Cyso Cloud vs Hetzner Object Storage

Confronta Cyso Cloud e Hetzner Object Storage su capacità, giurisdizione, garanzie e idoneità per acquirenti europei.

Logo: Hetzner Object Storage

Hetzner Object Storage

Germany· Cloud Computing

Needs review

Shortlist when you want S3-compatible buckets in Falkenstein, Nuremberg, or Helsinki under Hetzner Online GmbH, especially if you already run Hetzner compute. Skip when you need AWS-parity features, flash tiers, a CDN, or default KMS at-rest encryption. Prefer Amazon S3 for full feature depth; prefer Scaleway or OVHcloud if you want another European S3 SKU without a Hetzner compute relationship.

S3-compatible APIEU-only locationsSingle-DC residencyObject lock + versioningSSE-C (opt-in)ISO 27001 (company)
Cyso Cloud vs Hetzner Object Storage: Sintesi
CaratteristicaLogo: Cyso CloudCyso CloudLogo: Hetzner Object StorageHetzner Object Storage
Paese di origineNetherlandsGermany
CategoriaCloud ComputingCloud Computing
Open sourceNo
Self-hostedNoNo
SedeNon indicatoGermany
Soggetto giuridicoNon indicatoHetzner Online GmbH, Industriestr. 25, 91710 Gunzenhausen (HRB 6089 Ansbach)
Capogruppo / controllo USANon indicatoNessuna capogruppo USA nota
Esposizione CLOUD Act (indicativa)Non indicatoBasso
Hosting / residenzaNon indicatoObject Storage only in Falkenstein, Nuremberg (company-operated DE parks) and Helsinki (Hetzner Finland Oy for building rental and technical support). Entire bucket stays in the selected single data center on Hetzner Ceph. No US or Singapore object-storage region. Group still has Hetzner US LLC, Hetzner Singapore Pte. Ltd., and US/SG colocation partners for other Cloud server products. Customer master data stays in the EU per Hetzner docs.
Riassunto

Dutch OpenStack IaaS from Cyso B.V. with AMS/FRA regions, managed Kubernetes (KCSP), S3-compatible object storage, and EU data residency for teams avoiding hyperscaler lock-in.

German S3-compatible object storage from Hetzner Online GmbH: buckets in Falkenstein, Nuremberg, and Helsinki with location-specific endpoints.

Tag
A colpo d'occhio: Cyso Cloud vs Hetzner Object Storage
A colpo d'occhioLogo: Cyso CloudCyso CloudLogo: Hetzner Object StorageHetzner Object Storage
HQNon indicatoGunzenhausen, Germany
Legal entityNon indicatoHetzner Online GmbH (HRB 6089 Ansbach)
LocationsNon indicatoFSN1 Falkenstein, NBG1 Nuremberg, HEL1 Helsinki
APINon indicatoS3-compatible, AWS Signature Version 4
Storage backendNon indicatoCeph on HDD (standard tier only)
EncryptionNon indicatoNo default at-rest; optional SSE-C
Commercial modelNon indicatoHourly base fee with included storage and egress quota, then pay-as-you-go
Key capabilities: Cyso Cloud vs Hetzner Object Storage
Key capabilitiesLogo: Cyso CloudCyso CloudLogo: Hetzner Object StorageHetzner Object Storage
S3-compatible APINon indicato
EU-only locationsNon indicato
Single-DC residencyNon indicato
Object lock + versioningNon indicato
SSE-C (opt-in)Non indicato
ISO 27001 (company)Non indicato

Cyso Cloud

  • Istanze compute scalabili

    Le istanze si lanciano in secondi con flavor adatti ai workload: standard (bilanciato), CPU-optimized (fino a 64 vCPU) o memory-optimized (fino a 512 GB RAM). Lo storage effimero è legato al ciclo di vita dell'istanza; i volumi persistenti offrono tripla replicazione e scaling IOPS (5-25 per GB). Le tariffe orarie partono da 0,026 € per specifiche entry-level, abilitando matching costi preciso senza overprovisioning.

  • Object storage compatibile S3

    Progettato per backup e dataset grandi, offre capacità illimitata con SLA uptime 99,99%. I drive NVMe garantiscono bassa latenza; i dati restano nelle regioni UE selezionate. Prezzi: 0,055 €/GB storage, ingress gratuito, 0,055 €/GB egress. Le operazioni costano 0,055 € per 10.000 richieste PUT/LIST, supportando accesso REST API per integrazione fluida.

  • Kubernetes gestito

    Enterprise Managed Kubernetes (EMK) include control plane a 29,99 € mensili (HA a 59,99 €), con aggiornamenti automatizzati e ibernazione per risparmio costi. Lo SLA 99,9% copre cluster ad alta disponibilità. Gli utenti deployano via dashboard; funzioni come autoscaling gestiscono carichi variabili. La documentazione guida il setup in minuti.

Hetzner Object Storage

  • S3 API with FSN1, NBG1, and HEL1 endpoints

    Amazon S3 compatible API using AWS Signature Version 4. Location endpoints are fsn1.your-objectstorage.com, nbg1.your-objectstorage.com, and hel1.your-objectstorage.com. AWS CLI and common SDKs work when pointed at the Hetzner endpoint. Console covers bucket create and credentials; almost all object operations go through the S3 API.

  • Single-location EU bucket residency on Ceph

    A bucket is stored entirely in the location you pick (Falkenstein, Nuremberg, or Helsinki), in one data center. Docs describe a Ceph cluster with erasure coding that can keep data intact if up to three storage servers fail. There is no US or Singapore object-storage region and no built-in cross-location replication.

  • Object lock, versioning, and lifecycle expiry

    Object Lock can be enabled at bucket create (legal hold and retention). Versioning and lifecycle rules are documented, including NoncurrentDays expiry. Pre-signed URLs give time-limited access. Object lock cannot be turned on later for a bucket created without it.

  • SSE-C encryption (no default at-rest, no SSE-KMS)

    There is no default data-at-rest encryption. Optional SSE-C encrypts object bytes with a customer-provided key that Hetzner says it discards after use. Metadata is not encrypted. Losing the key means losing access. SSE-C object copy is listed as unsupported.

  • Project-wide keys, documented S3 gaps, and hard limits

    By default each key pair can read and write every bucket in the same project unless you add bucket policies or split projects. Account limits include 100 buckets, 100 TB and 50 million objects per bucket, 5 TB max object, 5 GB per single PUT, 750 requests per second per bucket, and 10 Gbit/s per bucket. Notifications, website hosting, inventory, replication, and custom domains are not supported.

Assurance & compliance: Cyso Cloud vs Hetzner Object Storage
Assurance & complianceLogo: Cyso CloudCyso CloudLogo: Hetzner Object StorageHetzner Object Storage
Independent security / no-logs auditNon indicato
Not applicable

IaaS object store, not a no-logs VPN. Company publishes ISO 27001, BSI C5 Type 2, and annual TOM review instead.

ISO 27001Non indicato
Verified

Public ISO/IEC 27001:2022 certificate (SOCOTEC) for the ISMS covering Nuremberg, Falkenstein, and Helsinki parks. Confirm attested scope includes this SKU with your auditor.

SOC 2 / SOC 3Non indicato
Not found

Hetzner states it focuses on ISO 27001 rather than SOC 2.

GDPR / EU data protectionNon indicato
Vendor claimed

German entity; public privacy policy, Art. 28 DPA, TOMs, subprocessor list. Customer remains controller for data stored in buckets.

US CLOUD Act exposure (indicative)Non indicato
Partial

EU entity, no known US parent, Object Storage has no US region and no US-group storage backend. Group still includes Hetzner US LLC for other products. Not legal advice.

Data processing agreement (B2B)Non indicato
Vendor claimed

Standard DPA accept-in-console; sample PDF published; no custom wet-ink DPAs per vendor docs.

EU AI ActNon indicato
Not applicable

Object storage infrastructure, not an AI system product.

BSI C5 (cloud)Non indicato
Verified

Vendor publishes a BSI C5 Type 2 attestation PDF for cloud services. Confirm whether Object Storage is inside the attested cloud-service scope.

Considerations & known limitations: Cyso Cloud vs Hetzner Object Storage
Considerations & known limitationsLogo: Cyso CloudCyso CloudLogo: Hetzner Object StorageHetzner Object Storage
Partial S3 compatibilityNon indicato
Medium

Supported-actions list omits website hosting, notifications, inventory, replication, custom domains, SSE-KMS, and more. CopyObject may fail even in one location. Apps that assume full AWS S3 will break.

HDD tier, not a CDNNon indicato
Medium

Standard HDD only, no archive or flash classes. Hetzner says it is a poor fit for high-frequency small objects, low-latency apps, and large-scale public HTTP. Plan a CDN or different storage for those cases.

No default at-rest encryptionNon indicato
Medium

Objects are not encrypted at rest unless you use SSE-C and keep the key. Lost keys are unrecoverable. SSE-C copy is unsupported.

Single data center, no built-in replicationNon indicato
Medium

A bucket lives in one DC. There is no first-party cross-location replication. You must build DR yourself if one park outage is unacceptable.

Shared-cluster load and 503sNon indicato
Medium

Vendor docs describe cluster growth, bucket migrations, and temporary concurrency or upload limits (including 503 in Nuremberg under load). Shared tenancy can affect latency.

Group US and Singapore entitiesNon indicato
Low

This SKU is EU-only, but Hetzner Online GmbH has US and Singapore subsidiaries for other Cloud locations. Zero-US-footprint procurement may still reject the vendor.

Idoneità

Cyso Cloud

Best fit when

Non indicato

Poor fit when

Non indicato

Hetzner Object Storage

Best fit when

  • Teams already on Hetzner Cloud or dedicated servers that want an S3 endpoint under the same German contract
  • Backups, archives, dumps, and warm or cold blobs that fit write-once, read-many access
  • Workloads that can pin a bucket to Falkenstein, Nuremberg, or Helsinki and accept a single data center
  • Backup tools and apps that speak generic S3 (AWS CLI, rclone, MinIO client, Synology Hyper Backup)
  • Buyers who need object lock, versioning, or lifecycle expiry without US object-storage regions

Poor fit when

  • Apps that need Amazon S3 feature parity (events, website hosting, inventory, KMS, replication, storage classes)
  • CDN-style public delivery or high-frequency tiny-object / low-latency database use
  • Policies that require default provider-managed at-rest encryption (SSE-S3 or SSE-KMS)
  • Orgs that forbid any US subsidiary at group level even when this SKU stays in the EU
  • Buyers who need more than 100 buckets or first-party cross-location DR

Consider instead when

  • When: You need the full Amazon S3 feature set, storage classes, KMS, events, or global regions

    Consider: Amazon S3

    Accept US-group jurisdiction in exchange for catalog depth.

  • When: You want another European S3-compatible cloud without a Hetzner compute relationship

    Consider: Scaleway or OVHcloud

    Compare their object-storage regions, S3 gaps, and contract entities separately.

  • When: You are evaluating Hetzner VMs, bare metal, or the company as a whole

    Consider: Hetzner

    The company page covers IaaS and parks; this page is the bucket SKU only.

  • When: You want a smaller EU cloud with S3-oriented positioning

    Consider: Cyso Cloud

    Verify current regions and S3 compatibility on that product page.

Open questions for due diligence

Cyso Cloud

Non indicato

Hetzner Object Storage

  • Does your auditor accept Hetzner's park-level ISO 27001 and cloud C5 Type 2 for this object-storage SKU without a SKU-specific statement of applicability?
  • Can your application live with the documented S3 gaps (no events, website, KMS, replication, custom domain)?
  • Is a single data center per bucket acceptable, or do you need first-party multi-site replication?
  • Will you operate SSE-C key management yourself, or do you require provider-managed at-rest encryption?
  • Does group presence of Hetzner US LLC block you even if buckets stay in DE/FI?