cancel
Showing results forย 
Showย ย onlyย  | Search instead forย 
Did you mean:ย 
SpamDelendaEst
New member
Status: New idea

Description

๐Ÿš€Thunderbird could become the first spam- and phishing-free inbox:
Support the idea ๐Ÿ‘‰ Mozilla Connect + Bug 1984618

Ceterum censeo SPAM et PHISHING esse delendam.

The idea is simple: an optional mode where only RFC-compliant, authenticated emails (SPF/DKIM/DMARC) are automatically delivered to the inbox. All others go to a Quarantine folder with clear reasons/badges and optional sender feedback.

This would make Thunderbird the first major email client with a truly spam- and phishing-free inbox.

๐Ÿ‘‰Please vote and share your thoughts so we can move this forward together!

6 Comments
Status changed to: New idea
Jon
Community Manager
Community Manager

Thanks for submitting an idea to the Mozilla Connect community! Your idea is now open to votes (aka kudos) and comments.

SpamDelendaEst
New member

@ryanleesipes 

Title:
๐Ÿ‘‰Towards the First Spam- & Phishing-free Inbox: Well-formed Only Mode

Text:
Hi Ryan, hi Thunderbird Team,

weโ€™ve opened a Bugzilla ticket (Bug 1984618) describing a new approach called Well-formed Only Mode.
Instead of constantly chasing spam with filters and blocklists, Thunderbird could shift the paradigm:

  • Step 1: accept only well-formed emails (valid headers, SPF/DKIM/DMARC alignment).

  • Step 2: provide a clear quarantine folder with why a message was held.

  • Step 3 (optional): add AI scoring + address book/customer match to separate legitimate senders from phishing.

  • Step 4: optionally notify senders when their mail was rejected, including why (e.g. missing DKIM, From mismatch).
    โ†’ Legitimate senders can fix their systems. Spammers usually canโ€™t.

  • Step 5: offer all users a KPI Dashboard (blocked/quarantine/accepted, false positives, false negatives).
    โ†’ This should never be locked behind a paywall: transparency and trust matter more than a few dollars from a โ€œProโ€ version.
    โ†’ Visible success metrics will directly increase user satisfaction and demonstrate the real impact of Thunderbirdโ€™s security features.

The result: Thunderbird could become the first major mail client that offers a measurable, Spam- and Phishing-free inbox experience.

Itโ€™s a small implementation effort (RFC checks, UI for quarantine/feedback/dashboard) with a big user value: lower security costs, clear KPIs, transparent communication โ€” and even a positive pressure on the global email ecosystem to improve.

Weโ€™d love to hear your thoughts โ€” and whether this could enter the roadmap as an experimental feature flag for early adopters.

Ceterum censeo SPAM et PHISHING esse delendam. ๐Ÿท
(free after Cato the Elder โ€“ Ceterum censeo Carthaginem esse delendam)

SpamDelendaEst
New member

Hi @ryan,
weโ€™ve opened Bug 1984618 and shared an idea here on Connect: Well-formed Only Mode.

The concept:
โœ” Accept only well-formed, authenticated emails (SPF/DKIM/DMARC)
โœ” Quarantine + clear reasons
โœ” Optional sender feedback
โœ” KPI dashboard (not paywalled)
โœ” Fits perfectly as an experimental feature flag for early adopters

Weโ€™d love your thoughts on whether this could enter Thunderbirdโ€™s roadmap.

โ€žRyan, wouldnโ€™t it be nice if even your Bugzilla notifications never had to pass through traditional spam filters again?โ€œ ๐Ÿ˜‰

Ceterum censeo SPAM et PHISHING esse delendam.
(free after Cato the Elder)

wsm
Thunderbird Team
Thunderbird Team
SpamDelendaEst
New member

@wsm 

Thank you for pointing to this related idea ๐Ÿ™ โ€“ securing Thunderbird โ€œout of the boxโ€ is indeed essential.

However, Well-formed Only Mode is not about add-ons or incremental hardening, but about a paradigm shift: instead of endlessly filtering spam, Thunderbird would only accept well-formed, authenticated emails (SPF/DKIM/DMARC). Everything else would move to a quarantine with clear reasons, optional sender feedback, and transparent KPIs.

This is less an add-on feature, more a foundation change โ€“ one that could make Thunderbird the first major email client with a truly spam- and phishing-free inbox. ๐ŸŒฑ

Would love to hear if you see this as complementary or a separate path.

Ceterum censeo SPAM et PHISHING esse delendam.
(free after Cato the Elder)

ryan
New member

Hi! I was mentioned on this post, but I think you may have meant to ping someone else - perhaps Ryan Sipes.

I'm not involved with Thunderbird; I'm just a random community member who happens to be named Ryan. Thanks!