address unless you’re also using a VPN or Tor at signup and login.

Threat models, matched to the right pick

Three common cases, each with a different answer. If none of them is quite yours, the email security threat model works through the full set of parties that can reach your mail and under what conditions.

  1. You want to stop a data breach, a hacked Google account, or an ex with old password reuse from reading years of email history. Proton Mail’s zero-access encryption means a server-side breach at Proton doesn’t expose readable message bodies the way a Gmail breach would. Winner: Proton Mail.
  2. You want Smart Compose, deep Google Workspace integration, and you’re mainly worried about ad-tech profiling, not government access. Gmail’s no-ad-scanning-of-content stance covers the specific worry most people have; the tradeoff is accepting Google’s broader account-level data collection. Winner: Gmail, with ad personalization turned off in account settings.
  3. You’re a journalist, activist, or anyone who might face a legal order for account metadata, not just content. Neither service makes you anonymous. Proton’s Swiss process is more favorable than a US subpoena, but the 2021 case shows it isn’t a wall. Winner: Proton Mail paired with a no-logs VPN or Tor at signup, treating email as one layer of several.

Pricing, as of August 2026

Gmail’s core service is free with 15 GB of storage shared across Gmail, Google Drive, and Google Photos; Google Workspace paid tiers add storage and admin controls but are aimed at businesses, not privacy upgrades.

Proton’s free tier includes 1 GB of dedicated Mail storage plus 5 GB shared Drive storage. Proton Mail Plus runs €4.99/month billed monthly or €3.99/month billed annually (€47.88/year), bumping storage to 15 GB shared across Mail and Drive along with a custom domain and the Proton Mail Bridge desktop client, according to Proton’s official plan comparison. Prices are in euros since Proton bills from Switzerland; expect roughly equivalent USD pricing depending on exchange rates and any regional pricing Proton applies at checkout.

Bottom line

If your threat model is “I don’t want my inbox readable if a server gets breached, and I don’t want a US company able to comply with a subpoena for my message content,” Proton Mail’s architecture is built for that specifically, and our Gmail to ProtonMail migration plan covers moving without losing mail or locking yourself out of an account. If your threat model is “I mostly worry about ad targeting and I want Gmail’s feature set,” Google’s no-content-scanning-for-ads policy addresses that directly, and the free storage is hard to beat. Neither service should be your only privacy control if you’re facing targeted legal or state-level attention — pair whichever inbox you choose with strong account security (a passkey or hardware key beats SMS two-factor) and think about what metadata, not just content, you’re leaving behind.

Sources

  1. Proton's end-to-end encryption — How we secure your data
  2. What is zero-access encryption? (Proton)
  3. How Gmail protects your privacy & keeps you in control
  4. Google Privacy Policy
  5. Why is Proton based in Switzerland? An analysis of Swiss privacy laws
  6. ProtonMail logged IP address of French activist after order by Swiss authorities (TechCrunch)
  7. Proton plans explained (pricing and storage)
#email-privacy #proton-mail #gmail #encryption#data-privacy

Related