Gmail's built-in encryption is limited, but you have working options

Gmail does not offer native end-to-end encryption for regular email. What it does offer is TLS encryption — which protects your message while it travels between servers, but not after it arrives. If you want the recipient to be unable to read your email even if their account is hacked, you need a different approach.

Your realistic options are: use Gmail's confidential mode (which adds a password layer and expiration), switch to a service like Proton Mail that encrypts by default, or use a separate encryption tool. Each has different trade-offs in ease and security.

Key Takeaways

  • Gmail's confidential mode adds a password and expiration date to emails, but does not encrypt the message itself — Google can still read it.
  • TLS encryption (which Gmail uses automatically) protects email in transit but not at rest, so it does not prevent Google or a hacked recipient account from viewing your message.
  • True end-to-end encryption requires either switching email providers or using a separate tool like PGP, both of which add friction for the recipient.
  • Confidential mode is the easiest option if you want to prevent accidental forwarding or set an expiration date, but it is not cryptographic security.

How to use Gmail's confidential mode

Open Gmail and start composing a new message. At the bottom of the compose window, look for a clock icon with a lock next to it — that is the confidential mode button. Click it.

A dialog box will appear asking you to set an expiration date and whether to require a passcode. The expiration date ranges from one day to five years; after that date, the recipient cannot open the message. The passcode is optional but recommended — if you enable it, the recipient receives the email but must enter a code (which you send separately) to read it.

Once you set these options and send the message, the recipient sees a notice that the email is in confidential mode. They cannot forward, copy, download, or print it. However, they can still take a screenshot, and Google retains an unencrypted copy on its servers.

What confidential mode actually protects against

Confidential mode is useful if you are worried about the recipient forwarding your message to someone else, or if you want to ensure a message disappears after a set time. It also prevents accidental copying or printing. These are real protections for everyday situations — a shared password, a contract draft, a sensitive conversation you do not want floating around.

What it does not do: it does not prevent Google from reading your message, it does not prevent a determined recipient from screenshotting it, and it does not protect against someone who has physical access to the recipient's device. If your threat is a government agency, a sophisticated attacker, or a hacked email account, confidential mode is not sufficient.

True end-to-end encryption: PGP and public key cryptography

If you need encryption that even Google cannot break, you need PGP (Pretty Good Privacy) or a similar public key system. This works by giving each person two keys: a public key that anyone can use to encrypt a message to them, and a private key that only they can use to decrypt it.

The process is: you obtain the recipient's public key, use it to encrypt your message before sending it through Gmail, and they use their private key to decrypt it on their end. Gmail never sees the unencrypted message.

The friction is real. The recipient must have a PGP key set up, you must obtain it, and they must have the software to decrypt your message. For one-off communication with someone who does not already use PGP, this is impractical. For regular secure communication with colleagues or contacts who are already set up, it works.

Using a browser extension for PGP in Gmail

If you want to use PGP without leaving Gmail, extensions like Mailvelope (available for Chrome and Firefox) let you encrypt and decrypt messages directly in the Gmail compose window. You install the extension, generate or import your PGP keys, and then when you compose an email, you can click an encryption button to encrypt the message before sending.

The recipient needs Mailvelope installed as well to decrypt it easily, though they can also decrypt it manually using other PGP software. This is simpler than managing keys outside Gmail, but it still requires both parties to have the extension and understand how to use it.

Switching to an encrypted email provider

Proton Mail and Tutanota are email services that encrypt all messages end-to-end by default. You do not need to set anything up — every email you send is encrypted, and only the recipient can read it. If the recipient also uses Proton Mail or Tutanota, decryption is automatic. If they use Gmail or another provider, they receive a link to read the message in a browser.

The trade-off is that you are switching email providers entirely, which means a new email address, migrating contacts, and updating your accounts elsewhere. For most people, this is too disruptive. But if you are starting fresh or if security is your primary concern, it removes the encryption question entirely.

When to use each option

OptionBest forEffort required
Confidential modePreventing forwarding, setting expiration, everyday sensitive emailsOne click per email
PGP with MailvelopeRegular secure communication with people who are already set upInitial setup, then one click per email
Proton Mail or TutanotaMaximum security, new email address acceptableSwitching providers entirely
Standard Gmail (TLS only)Routine email, no special sensitivityNone

Frequently Asked Questions

Can someone read my Gmail if they hack my account?

Yes, unless you use confidential mode or true end-to-end encryption. Regular Gmail messages are encrypted in transit (TLS) but stored unencrypted on Google's servers. If someone gains access to your account, they can read all your past emails. Confidential mode does not help with past emails — it only protects new ones you send after enabling it.

Is confidential mode the same as encryption?

No. Confidential mode adds a password layer and expiration date, which prevents casual forwarding and makes the message disappear after a set time. But Google can still read the message, and a determined recipient can screenshot it. True encryption means the message is unreadable to everyone except the intended recipient.

Do I need PGP if I am just sending passwords or credit card numbers?

You should not send passwords or credit card numbers by email at all, encrypted or not. Use a password manager to share passwords, and call or use a secure form to share payment information. Email, even encrypted, is not the right channel for these.

What happens if the recipient loses their PGP private key?

They cannot decrypt any messages encrypted with their public key. This is why PGP users keep backups of their private keys in secure locations. If you are considering PGP, discuss key backup with anyone you plan to communicate with regularly.

Can I encrypt emails I have already sent?

No. Encryption must happen before you send. You can use confidential mode on new emails going forward, but past emails are already on Google's servers unencrypted. If you need to secure a past conversation, you would need to ask the recipient to delete it and resend it using confidential mode or PGP.