Hetzner vs Open Telekom Cloud

Comparez Hetzner et Open Telekom Cloud sur les capacités, la juridiction, les garanties et l'adéquation pour les acheteurs européens.

Tous deux listés comme alternatives à: Amazon Web Services (AWS), Google Cloud Platform, Microsoft Azure

Logo: Hetzner

Hetzner

Germany· Cloud Computing

Needs review

Shortlist for German-owned IaaS/bare metal in DE/FI parks, API cloud VMs, inclusive-traffic EU economics, ISO 27001 + BSI C5 Type 2. Skip for hyperscaler PaaS depth, SOC 2-first audits, or zero US-group footprint (optional US Ashburn/Hillsboro + Singapore via subsidiaries/colocation). Prefer OVHcloud/Scaleway for broader EU portfolios; STACKIT for DE public-sector framing.

EU-operated (DE HQ)Owned DE/FI parksISO 27001:2022BSI C5 Type 2Bare metal + auctionOptional US/SG cloud
Hetzner vs Open Telekom Cloud: Aperçu
CaractéristiqueLogo: HetznerHetznerLogo: Open Telekom CloudOpen Telekom Cloud
Pays d'origineGermanyGermany
CatégorieCloud ComputingCloud Computing
Open sourceNonNon
Auto-hébergéNonNon
SiègeGermanyNon indiqué
Entité légaleHetzner Online GmbH, Industriestr. 25, 91710 Gunzenhausen (HRB 6089 Ansbach)Non indiqué
Maison mère / contrôle USAucune maison mère US connueNon indiqué
Exposition CLOUD Act (indicative)MoyenNon indiqué
Hébergement / résidenceOwned parks: Nuremberg, Falkenstein (DE), Helsinki (FI). Non-cloud EU-only. Cloud optional US (Ashburn, Hillsboro) and Singapore on 3rd-party colocation. AV subprocessors: Hetzner Finland Oy; US: Hetzner US LLC, NTT Americas, QTS Hillsboro; SG: Hetzner Singapore, NTT SG1. Master data stays EU.Non indiqué
Résumé

German data center operator (Gunzenhausen): dedicated servers, Hetzner Cloud VPS, storage, and owned parks in Germany and Finland, with optional US and Singapore cloud locations.

Deutsche Telekom / T-Systems sovereign European public cloud (now marketed as T Cloud Public): OpenStack-based IaaS and platform services in Germany, Netherlands, and Swiss regions with BSI C5, ISO, and SOC attestations.

Tags
En un coup d'œil: Hetzner vs Open Telekom Cloud
En un coup d'œilLogo: HetznerHetznerLogo: Open Telekom CloudOpen Telekom Cloud
HQGunzenhausen, GermanyNon indiqué
Legal entityHetzner Online GmbH (HRB 6089 Ansbach)Non indiqué
EU parksNuremberg, Falkenstein (DE); Helsinki (FI)Non indiqué
Optional cloud regionsAshburn and Hillsboro (US); SingaporeNon indiqué
ModelIaaS / dedicated / hosting (unmanaged cloud and root)Non indiqué
Open sourceNo (commercial infrastructure)Non indiqué
Key capabilities: Hetzner vs Open Telekom Cloud
Key capabilitiesLogo: HetznerHetznerLogo: Open Telekom CloudOpen Telekom Cloud
EU-operated (DE HQ)OuiNon indiqué
Owned DE/FI parksOuiNon indiqué
ISO 27001:2022OuiNon indiqué
BSI C5 Type 2OuiNon indiqué
Bare metal + auctionOuiNon indiqué
Optional US/SG cloudOuiNon indiqué

Hetzner

  • Dedicated root servers and Server Auction

    Bare-metal root servers with full hardware isolation for predictable I/O and custom OS installs. The Server Auction lists surplus or end-of-primary-use machines at declining prices for labs, secondary environments, and cost-sensitive dedicated capacity.

  • Hetzner Cloud with API, networks, and apps

    VMs with shared or dedicated vCPU classes, managed via Console, REST API, and CLI. Private networks, stateful firewalls, load balancers, Linux images, Terraform/Ansible/Kubernetes integrations, and one-click apps (Docker, Nextcloud, GitLab CE, WireGuard, and more) for self-hosted stacks.

  • Owned EU data center parks plus optional US/Singapore cloud

    Company-operated parks in Nuremberg, Falkenstein (Germany), and Helsinki (Finland). Cloud also in Ashburn, Hillsboro (USA), and Singapore on third-party colocation. Non-cloud products and EU-selected cloud locations keep server data in the EU per Hetzner docs; master data stays in the EU.

  • ISO 27001, BSI C5 Type 2, and console DPA

    Public ISO/IEC 27001:2022 certificate for DE/FI park scope; BSI C5 Type 2 for cloud; Art. 28 DPA accept-in-console with published TOMs and annual external TOM review available to DPA customers. Not a SOC 2-first vendor.

  • Inclusive traffic-oriented European cloud pricing model

    Pay-as-you-go cloud (hourly or monthly) and list-based dedicated servers, with marketing emphasis on high inclusive traffic on European plans versus hyperscaler egress bills. Confirm current allowances and rates only on the official calculator—figures change by region and over time.

Open Telekom Cloud

  • Elastic Compute and AI/ML Capabilities

    Open Telekom Cloud provides Elastic Cloud Servers in various configurations, from general-purpose instances to GPU-accelerated ones for AI and ML tasks. ModelArts offers an end-to-end platform for building, training, and deploying models. These features support demanding applications like AI training and high-performance computing, with self-service scaling via APIs. Availability zones across multiple data centers ensure resilience.

  • Comprehensive Storage and Database Services

    Object Storage handles unlimited scalable data with S3-compatible APIs. Elastic Volume Service delivers block storage attachable to servers, while Scalable File Service manages shared filesystems. Databases include Relational Database Service for MySQL, PostgreSQL, and MS SQL, plus Document Database Service. These options cater to large-scale data storage, analytics, and IoT backends, with automated backups and high durability.

  • Robust Networking and Security

    Networking includes Virtual Private Cloud for isolated environments, Elastic Load Balancer for traffic distribution, VPN, and Direct Connect. Security tools feature Anti-DDoS protection, Web Application Firewall, and Key Management Service for encryption keys. Management aids like Cloud Eye monitoring and Cloud Trace auditing provide visibility and compliance tracking, essential for regulated industries.

Assurance & compliance: Hetzner vs Open Telekom Cloud
Assurance & complianceLogo: HetznerHetznerLogo: Open Telekom CloudOpen Telekom Cloud
Independent security / no-logs audit
Not applicable

Hosting/IaaS, not a no-logs VPN. Public ISO 27001, BSI C5 Type 2, and annual TOM review (TUV Rheinland) instead.

Non indiqué
ISO 27001
Verified

ISO/IEC 27001:2022; public SOCOTEC certificate. Scope: infrastructure, operation, support of Nuremberg, Falkenstein, Helsinki parks.

Non indiqué
SOC 2 / SOC 3
Not found

Hetzner states focus on ISO 27001 rather than SOC 2 for international market.

Non indiqué
GDPR / EU data protection
Vendor claimed

German entity; public privacy policy, Art. 28 DPA, TOMs, subprocessor list. Customer remains controller for data on rented systems.

Non indiqué
US CLOUD Act exposure (indicative)
Partial

EU entity / no known US parent, but optional US cloud uses Hetzner US LLC and US colocation (NTT, QTS); Singapore similarly. EU placements keep server data in EU per docs. Not legal advice.

Non indiqué
Data processing agreement (B2B)
Vendor claimed

Standard DPA accept-in-console; sample PDF published; no custom wet-ink DPAs per vendor docs.

Non indiqué
EU AI Act
Not applicable

Infrastructure hosting, not an AI system product.

Non indiqué
BSI C5 (cloud)
Verified

Vendor publishes BSI C5 Type 2 attestation PDF for cloud services (German BSI catalogue).

Non indiqué
KRITIS / section 8a BSIG
Vendor claimed

Hetzner states BSI classification as operator of critical services and certification under section 8a BSIG.

Non indiqué
Considerations & known limitations: Hetzner vs Open Telekom Cloud
Considerations & known limitationsLogo: HetznerHetznerLogo: Open Telekom CloudOpen Telekom Cloud
Optional US and Singapore cloud regions
Medium

Ashburn, Hillsboro, and Singapore use third-party colocation and local subsidiaries; server content placed there leaves the EU. Zero-US-footprint policies may still reject the vendor even for EU-only workloads.

Non indiqué
Unmanaged cloud and dedicated servers
Medium

You own OS patching, app security, and backups. Platform firewalls help but do not replace customer ops. Poor fit if you need managed DBaaS and full-stack ops.

Non indiqué
Narrower managed-service catalog vs hyperscalers
Low

Strong IaaS and bare metal; weak match if procurement assumes AWS-parity managed services. Plan hybrid architecture early.

Non indiqué
ISO scope is DE/FI parks
Low

Published ISO 27001 scope centers on German and Finnish parks. Do not assume identical coverage for every US/Singapore deployment without reading current certificates.

Non indiqué

Adéquation

Hetzner

Best fit when

  • Teams that want German-jurisdiction hosting with owned parks in Germany and Finland
  • Workloads that need bare-metal root servers or cost-effective dedicated via Server Auction
  • Ops-heavy orgs comfortable with unmanaged IaaS (Console/API/CLI, Terraform, apps)
  • Buyers optimizing for EU residency plus inclusive traffic economics versus hyperscaler egress
  • German/EU checklists asking for ISO 27001, BSI C5, and an Art. 28 DPA in-console

Poor fit when

  • Orgs that need a full AWS/Azure-style managed services catalog (PaaS, serverless, AI)
  • Policies that forbid any US subsidiary, US colocation, or optional US region at group level
  • Buyers requiring SOC 2 as the primary assurance artifact (Hetzner focuses on ISO/C5)
  • Teams expecting fully managed OS patching, databases, and DR without operating the stack

Consider instead when

  • When: You need a broader European cloud portfolio or more managed service surface

    Consider: OVHcloud or Scaleway

    Still European operators; compare regions, bare-metal depth, and support models.

  • When: German public-sector sovereign cloud framing is the primary procurement driver

    Consider: STACKIT

    Different product and governance story; verify current certifications and residency.

  • When: You need hyperscaler managed depth more than EU-owned IaaS

    Consider: AWS, Azure, or Google Cloud (accept US-group CLOUD Act posture)

    Trade EU operator control for catalog breadth.

  • When: You want a smaller EU regional cloud with a different feature/region mix

    Consider: Exoscale or UpCloud

    Compare locations, SLAs, and managed options against Hetzner's park scale.

Open Telekom Cloud

Best fit when

Non indiqué

Poor fit when

Non indiqué

Open questions for due diligence

Hetzner

  • Does your policy allow a German provider that also offers US/Singapore regions if you only deploy in DE/FI?
  • Is BSI C5 Type 2 + ISO 27001 sufficient, or is SOC 2 mandatory for your auditors?
  • Which SKUs (cloud vs dedicated vs managed web hosting) match your backup and support needs?
  • Will you need regions or managed services Hetzner does not offer natively (CDN, managed DB, AI APIs)?

Open Telekom Cloud

Non indiqué