Cyso Cloud
Netherlands· Cloud Computing
Confronta Cyso Cloud e Leafcloud Object Storage su capacità, giurisdizione, garanzie e idoneità per acquirenti europei.
Netherlands· Cloud Computing
Netherlands· Cloud Computing
Needs review
Shortlist Leafcloud Object Storage when you want an S3-compatible Ceph bucket in Amsterdam under Leafcloud B.V., with a public ISO 27001 certificate and a downloadable DPA. Skip when you need object versioning, multi-region replication, or AWS-parity S3 features. Consider Cyso Cloud for Dutch OpenStack storage with versioning and a Frankfurt option, or OVHcloud / Scaleway for a wider EU region map.
Le righe evidenziate differiscono tra i due prodotti.
| Caratteristica | ||
|---|---|---|
| Paese di origine | ||
| Categoria | Cloud Computing | Cloud Computing |
| Open source | Sì | No |
| Self-hosted | No | No |
| Sede | Non indicato | Netherlands |
| Soggetto giuridico | Non indicato | Leafcloud B.V., Amsterdam (KvK 78564417). Site: Science Park 400. DPA/ISO: Overhoeksplein 2. |
| Capogruppo / controllo USA | Non indicato | Nessuna capogruppo USA nota |
| Esposizione CLOUD Act (indicativa) | Non indicato | Basso |
| Hosting / residenza | Non indicato | Objects at Amsterdam Core (europe-nl-ams1), Ceph 3x. DPA (Jan 2026): no subprocessors for core compute/storage/networking; no third-country transfers unless customer-instructed. Terms mention EU partner data centres; Core operator unnamed. Privacy allows unnamed account-data suppliers (invoicing, messaging). Site analytics: self-hosted Matomo. Not AWS/GCP/Azure-hosted. |
| Riassunto | Dutch OpenStack IaaS from Cyso B.V. with AMS/FRA regions, managed Kubernetes (KCSP), S3-compatible object storage, and EU data residency for teams avoiding hyperscaler lock-in. | Dutch S3-compatible object storage from Leafcloud B.V. Ceph-backed buckets in Amsterdam via leafcloud.store, plus OpenStack Swift, for backups, app data, and public objects. |
| Tag |
| A colpo d'occhio | ||
|---|---|---|
| Legal entity | Non indicato | Leafcloud B.V., Amsterdam; KvK 78564417 |
| S3 endpoint | Non indicato | https://leafcloud.store (region europe-nl-ams1, path-style) |
| Backend | Non indicato | Ceph; also OpenStack Swift / Horizon |
| Residency | Non indicato | Amsterdam Core, Netherlands (single region) |
| Commercial model | Non indicato | Pay for stored capacity; B2B invoicing; vendor states no API request fees |
| Hard limit | Non indicato | No object versioning; max object 5 TB |
| Key capabilities | ||
|---|---|---|
| S3-compatible (leafcloud.store) | Non indicato | Sì |
| Amsterdam residency | Non indicato | Sì |
| Ceph 3x replication | Non indicato | Sì |
| ISO 27001 (public cert) | Non indicato | Sì |
| Public DPA | Non indicato | Sì |
| No object versioning | Non indicato | Sì |
Istanze compute scalabili
Le istanze si lanciano in secondi con flavor adatti ai workload: standard (bilanciato), CPU-optimized (fino a 64 vCPU) o memory-optimized (fino a 512 GB RAM). Lo storage effimero è legato al ciclo di vita dell'istanza; i volumi persistenti offrono tripla replicazione e scaling IOPS (5-25 per GB). Le tariffe orarie partono da 0,026 € per specifiche entry-level, abilitando matching costi preciso senza overprovisioning.
Object storage compatibile S3
Progettato per backup e dataset grandi, offre capacità illimitata con SLA uptime 99,99%. I drive NVMe garantiscono bassa latenza; i dati restano nelle regioni UE selezionate. Prezzi: 0,055 €/GB storage, ingress gratuito, 0,055 €/GB egress. Le operazioni costano 0,055 € per 10.000 richieste PUT/LIST, supportando accesso REST API per integrazione fluida.
Kubernetes gestito
Enterprise Managed Kubernetes (EMK) include control plane a 29,99 € mensili (HA a 59,99 €), con aggiornamenti automatizzati e ibernazione per risparmio costi. Lo SLA 99,9% copre cluster ad alta disponibilità. Gli utenti deployano via dashboard; funzioni come autoscaling gestiscono carichi variabili. La documentazione guida il setup in minuti.
S3 API at leafcloud.store (europe-nl-ams1)
Path-style S3 endpoint https://leafcloud.store, region europe-nl-ams1. Works with AWS CLI, boto3, rclone, Cyberduck, MinIO mc, and other S3 SDKs. Documented features include public or private containers, bucket policies and ACLs, multipart uploads, and presigned URLs. Max object size is 5 TB via multipart. Authentication uses OpenStack EC2 credentials (openstack ec2 credentials create), not the dashboard password.
OpenStack Swift and Horizon dashboard
The same store is reachable as OpenStack object storage (Swift). Create and browse containers at create.leaf.cloud under Object Store. Native CLI uses project-scoped OpenStack auth (openstack container create / object create). Container names must be unique across all Leafcloud users. Docs say there is a limit on how many containers you can create (the exact quota is not published).
Ceph cluster with 3x replication in Amsterdam
The product page describes a Ceph backend (Apache 2.0 software) with triple replication across separate physical nodes in Amsterdam. Persistent objects sit at the Core facility. Compute Leaf sites are a different path and are not where object data is stored, according to the security pages. This is a single-region store, not a multi-region S3 deployment.
SSE-C plus TLS in transit
Official docs show S3 server-side encryption with customer-provided keys (SSE-C, AES256). Leafcloud uses the key on each request and does not store it. Lose the key and you cannot read the object. The product table also lists encryption at rest and TLS in transit as supported. DPA language is TLS 1.2+. LUKS-by-default messaging on the security pages refers to block volumes, not this object API.
Terraform state, Velero, and Nextcloud recipes
Leafcloud publishes working recipes for Terraform’s S3 backend (path-style, skip checksum/region checks, endpoint leafcloud.store), Velero Kubernetes backups (s3ForcePathStyle plus s3Url), and Nextcloud primary objectstore pointing at leafcloud.store:443. Useful if you already run those tools. Object versioning is not available, so state and backup designs must version keys themselves or copy out.
| Assurance & compliance | ||
|---|---|---|
| Independent security / no-logs audit | Non indicato | Not found No public independent no-logs or object-store-specific audit PDF found. SOC 2 Type II is a separate row and is under NDA. |
| ISO 27001 | Non indicato | Verified Public ProCertify certificate 10112025.1 for LeafCloud B.V.: ISO/IEC 27001:2022 + Amd1:2024. Scope: information security for cloud services, infrastructure, and supporting processes. Valid 10 Nov 2025 to 10 Nov 2028. SoA v3.1 dated 5 Aug 2025. Read from the vendor-hosted PDF; not re-checked on an external accreditation database. |
| SOC 2 / SOC 3 | Non indicato | On request / NDA Vendor and DPA claim SOC 2 Type II (security, availability, confidentiality). Compliance page: request access by email. Report not reviewed for this draft. |
| GDPR / EU data protection | Non indicato | Vendor claimed Dutch B.V.; public DPA under Dutch law; vendor states Amsterdam-only processing and no third-country transfers unless instructed. Confirm roles (controller/processor) for your workload. |
| US CLOUD Act exposure (indicative) | Non indicato | Partial EuropeanStack assessment: EU entity, no known US parent, DPA says no core subprocessors and NL-only processing. Partial because ownership was not independently verified and terms/privacy still allow partner data centres plus unnamed account-data suppliers. Not legal advice. |
| Data processing agreement (B2B) | Non indicato | Vendor claimed Standard DPA dated January 2026 is public and states it applies automatically (no signature). Custom DPA on request. Governing law: Netherlands; courts of Amsterdam. |
| HAVEN+ (Dutch public sector) | Non indicato | Not found Security FAQ: HAVEN+ certification is in progress, not achieved. Do not treat as certified. |
| EU AI Act | Non indicato | Not applicable Object storage / IaaS SKU, not an AI system product. |
| Considerations & known limitations | ||
|---|---|---|
| Object versioning disabled | Non indicato | High The product table states versioning is not enabled. Overwrites and deletes are not recoverable via S3 versions. Unsafe as a sole Terraform-state or backup target unless you version keys yourself or replicate out. |
| Amsterdam-only region | Non indicato | Medium One S3 region (europe-nl-ams1). No documented cross-region replication. Multi-country DR or non-NL residency needs another provider. |
| Baseline SLA is a non-binding target | Non indicato | Medium Terms target more than 99.9% monthly availability without credits on the baseline SLA. Customers must keep their own backups. Premium SLA only if agreed in writing. |
| Core facility operator not named | Non indicato | Medium DPA says no core subprocessors. Terms mention partner data centres. Public pages do not name the Tier III Core operator. Request that name in contracting. |
| Incomplete S3 feature parity | Non indicato | Low Custom domains are support-gated. Static hosting is basic. Do not assume lifecycle, object lock, or inventory APIs without a proof of concept. |
Non indicato
Non indicato
When: You need Dutch or German OpenStack object storage with versioning and more than one EU region
Consider: Cyso Cloud
Cyso documents AMS and FRA and lists versioning, lifecycle, and object lock on object storage.
When: You need many European locations and a larger IaaS catalogue than a single Amsterdam Ceph cluster
Consider: OVHcloud or Scaleway
Broader region maps; different APIs, SLAs, and ownership stories.
When: German locations and a large self-serve European hosting catalogue matter more than OpenStack Swift
Consider: Hetzner
Compare object storage vs Storage Box features and residency independently.
When: Swiss multi-zone IaaS with S3-compatible storage is the sovereignty filter
Consider: Exoscale
Different legal seat (Switzerland) and product mix.
When: You depend on versioning, replication, IAM, and KMS that only the hyperscaler S3 estate provides
Consider: Amazon S3 (or Google Cloud Storage)
Trade EU ownership for feature depth. Apply your own CLOUD Act analysis.
Non indicato