I think in the end we just need an entirely different infrastructure for all this stuff. Email should never be stored on servers unencrypted.

I have used PGP/GPG but it's not good enough. It fails the mom test (as in my mom couldn't use it, and by extension, it's not ready for the mass market).

If you designed a system from the ground up to be secure, you could do much better.

