This is encryption-portal vs encryption-portal. Proofpoint’s web reader runs in their cloud. Ours runs on the MX host you run. Recipients enter a one-time code. They do not create a Proofpoint account.
| Proofpoint | Secure Message | |
|---|---|---|
| What this page is | Encryption portal — their web reader | Encryption portal — ours on your host |
| Where the reader runs | Their cloud | On the MX host you run |
| Where keys live | Their service | On the host you run |
| Recipient | A Proofpoint account / their reader | Opens a link, enters a one-time code. No account. |
The cloud SEG split is on the Mimecast page. This page is the encryption portal: their web reader in their cloud, or ours on the host you run. Keys stay on that host.
Recipients do not install a client or create a Proofpoint account. They open a link and enter a one-time code sent to the mailbox they already have.
The only AI is an inbound on-box BEC/phishing score. Mail is not sent to a vendor model to be scored.
TLS-to-inbox vs hold-and-portal is on the Paubox page. The HIPAA framing is on the HIPAA email gateway page.