Facebook is dropping the option to encrypt emails next month.
https://imgur.com/a/3iekMAj
So, the emails to reset your password will be clear text and vulnerable to be read by your email provider.
It worked by uploading your public key in your settings.
You can have someone compromise a email - or it could be a hostile actor, or government- and yes, likely not the US gov or a state gov who could issue subpoenas and get data from Facebook via other legal methods(unless they utilize methods like the Snowden leaks mentioned)
-But this does mean people will now have no counter and be wide-open. And asking other info of people, such as providing photo ID's or (hopefully they never do this) biometric data- can also be obtained and submitted by hostile actors that are well funded...
PGP still works