Nextcloud
Germany· Cloud Computing
Vergleichen Sie Nextcloud und Wire nach Funktionen, Rechtsraum, Nachweisen und Einsatzpassung.
Germany· Cloud Computing
Switzerland· Groupware
Needs review
Shortlist Wire when you need always-on E2EE collaboration (MLS), Swiss legal entity, open-source clients/server, and a credible path from EU cloud to on-prem/federation. Skip when you need deep Microsoft 365/Slack app ecosystems or a pure non-AWS/US-SaaS subprocessor footprint—consider Nextcloud Talk or a Germany-hosted managed messenger such as ginlo Business instead.
Hervorgehobene Zeilen unterscheiden sich zwischen den Produkten.
| Merkmal | ||
|---|---|---|
| Herkunftsland | ||
| Kategorie | Cloud Computing | Groupware |
| Open Source | Ja | Ja |
| Self-Hosted | Ja | Ja |
| Hauptsitz | Nicht angegeben | Switzerland |
| Rechtsträger | Nicht angegeben | Wire Swiss GmbH (CHE 432.881.146), Untermüli 9, CH-6300 Zug; EU rep Wire Germany GmbH, Berlin |
| Anwendbares Recht | Nicht angegeben | Swiss law (business ToU for non-US use); jurisdiction Zurich |
| US-Mutter / Kontrolle | Nicht angegeben | Keine bekannte US-Mutter |
| CLOUD-Act-Exposition (indikativ) | Nicht angegeben | Mittel |
| Hosting / Residenz | Nicht angegeben | Cloud: servers in Germany and Ireland per security pages; DPA lists Amazon Web Services EMEA SARL for hosting (EU). Other subprocessors include Google Cloud EMEA (email), Zendesk, HubSpot, Salesforce (Germany processing location stated), Stripe (USA/SCCs), Box, ContractHero, Countly (Germany), Wire Germany GmbH. On-prem customers host in their own environment. |
| Zusammenfassung | Open-source, self-hosted content collaboration Hub from Nextcloud GmbH (Germany): Files, Talk, Groupware, Office, local AI Assistant, and Flow—an on-prem alternative to Microsoft 365-style suites. | Swiss open-source secure messenger from Wire Swiss GmbH: always-on E2EE messaging, calls, and files (MLS), cloud or on-premises, for regulated teams and public sector. |
| Tags |
| Auf einen Blick | ||
|---|---|---|
| HQ | Nicht angegeben | Zug, Switzerland (Wire Swiss GmbH) |
| EU representative | Nicht angegeben | Wire Germany GmbH, Berlin |
| Product | Nicht angegeben | E2EE messenger + calls + files; optional Drive |
| Deployment | Nicht angegeben | EU cloud and/or on-prem / private cloud |
| Open source | Nicht angegeben | Yes (clients GPL-3; server AGPL-3) |
| Hosting (cloud) | Nicht angegeben | DE/IE regions; AWS EMEA (per DPA) |
Sichere Dateisynchronisation und Freigabe
Ende-zu-Ende-verschlüsselte Synchronisation über Geräte hinweg mit öffentlichen Links, Berechtigungen und Ablaufdaten. Vorteile: Sicherer Remote-Zugriff ohne Datenlecks – ideal für Teams mit sensiblen Dateien.
Echtzeit-Kollaboration und Office
Integration von Collabora und OnlyOffice für Live-Dokumentenbearbeitung. Talk ermöglicht Chat und Videokonferenzen. Produktivität wie Google Workspace, aber self-hosted für Privatsphäre.
Groupware und Produktivitätssuite
Kalender, Kontakte, Mail und Aufgaben in einer App. Flow automatisiert Workflows; Assistant nutzt lokale KI für Übersetzungen und Zusammenfassungen. Zentralisiert Tools und reduziert App-Fragmentierung.
Always-on MLS / E2EE for chat, calls, and files
Messaging, conference calls, and in-app file shares are end-to-end encrypted by default—no toggle. Wire markets full-product MLS (IETF Messaging Layer Security) for scalable group key exchange, alongside Proteus/Double Ratchet heritage for pairwise messaging and SRTP/DTLS for calls. Suits orgs that reject optional encryption modes.
Guest rooms and external collaboration
Invite outsiders into E2EE conversations via guest rooms in the browser without requiring a full account download, plus external team members with lifecycle controls (removal drops their history access). Practical for contractors, clients, and inter-org projects that must stay off consumer WhatsApp.
Cloud, on-premises, air-gap, and federation
Run managed Wire Cloud or deploy on-premises/private cloud—including air-gapped networks—with optional federation between isolated Wire backends and admin control over which backends may interconnect. Aimed at governments and CNI that cannot accept pure SaaS only.
Enterprise identity: SSO, SCIM, and admin policy
Enterprise tier adds SAML-based single sign-on, SCIM provisioning, and granular admin controls (for example enforce app lock, restrict self-deleting messages). Built for complex directories rather than only self-serve SMB signup.
Open-source clients, server, and crypto
Wire publishes client, server (wire-server, AGPL-3.0), and core-crypto components on GitHub for independent review. Multi-device accounts (up to 8 devices) with ID Shield certificate-based device verification reduce manual fingerprint workflows while keeping device trust visible.
| Assurance & compliance | ||
|---|---|---|
| Independent security / crypto audit | Nicht angegeben | Partial Vendor publishes Security/Privacy whitepapers and states external pen tests and ISO audits in TOMs; public third-party audit PDFs (e.g. historic Kudelski/X41 claims in secondary sources) were not re-verified as current primary evidence during this draft. |
| ISO 27001 | Nicht angegeben | Vendor claimed Asserted on Wire security marketing page; request certificate in procurement. |
| ISO 27701 | Nicht angegeben | Vendor claimed Asserted alongside ISO 27001 on security page; not independently verified here. |
| SOC 2 / SOC 3 | Nicht angegeben | Not found No public SOC 2/3 claim located on security/legal pages during research. |
| Cyber Essentials (UK) | Nicht angegeben | Vendor claimed Asserted on security page as UK government-backed baseline certification. |
| GDPR / EU data protection | Nicht angegeben | Vendor claimed Swiss FADP controller; GDPR for EU/EEA individuals; EU Art. 27 representative Wire Germany GmbH; public privacy policy and DPA. |
| US CLOUD Act exposure (indicative) | Nicht angegeben | Partial Swiss entity / no known US parent, but AWS EMEA hosting and US-parent SaaS subprocessors (Stripe, HubSpot, Salesforce, Zendesk corporate groups; APNs/FCM push). Not legal advice. |
| Data processing agreement (B2B) | Nicht angegeben | Vendor claimed Public Art. 28 GDPR Processing Agreement with TOMs and Annex 2 subprocessor list (updated March 12, 2025 on page). |
| EU AI Act | Nicht angegeben | Not applicable Secure messaging/collaboration product; not marketed as an AI system core offering. |
| Considerations & known limitations | ||
|---|---|---|
| AWS EMEA + US-parent SaaS subprocessors | Nicht angegeben | Medium Even with DE/IE regions and a Swiss controller, cloud tenants depend on AWS EMEA and several US-group tools for hosting, CRM, support, or payments. On-prem reduces hosting dependency but not necessarily all vendor-side SaaS. |
| Wire Drive is not client-side E2EE | Nicht angegeben | Medium DPA distinguishes messenger E2EE from Drive encryption-at-rest with possible operator access. Misclassifying Drive as zero-knowledge chat storage creates compliance risk. |
| ISO / Cyber Essentials need certificate proof | Nicht angegeben | Low Certifications are prominently claimed on marketing pages but should be validated with current certificates and scope statements before audit reliance. |
| Mobile push via APNs/FCM | Nicht angegeben | Low Standard mobile delivery path involves Apple/Google push infrastructure for wake-ups; Wire states content is not shared. F-Droid build available to avoid FCM. |
Nicht angegeben
Nicht angegeben
When: You want a German managed business messenger with AD/LDAP cockpit and no self-host requirement
Consider: ginlo Business
Stronger Germany-hosting contract language; weaker open-source/on-prem story than Wire
When: Chat is secondary to self-hosted files, calendars, and groupware you already run
Consider: Nextcloud (Talk / groupware)
Broader collaboration suite; different crypto/admin model than Wire MLS messenger
When: You need the Microsoft 365 or Slack ecosystem more than E2EE-by-default
Consider: Microsoft Teams or Slack
Richer workplace integrations; weaker default E2EE and European sovereignty story
Nicht angegeben