We are not anti-American. We are pro-sovereignty. This page explains where we stand, why we take the positions we do, and what it means for our clients.
Data stored on US-controlled infrastructure is subject to US law — the CLOUD Act, FISA 702, Executive Order 12.333. These laws grant US authorities access rights that conflict directly with European data protection regulations. This is not our opinion. It is the legal finding of the Court of Justice of the European Union in Schrems II, and it has been upheld by Data Protection Authorities across Austria, France, Italy, Denmark, Norway, Finland, and Sweden.
We do not guarantee the data integrity, privacy, or sovereignty of any client data stored on US-based platforms — no matter what those platforms claim in their terms of service. The legal reality overrides the marketing.
We deploy and manage both platforms for clients who require them. We actively recommend and default to Proton — a European company with end-to-end encryption, Swiss jurisdiction, and a business model that does not depend on data harvesting. We cannot and do not guarantee the data integrity, privacy, or sovereignty of information stored on Google or Microsoft infrastructure.
Veeam, VMware, and other US-origin infrastructure tools are deployed when the client requires them — after explicit evaluation and client approval. We prioritise European and open source alternatives (Proxmox, OpenBao, Borg) and default to them for all new deployments.
We do not use AWS, Azure, or GCP for client infrastructure. We do not resell them, manage them, or consult on them. If your strategy depends on US cloud providers, we are not the right partner. If you want to move off them, we are.
We do not deploy Google Analytics or any US-based analytics or tracking software on client infrastructure. Multiple EU DPAs have ruled Google Analytics illegal under GDPR. We deploy Matomo (VALS) instead — self-hosted, European, no data leaves your infrastructure.
This is not a political position. It is an operational risk assessment. Every external dependency is a potential point of failure, a potential supply chain vulnerability, a potential jurisdiction conflict. We reduce these risks by choosing technologies that give our clients maximum control — and we are transparent about the risks that remain when a client chooses a US-based solution.
Our default stack: Proxmox over VMware. OpenBao over HashiCorp Vault. Zitadel over Entra ID. Wazuh over Splunk. Matomo over Google Analytics. Proton (proton.me) over Google Workspace. These are not arbitrary preferences — they are the result of evaluating technology on three criteria: capability, sovereignty, and long-term sustainability. On all three, the European and open source alternatives win.