Nextcloud
Germany· Cloud Computing
Confronta Nextcloud e Wire su capacità, giurisdizione, garanzie e idoneità per acquirenti europei.
Germany· Cloud Computing
Switzerland· Groupware
Needs review
Shortlist Wire when you need always-on E2EE collaboration (MLS), Swiss legal entity, open-source clients/server, and a credible path from EU cloud to on-prem/federation. Skip when you need deep Microsoft 365/Slack app ecosystems or a pure non-AWS/US-SaaS subprocessor footprint—consider Nextcloud Talk or a Germany-hosted managed messenger such as ginlo Business instead.
Le righe evidenziate differiscono tra i due prodotti.
| Caratteristica | ||
|---|---|---|
| Paese di origine | ||
| Categoria | Cloud Computing | Groupware |
| Open source | Sì | Sì |
| Self-hosted | Sì | Sì |
| Sede | Non indicato | Switzerland |
| Soggetto giuridico | Non indicato | Wire Swiss GmbH (CHE 432.881.146), Untermüli 9, CH-6300 Zug; EU rep Wire Germany GmbH, Berlin |
| Legge applicabile | Non indicato | Swiss law (business ToU for non-US use); jurisdiction Zurich |
| Capogruppo / controllo USA | Non indicato | Nessuna capogruppo USA nota |
| Esposizione CLOUD Act (indicativa) | Non indicato | Medio |
| Hosting / residenza | Non indicato | Cloud: servers in Germany and Ireland per security pages; DPA lists Amazon Web Services EMEA SARL for hosting (EU). Other subprocessors include Google Cloud EMEA (email), Zendesk, HubSpot, Salesforce (Germany processing location stated), Stripe (USA/SCCs), Box, ContractHero, Countly (Germany), Wire Germany GmbH. On-prem customers host in their own environment. |
| Riassunto | Open-source, self-hosted content collaboration Hub from Nextcloud GmbH (Germany): Files, Talk, Groupware, Office, local AI Assistant, and Flow—an on-prem alternative to Microsoft 365-style suites. | Swiss open-source secure messenger from Wire Swiss GmbH: always-on E2EE messaging, calls, and files (MLS), cloud or on-premises, for regulated teams and public sector. |
| Tag |
| A colpo d'occhio | ||
|---|---|---|
| HQ | Non indicato | Zug, Switzerland (Wire Swiss GmbH) |
| EU representative | Non indicato | Wire Germany GmbH, Berlin |
| Product | Non indicato | E2EE messenger + calls + files; optional Drive |
| Deployment | Non indicato | EU cloud and/or on-prem / private cloud |
| Open source | Non indicato | Yes (clients GPL-3; server AGPL-3) |
| Hosting (cloud) | Non indicato | DE/IE regions; AWS EMEA (per DPA) |
Sincronizzazione e condivisione file sicura
Sincronizzazione crittografata tra dispositivi, con link pubblici, permessi e scadenza. Vantaggi: accesso remoto sicuro, nessuna perdita di dati — ideale per team con file sensibili.
Collaborazione in tempo reale e Office
Integrazione Collabora/OnlyOffice per editing documenti live. Talk abilita chat e videoconferenze. Produttività come Google Workspace, ma self-hosted per la privacy.
Groupware e suite di produttività
Calendario, contatti, mail e attività in un'app. Flow automatizza i flussi di lavoro; Assistant usa IA locale per traduzioni e riepiloghi. Centralizza gli strumenti, riducendo la proliferazione di app.
Always-on MLS / E2EE for chat, calls, and files
Messaging, conference calls, and in-app file shares are end-to-end encrypted by default—no toggle. Wire markets full-product MLS (IETF Messaging Layer Security) for scalable group key exchange, alongside Proteus/Double Ratchet heritage for pairwise messaging and SRTP/DTLS for calls. Suits orgs that reject optional encryption modes.
Guest rooms and external collaboration
Invite outsiders into E2EE conversations via guest rooms in the browser without requiring a full account download, plus external team members with lifecycle controls (removal drops their history access). Practical for contractors, clients, and inter-org projects that must stay off consumer WhatsApp.
Cloud, on-premises, air-gap, and federation
Run managed Wire Cloud or deploy on-premises/private cloud—including air-gapped networks—with optional federation between isolated Wire backends and admin control over which backends may interconnect. Aimed at governments and CNI that cannot accept pure SaaS only.
Enterprise identity: SSO, SCIM, and admin policy
Enterprise tier adds SAML-based single sign-on, SCIM provisioning, and granular admin controls (for example enforce app lock, restrict self-deleting messages). Built for complex directories rather than only self-serve SMB signup.
Open-source clients, server, and crypto
Wire publishes client, server (wire-server, AGPL-3.0), and core-crypto components on GitHub for independent review. Multi-device accounts (up to 8 devices) with ID Shield certificate-based device verification reduce manual fingerprint workflows while keeping device trust visible.
| Assurance & compliance | ||
|---|---|---|
| Independent security / crypto audit | Non indicato | Partial Vendor publishes Security/Privacy whitepapers and states external pen tests and ISO audits in TOMs; public third-party audit PDFs (e.g. historic Kudelski/X41 claims in secondary sources) were not re-verified as current primary evidence during this draft. |
| ISO 27001 | Non indicato | Vendor claimed Asserted on Wire security marketing page; request certificate in procurement. |
| ISO 27701 | Non indicato | Vendor claimed Asserted alongside ISO 27001 on security page; not independently verified here. |
| SOC 2 / SOC 3 | Non indicato | Not found No public SOC 2/3 claim located on security/legal pages during research. |
| Cyber Essentials (UK) | Non indicato | Vendor claimed Asserted on security page as UK government-backed baseline certification. |
| GDPR / EU data protection | Non indicato | Vendor claimed Swiss FADP controller; GDPR for EU/EEA individuals; EU Art. 27 representative Wire Germany GmbH; public privacy policy and DPA. |
| US CLOUD Act exposure (indicative) | Non indicato | Partial Swiss entity / no known US parent, but AWS EMEA hosting and US-parent SaaS subprocessors (Stripe, HubSpot, Salesforce, Zendesk corporate groups; APNs/FCM push). Not legal advice. |
| Data processing agreement (B2B) | Non indicato | Vendor claimed Public Art. 28 GDPR Processing Agreement with TOMs and Annex 2 subprocessor list (updated March 12, 2025 on page). |
| EU AI Act | Non indicato | Not applicable Secure messaging/collaboration product; not marketed as an AI system core offering. |
| Considerations & known limitations | ||
|---|---|---|
| AWS EMEA + US-parent SaaS subprocessors | Non indicato | Medium Even with DE/IE regions and a Swiss controller, cloud tenants depend on AWS EMEA and several US-group tools for hosting, CRM, support, or payments. On-prem reduces hosting dependency but not necessarily all vendor-side SaaS. |
| Wire Drive is not client-side E2EE | Non indicato | Medium DPA distinguishes messenger E2EE from Drive encryption-at-rest with possible operator access. Misclassifying Drive as zero-knowledge chat storage creates compliance risk. |
| ISO / Cyber Essentials need certificate proof | Non indicato | Low Certifications are prominently claimed on marketing pages but should be validated with current certificates and scope statements before audit reliance. |
| Mobile push via APNs/FCM | Non indicato | Low Standard mobile delivery path involves Apple/Google push infrastructure for wake-ups; Wire states content is not shared. F-Droid build available to avoid FCM. |
Non indicato
Non indicato
When: You want a German managed business messenger with AD/LDAP cockpit and no self-host requirement
Consider: ginlo Business
Stronger Germany-hosting contract language; weaker open-source/on-prem story than Wire
When: Chat is secondary to self-hosted files, calendars, and groupware you already run
Consider: Nextcloud (Talk / groupware)
Broader collaboration suite; different crypto/admin model than Wire MLS messenger
When: You need the Microsoft 365 or Slack ecosystem more than E2EE-by-default
Consider: Microsoft Teams or Slack
Richer workplace integrations; weaker default E2EE and European sovereignty story
Non indicato