Outlook is Microsoft's new data collection service
Microsoft’s “new Outlook” email client is being criticized for acting as a data-harvesting and ad-targeting platform, including routing third‑party IMAP/SMTP credentials and mail through Microsoft’s servers and sharing data with hundreds of partners. Commenters argue this blurs the line between a paid productivity tool and adware, raising concerns about privacy, lock‑in, and corporate surveillance, and many report abandoning Outlook and even Windows in favor of alternatives like Thunderbird, Proton, and Linux desktops. Some defend enterprise Office 365 setups as less affected, but others note that the overall trajectory of Microsoft’s products is eroding trust and pushing privacy‑conscious users toward paid, independent email providers.
Overall reaction to Outlook / Windows data collection and ads
- Many are angered that a paid OS and Office suite increasingly resemble ad-funded products, with ads in Outlook, Windows UI, Teams, etc.
- Some see this as part of a broader “enshittification” and telemetry push across Windows and Office, turning PCs into data-harvesting devices.
- There is frustration that fines and regulation lag far behind how much data is being collected and monetized.
Paid vs free email and business models
- Several commenters happily pay for email (Proton, Fastmail, Migadu, mailbox.org, Amazon WorkMail, etc.) and see it as buying privacy and better service.
- Others doing support say “no one wants to pay for email,” explaining why ad- and data-driven models dominate.
- There is debate over bundled services (e.g., Proton with VPN and storage) and whether that’s good value or unnecessary upselling.
New Outlook architecture and credential handling
- Concern that the new Outlook (the web-wrapper “consumer” client and the Windows Mail replacement) sends IMAP/SMTP credentials for third‑party accounts to Microsoft servers.
- One side argues Proton’s wording (“sent in plain text”) is misleading because transport is TLS‑encrypted; the real issue is Microsoft receiving and storing raw passwords instead of limited tokens.
- Others counter that “plaintext” is fair when the provider ends up holding the actual password, and point to German reports capturing those credentials inside the TLS tunnel.
- Confusion and disagreement over which Outlook variants (consumer vs O365 business / PWA “New Outlook”) exhibit this behavior.
Trust in Microsoft and corporate data
- Some argue normal developers/support cannot freely browse customer data and that access is heavily audited; others describe support scenarios where staff can grant themselves access at higher tiers.
- Skeptics stress that contracts and audits still boil down to “trust us,” and that large-scale data mining for ads or AI training can be opaque and hard to detect.
- Worries extend to potential use of corporate email data for competitive advantage or AI models.
Alternatives: clients, providers, and OSes
- Many recommend Thunderbird, Claws Mail, Evolution, Vivaldi Mail, SeaMonkey, and text UIs like mutt or nmail; all are imperfect but avoid Outlook’s data funneling.
- Several users report migrating personal and even business email to Proton and similar providers, often with custom domains for portability.
- Strong current of people moving to Linux (often KDE, i3, Mint, Debian, Qubes) or macOS to escape Windows ads/telemetry and gain perceived productivity and privacy.
Broader privacy, VPNs, and regulation
- Heated debate on consumer VPNs: some see them as essential privacy tools; others call them over-marketed, largely redundant with HTTPS and modern browser protections, and just new middlemen.
- EU regulations (GDPR, transparency on subprocessors) are credited with surfacing how much data large vendors actually share, reinforcing arguments for stronger oversight.