Apple is about to make Hide My Email useless
摘要
Apple 宣布将“通过 Apple 登录”和 iCloud+“隐藏邮件”生成的别名后缀统一改为 @private.icloud.com。作者指出,这一变化使得第三方服务能轻易识别并屏蔽此类别名,而不会误伤正常的 iCloud 邮箱,从而削弱了该功能的隐私保护作用。目前该变更尚未完全落地,用户仍可抓紧时间生成旧版的 @icloud.com 别名。
荐读理由
苹果将隐藏邮件别名迁至特定子域名,这一变化让你在设计产品注册流时能更轻易地识别或拦截匿名邮箱;若你自身依赖此功能,需在变更生效前利用窗口期批量生成旧域名的别名以防被第三方服务商一刀切屏蔽。
原文
Yesterday, June 15, 2026, a small and unimportant announcement appeared in Apple developer news: New domain for Sign in with Apple and iCloud+ Hide My Email.
Long story short: now both Sign in with Apple and Hide My Email aliases are going to be issued on the @private.icloud.com subdomain. This makes it much easier to ban all aliases without affecting non-relay mailboxes on iCloud mail.
This is certainly a big hit for iCloud privacy, since some plausible deniability together with Apple’s backing made banning iCloud aliases costly. But now a lot of services will just refuse to accept these emails, just like what happens with free temporary mailboxes.
Hopefully, this can reach someone at Apple so they can reconsider this decision.
If you use iCloud+ and Hide My Email, there is still time to generate more aliases on @icloud.com as the change has not yet landed and the rate limit for creating aliases is at least 30 per hour.
这条对你有帮助吗?