all 20 comments

sorted by: hot top controversial new old
[–] [S] 55 points 1 year ago* (3 children)

IMHO every contract from any level in government should stipulate that data can't leave the EU without explicit consent. That would build up EU cloud providers since the big 3 would all be excluded.

  • source
  • hideshow 6 child comments
  • [–] 21 points 1 year ago (1 child)

    The US PATRIOT Act makes data storage location irrelevant. If the USA sanctions your country, the cloud gets turned off whether the data centre is local or not.

    The USA is able to exercise soft power around the world because of and through its control of finance and now data.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 26 points 1 year ago

    I think you missed OPs point. They shouldn't use data centres of US american companies even if they're located in the EU because they already can't guarantee that data isn't leaving the EU. CLOUD Act is more relevant here than the USA PATRIOT Act.

  • source
  • parent
  • [–] 10 points 1 year ago

    data can’t leave the EU without explicit consent

    This is already more or less the norm for many services, because of the GDPR and the ePrivacy directive, especially if you're handling special personal data categories, and/or the service is for a government entity. There's some caveats to this, but on a general level that's already how things are.

    But as was pointed out, the problem isn't getting folks to host things in the EU since it's not like only European companies have data centers in the EU, but to use European cloud providers. Vendor lock-in is a real issue, however; no European provider can give you what AWS or GCP can, and migrating to something else might require a lot of work depending on which services you've been using.

  • source
  • parent
  • [–] 5 points 1 year ago (2 children)

    microsoft alone has like 25 datacenters in the EU.

  • source
  • parent
  • hideshow 4 child comments
  • [–] 23 points 1 year ago (1 child)

    They do not mean anything if they are not GDPR Business compliant. They can not guarantee the inaccessability by us gov branches. The EU needs solutions independent off the haircolor of the next US President.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 1 point 1 year ago

    i mean they're not allowed to do business here if they aren't. i'm not saying they are, but they put up a good enough faΓ§ade that governments trust them, and they haven't been caught yet.

  • source
  • parent
  • [–] 6 points 1 year ago* (1 child)

    But they are a US company and US law can subpoena EU data without EU gov authorisation, so the fact their DC's are in the EU is basically irrelevant.

    Should the EU use Russian or Chinese DC's based in the EU?

  • source
  • parent
  • hideshow 2 child comments
  • [–] 1 point 1 year ago

    it's required by law that they disclose that in their SLA, which means that when governments question it they at least say that they're making exceptions. apparently that's good enough, but it probably doesn't stand up to an independent audit.

  • source
  • parent
  • [–] 23 points 1 year ago (1 child)
  • [–] 12 points 1 year ago (2 children)

    Should Europe be prepared for the US not being as friendly as it was though?

  • source
  • hideshow 4 child comments
  • A rare case of betteridge not applying

  • source
  • [–] 8 points 1 year ago

    Its rhetorical question, right?

  • source
  • [–] 2 points 1 year ago

    I certainly hope we go further than that and also cut down on Chinese solar inverters, dubious smarthome/cloud appliances... And I wish we don't buy too many US weapon systems now that we invest in war/defense, so Trump can't just blackmail us with the ammunitions supply.

  • source
  • [–] -2 points 1 year ago (1 child)

    Should Europe wean itself off US tech?

    Robin Berjon, a digital governance specialist, says Europe should take the risk of a US "kill switch" seriously

  • source
  • hideshow 2 child comments