Lavabit shut down rather than surrender its master SSL keys
When the U.S. government demanded the encryption keys that would have exposed all users to get at one account, Snowden's email provider chose to shut down instead.
01What actually happened
In 2013, the U.S. government obtained a warrant demanding Lavabit hand over its private SSL keys to access the account of a prominent user, reported to be Edward Snowden. Founder Ladar Levison objected that the keys would expose all of the service's roughly 400,000 customers, and rather than comply, he suspended the service entirely in August 2013. It is widely cited as the first tech firm to shut down rather than grant the U.S. government such access.
02Why it matters
When a provider holds keys that can unlock users, the state can demand them — and the only true defense may be not holding such keys at all. Cipher's zero-access design means the operator does not possess keys that decrypt user content, so there is no master key to compel; that protects content, not a seized, unlocked device.
Sources
- Wikipedia · Aug 2013Lavabit
- The Intercept · Jan 2017Encrypted Email Service Once Used by Edward Snowden Relaunches
We describe only what these sources report. If you think we've framed something inaccurately, tell us — accuracy is the whole point.
Cipher is built for exactly this gap: zero-access encryption, no phone number, on-device AI, and minimal metadata — so the failure in this story can't happen the same way.
See how the architecture works