Is proton.me legit?
This site appears trustworthy overall, demonstrating strong technical infrastructure and good transparency. While there are a couple of minor concerns regarding payment methods and hidden content, the robust security and comprehensive legal pages suggest a legitimate operation.
VPN & Security average: 84/100 · based on 16 sites
Checked: April 27, 2026 at 7:37 AM UTC
Is proton.me a scam? Here's what we found.
The website boasts a strong security profile with a valid and up-to-date SSL certificate from Let's Encrypt, using the secure TLS 1.3. HSTS and Content Security Policy are present, and Google Web Risk reports no threats.
Proton.me has a long-standing domain age of over 15 years, registered with a reputable registrar (MarkMonitor Inc.) and protected by Registry Lock, indicating a well-established and serious entity.
The site has a very high Tranco Rank and is clean on all DNS blacklists, reinforcing its established and positive online reputation. While Trustpilot presence is absent, this is not a significant concern for all companies.
While the site provides clear contact information, legal pages, and a significant social media presence, the mention of non-reversible payment methods and excessive hidden content slightly detract from its otherwise strong transparency.
The presence of comprehensive Privacy & Terms pages demonstrates a commitment to legal and user protections, which is a strong indicator of compliance.
The infrastructure is robust, featuring multiple email authentication records (SPF, DMARC), a clear sitemap and robots.txt, and DNSSEC enabled, ensuring reliable and secure operation.
Signals Detected
This is a well-known, high-traffic website
Site uses structured data identifying itself as: WebSite
Mentions non-reversible payment methods: bitcoin
Excessive hidden content found — may indicate cloaking or deceptive content
Valid certificate, expires in 53 days
Certificate issued by Let's Encrypt
Connection uses TLS 1.3
This business has no Trustpilot presence — not unusual for smaller or newer companies
robots.txt has 6 directives and references a sitemap
Site maintains a proper sitemap with 23 indexed pages
Resolves to: 185.70.42.45
Mail servers: mail.protonmail.ch., mailsec.protonmail.ch.
Domain has SPF email authentication configured
Domain has DMARC email authentication configured
DNS providers: ns1.proton.me., ns2.proton.me., ns3.proton.me.
Site has custom branding and social media metadata
crt.sh returned status 429
Site enforces HTTPS via HSTS
Site has Content Security Policy configured
No threats detected by Google Web Risk
Website is live and responding
Website appears to have contact information
Website has both privacy policy and terms of service pages
Website links to multiple social media platforms
Domain created 2010-10-10T21:20:51Z (15 years, 9 months ago)
Registered through MarkMonitor Inc.
Expires in 166 days
DNSSEC status from WHOIS
Could not query Wayback Machine
Not found on any DNS blacklists
Fast page load
Stay Safe Online
Good habits to protect yourself, no matter the scan result.
Never reuse passwords across sites.
Add a second layer of security to your accounts.
Always verify unfamiliar stores before entering payment info.