IP Library Granted Patent US 12,413,598
Granted Patent B2
US 12,413,598 · App. 18/389,175 · Granted Sep 9, 2025

Method for securely communicating email content between a sender and a recipient

Inventor: Hoala Greevy (San Francisco, CA)
Assignee: Paubox, Inc.
H04L63/123H04L51/212H04L63/0236H04L63/0281H04L63/0428H04L63/1408H04L63/168
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,413,598
App. No.
18/389,175
Granted
Sep 9, 2025
Kind
B2
Abstract

One variation of a method for end-to-end encryption of electronic mail includes: receiving an email encrypted according to a first encryption protocol and designating a recipient within an external domain; verifying encryption protocol supported by the recipient's mail client; in response to a recipient exclusion database identifying the recipient, encrypting the email to a less-robust encryption protocol supported by the recipient mail client and transmitting the email to the !recipient; in response to the recipient exclusion database excluding the recipient and the recipient mail client supporting the first encryption protocol, transmitting the email encrypted according to the first encryption protocol to the recipient; and, in response to the recipient exclusion database excluding the recipient and the recipient mail client not supporting the first encryption protocol, generating a notification email including a hyperlink to a secure webpage containing content of the email and transmitting the notification email to the recipient.

Claims (120)

1. A method for end-to-end encryption of electronic mail comprising:

receiving a first email encrypted according to a first encryption protocol, the first email sent by a sender and designating a first recipient;

in response to a recipient exclusion list including the first recipient address:

accessing a first set of encryption protocols supported by a first recipient mail client at the first recipient address;

in response to the first set of encryption protocols including the first encryption protocol:

scanning the first email for sensitive information; and

in response to detection of sensitive information in the first email:

redacting sensitive information in the first email; and

inserting a first link to a first electronic document, containing sensitive information from the first email, into the first email; and

transmitting the first email to the first recipient address; and

receiving a second email encrypted according to a third second encryption protocol, the second email sent by the sender and designating a second recipient address; and

in response to the recipient exclusion list excluding the second recipient address:

accessing a second set of encryption protocols supported by a second recipient mail client at the second recipient address; and

in response to the second set of encryption protocols excluding the third second encryption protocol:

generating a notification email comprising a second link to a second electronic document containing content of the second email; and

transmitting the notification email to the second recipient address.

2. A method for end-to-end encryption of electronic mail comprising:

during a first time period:

receiving a first email encrypted according to a first encryption protocol, the first email sent by a sender and designating a recipient address; and

in response to a recipient exclusion list excluding the recipient address, the recipient exclusion list comprising a set of email addresses excluded from receiving notification emails containing links:

accessing a set of encryption protocols supported by a recipient mail client at the recipient address;

in response to the set of encryption protocols excluding the first encryption protocol:

generating a notification email comprising a link to an electronic document containing content of the first email and an encryption exclusion option; and

transmitting the notification email to the recipient address; and

in response to selection of the encryption exclusion option within the electronic document, updating the recipient exclusion list to include the recipient address; and

during a second time period succeeding the first time period:

receiving a second email encrypted according to a second encryption protocol, the second email sent by the sender and designating the recipient address; and

in response to the recipient exclusion list including the recipient address:

encrypting the second email according to a third encryption protocol in the set of encryption protocols; and

transmitting the second email, encrypted according to the third encryption protocol, to the recipient address.

3. The method of claim 1 :

wherein generating the notification email comprising the second link to the second electronic document comprises:

generating the notification email comprising the second link to the second electronic document comprising a webpage containing content of the second email; and

further comprising, in response to selection of the second link at the second recipient mail client executing on a computing device, serving the webpage to a web browser executing on the computing device.

4. The method of claim 1 :

further comprising, in response to the first set of encryption protocols excluding the first encryption protocol, encrypting the first email according to a third encryption protocol less secure than the first encryption protocol; and

wherein transmitting the first email to the first recipient address comprises transmitting the first email, encrypted according to the third encryption protocol, to the first recipient address.

5. The method of claim 1 :

wherein receiving the first email sent by the sender comprises receiving the first email sent by the sender at a sender address at a first domain; and

further comprising, in response to a sender exclusion list including the sender address, passing the first email unchanged to the first recipient address, the sender exclusion list specifying sender addresses at the first domain excluded from sending encrypted emails.

6. The method of claim 2 :

wherein receiving the first email comprises receiving the first email:

sent by the sender at a first domain; and

designating the recipient address at a second domain;

wherein generating the notification email comprises generating the notification email comprising:

the link to the electronic document containing content of the first email; and

the encryption exclusion option comprising an electronic contract for authorizing less secure encryption of inbound emails sent from the first domain to the recipient address; and

wherein updating the recipient exclusion list to include the recipient address comprises:

in response to execution of the electronic contract, updating the recipient exclusion list to include the recipient address.

7. The method of claim 6 :

wherein generating the notification email comprises generating the notification email comprising the encryption exclusion option comprising the electronic contract:

for authorizing less secure encryption of inbound emails sent from the first domain to the recipient address; and

for transferring liability for data loss related to the inbound email from the first domain to a recipient at the recipient address.

8. The method of claim 2 , further comprising:

during the first time period, in response to absence of selection of the encryption exclusion option, withholding insertion of the recipient address into the recipient exclusion list; and

during the second time period, in response to the recipient exclusion list excluding the recipient address and in response to the set of encryption protocols excluding the second encryption protocol:

generating a second notification email comprising a second link to a second electronic document containing content of the second email; and

transmitting the second notification email to the recipient address.

9. The method of claim 2 , wherein transmitting the second email, encrypted according to the third encryption protocol, to the recipient address comprises:

scanning the second email for sensitive information;

in response to detecting sensitive information in the second email:

withholding transmission of the first email to the recipient address; and

serving a notification to the sender:

indicating presence of sensitive information in the second email; and

comprising a prompt to confirm transmission of the second email to the recipient address; and

in response to receiving confirmation from the sender, transmitting the second email, encrypted according to the third encryption protocol, to the recipient address.

10. The method of claim 2 , wherein encrypting the second email according to the third encryption protocol comprises:

decrypting the second email;

inserting an email footer, indicating encryption of the second email, into the second email; and

encrypting the second email according to the third encryption protocol.

11. A method for end-to-end encryption of electronic mail comprising:

receiving a first email encrypted according to a first encryption protocol, the first email sent by a sender at a first domain and designating a recipient address at a second domain;

accessing a set of sender domains;

in response to the set of sender domains including the first domain, transmitting the first email to the recipient address;

receiving a second email encrypted according to a second encryption protocol, the second email sent by a second sender at a third domain and designating a second recipient address at the second domain; and

in response to the set of sender domains excluding the third domain:

accessing a set of encryption protocols supported by a recipient mail client at the second recipient address; and

in response to the set of encryption protocols excluding the first second encryption protocol:

generating a notification email comprising a link to an electronic document containing content of the first second email;

transmitting the notification email to the second recipient address; and

in response to selection of the link at the recipient mail client executing on a computing device, serving the electronic document containing content of the second email to the computing device.

12. The method of claim 11 :

wherein generating the notification email comprising the link to the electronic document containing content of the first email comprises:

generating the notification email comprising the link to the electronic document, the electronic document containing content of the first email and an encryption exclusion option; and

further comprising, in response to selection of the encryption exclusion option within the electronic document, inserting the recipient address into the recipient exclusion list.

13. The method of claim 12 , further comprising:

during a second time period succeeding insertion of the recipient address into the recipient exclusion list and in response to receiving a second email encrypted according to a second encryption protocol, sent by the sender, and designating the recipient address:

transmitting the second email, encrypted according to the second encryption protocol, to the recipient address.

14. The method of claim 12 :

wherein receiving the first email encrypted according to the first encryption protocol comprises:

receiving the first email encrypted according to the first encryption protocol and sent by the sender at a first domain; and

wherein updating the recipient exclusion list to include the recipient address comprises:

in response to selection of the encryption exclusion option within the webpage, serving an electronic contract:

for authorizing less secure encryption of inbound emails, sent from the first domain to the recipient address; and

for transferring liability for data loss related to the inbound email from the first domain to a recipient at the recipient address; and

in response to execution of the electronic contract, inserting the recipient address into the recipient exclusion list.

15. The method of claim 11 , further comprising:

receiving a second email encrypted according to a second encryption protocol, the second email sent by the sender and designating a third recipient address; and

in response to the recipient exclusion list including the third recipient address:

accessing a second set of encryption protocols supported by a second recipient mail client at the third recipient address;

encrypting the second email according to a third encryption protocol, in the second set of encryption protocols, less secure than the second encryption protocol; and

transmitting the second email, encrypted according to the third encryption protocol, to the third recipient address.

16. The method of claim 15 , wherein encrypting the second email according to the third encryption protocol comprises, in response to the second encryption protocol exceeding security of a maximum encryption protocol included in the second set of encryption protocols:

decrypting the second email; and

encrypting the second email to the maximum encryption level supported by the recipient mail client.

17. The method of claim 11 , further comprising:

generating a second notification email comprising a prompt representing the second email, the second sender, and the third domain; and

transmitting the second notification email to an administrator email address.

18. The method of claim 11 , wherein accessing the set of sender domains comprises:

accessing a whitelist comprising a set of verified email addresses; and

for each verified email address, in the set of verified email addresses:

extracting a domain from the verified email address; and

storing the domain in the set of sender domains.

19. The method of claim 11 , further comprising:

identifying temporary unavailability of encryption protocols in the set of encryption protocols during a target time period;

receiving a third email during the target time period, the third email encrypted according to a third encryption protocol, the third email sent by a third sender at a fourth domain and designating a third recipient address at the second domain; and

in response to the set of sender domains excluding the third domain:

generating a second notification email comprising a second link to a second electronic document containing content of the third email; and

transmitting the second notification email to the second recipient address.

20. The method of claim 19 , further comprising, in response to selection of the link at a recipient mail client executing on a computing device, serving the electronic document containing content of the third email to the computing device.

Assignments (3)
SECURITY INTEREST Recorded Mar 2, 2026
From: PAUBOX, INC.
To: WESTERN ALLIANCE BANK
Reel/Frame 073945/0047 →
SECURITY INTEREST Recorded Apr 9, 2025
From: PAUBOX, INC.
To: WESTERN ALLIANCE BANK
Reel/Frame 070786/0987 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 5, 2023
From: GREEVY, HOALA
To: PAUBOX INC.
Reel/Frame 065765/0082 →
Continuity (5)
Continuation 17842347 · Jun 16, 2022
Continuation 17014905 · Sep 8, 2020
Continuation 15683246 · Aug 22, 2017
Provisional Application 62378068 · Aug 22, 2016
Related Publication 20240080322A1 · Mar 7, 2024
References Cited (48)
US 6965992B1 · Joseph · 2005 [cited by examiner]
US 7305545B2 · Filipi-Martin · 2007 [cited by examiner]
US 7620690B1 · Castelli · 2009 [cited by examiner]
US 7774411B2 · LeMay · 2010 [cited by examiner]
US 7882184B1 · Wu · 2011 [cited by examiner]
US 8726026B2 · Mock · 2014 [cited by examiner]
US 8806190B1 · Munshi · 2014 [cited by examiner]
US 9781083B2 · Munshi · 2017 [cited by examiner]
US 20020169954A1 · Bandini · 2002 [cited by examiner]
US 20030061289A1 · Clissold · 2003 [cited by examiner]
US 20030088766A1 · Engel · 2003 [cited by examiner]
US 20030236847A1 · Benowitz · 2003 [cited by examiner]
US 20040243837A1 · Fredette · 2004 [cited by examiner]
US 20050010448A1 · Mattera · 2005 [cited by examiner]
US 20060075228A1 · Black · 2006 [cited by examiner]
US 20060101124A1 · Landis · 2006 [cited by examiner]
US 20060168071A1 · Sugiura · 2006 [cited by examiner]
US 20070005713A1 · LeVasseur · 2007 [cited by examiner]
US 20070022162A1 · Thayer · 2007 [cited by examiner]
US 20070055891A1 · Plotkin · 2007 [cited by examiner]
US 20070083749A1 · Fang · 2007 [cited by examiner]
US 20070130464A1 · Swedor · 2007 [cited by examiner]
US 20080098237A1 · Dung · 2008 [cited by examiner]
US 20080165972A1 · Worthington · 2008 [cited by examiner]
US 20080168026A1 · Patil · 2008 [cited by examiner]
US 20080307077A1 · Langoulant · 2008 [cited by examiner]
US 20090070866A1 · Erikson · 2009 [cited by examiner]
US 20090157823A1 · Price, III · 2009 [cited by examiner]
US 20090327714A1 · Yaghmour · 2009 [cited by examiner]
US 20100124332A1 · Arena · 2010 [cited by examiner]
US 20110099239A1 · Buchheit · 2011 [cited by examiner]
US 20110191664A1 · Sheleheda · 2011 [cited by examiner]
US 20110202756A1 · West · 2011 [cited by examiner]
US 20120148044A1 · Fang · 2012 [cited by examiner]
US 20130019104A1 · Halas · 2013 [cited by examiner]
US 20130080775A1 · Liebmann · 2013 [cited by examiner]
US 20140020044A1 · Ayres · 2014 [cited by examiner]
US 20140067942A1 · Carrigan · 2014 [cited by examiner]
US 20150143118A1 · Sheller · 2015 [cited by examiner]
US 20160070905A1 · Antoun · 2016 [cited by examiner]
US 20160142364A1 · LeVasseur · 2016 [cited by examiner]
US 20160212082A1 · Bhavnani · 2016 [cited by examiner]
US 20170026345A1 · Salek · 2017 [cited by examiner]
US 20170222989A1 · Morrison · 2017 [cited by examiner]
US 20210409424A1 · Seshadri · 2021 [cited by examiner]
JP 2001186120A · 2001 [cited by examiner]
WO WO2014196966A1 · 2014 [cited by examiner]
Robert H. Deng, Practical Protocols for Certified Electronic Mail, Journal of Network and Systems Management, vol. 4, No. 3, Sep. 1996, 19 pages (Year: 1996). [cited by examiner]