{"id":2718,"date":"2021-11-02T00:43:50","date_gmt":"2021-11-01T23:43:50","guid":{"rendered":"https:\/\/www.saskialund.de\/?p=2718"},"modified":"2026-03-26T18:22:38","modified_gmt":"2026-03-26T17:22:38","slug":"data-cloud-dsgvo-compliant-an-alternative-to-dropbox-google-drive-one-drive-and-consorten","status":"publish","type":"post","link":"https:\/\/isla-stud.io\/en\/ratgeber\/daten-cloud-dsgvo-konform-eine-alternative-zu-dropbox-google-drive-one-drive-und-konsorten\/","title":{"rendered":"Data cloud GDPR-compliant? An alternative to Dropbox, Google Drive, One Drive and the like."},"content":{"rendered":"<p>I have integrated the Dropbox cloud service into my infrastructure for many years:<br>All backups, customer assets (graphics, images, text files and documents, Excel lists and database exports) that were required for the development of web projects were saved in my Dropbox.<br>It was easy to share data with my clients using the Dropbox sharing functionality. Collaboration on documents was possible and much more.<\/p>\n\n\n\n<p>So as a freelance developer, I bought a business plan from Dropbox: the Professional plan with 3TB storage volume and lots of great features.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" src=\"https:\/\/isla-stud.io\/wp-content\/uploads\/2021\/11\/dropbox-abos-im-vergleich.png\" alt=\"Dropbox - Abos im Vergleich\" data-no-translation=\"\" data-no-auto-translation=\"\"\/><\/figure>\n\n\n\n<p>After the new GDPR regulations came into force in the EU in May 2018, I contacted Dropbox customer service to find out how I could use Dropbox as a business customer in a GDPR-compliant manner in future. I was informed that solutions would be made available shortly.<\/p>\n\n\n\n<p>In fact, however, the EU Privacy Shield agreement was ultimately only invoked and no solution was provided. For companies and individual businesses based in the EU, it ended up being a legal gray area. <a href=\"https:\/\/www.dropbox.com\/privacy\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">To this day, Dropbox refers to this in its privacy policy<\/a> to the resolution passed on 16.07.2020 by the <a href=\"https:\/\/www.haendlerbund.de\/de\/news\/aktuelles\/rechtliches\/3475-eugh-urteil-datenuebermittlung-usa-privacy-shield\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">ECJ invalidates EU Privacy Shield with legal effect<\/a>.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-resized\"><a href=\"https:\/\/www.privacyshield.gov\/participant?id=a2zt0000000GnCLAA0&amp;status=Active\" target=\"_blank\" rel=\"nofollow noopener\"><img decoding=\"async\" src=\"https:\/\/isla-stud.io\/wp-content\/uploads\/2021\/11\/privacy-shield_Dropbox.png\" alt=\"\" style=\"width:1019px;height:376px\" data-no-translation=\"\" data-no-auto-translation=\"\"><\/a><\/figure>\n\n\n\n<p>Although EU standard contractual clauses have now been integrated into Dropbox's data protection guidelines, this is unfortunately not sufficient for Dropbox to be used as a German company. The locations of the servers on which the data is stored must also be in the EU. And it is precisely this data migration to a server in the EU that Dropbox only offers under the following conditions:<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>You must subscribe to at least the Business Standard tariff<\/li>\n\n\n\n<li>At least 10 users must be booked<\/li>\n\n\n\n<li>A subscription with annual billing must be taken out<\/li>\n<\/ol>\n\n\n\n<p>The Dropbox in my Business Professional plan with only one user is not sufficient for this. The annual price for Business Professional is \u20ac 198.96 \/ year, but the annual price for the above-mentioned minimum tariff for \u201csomehow\u201d GDPR-compliant operation of Dropbox is at least \u20ac 1200 \/ year.<\/p>\n\n\n\n<p>I only received this information from Dropbox Business Support a few days ago. I then researched ways to still be able to use Dropbox in a GDPR-compliant way - even without being able to migrate my data to the EU. In the process, I found a very <a title=\"Affiliate link to the Boxcryptor website :)\" href=\"https:\/\/www.boxcryptor.com\/app\/referral\/?code=QVOTjhLPP0aZmoYc\" target=\"_blank\" rel=\"noreferrer noopener sponsored nofollow\">promising tool called Boxcryptor<\/a>. Boxcryptor first encrypts the data before storing it in Dropbox. The operating company has its headquarters and server location in Germany, an ISO\/IEC 27001:2013-certified data center and can also securely encrypt the data that is to be stored in iCloud, Microsoft OneDrive, Google Drive and many other US cloud providers (currently 30 providers are supported) in advance, thus protecting it from unauthorized access. <a href=\"https:\/\/www.boxcryptor.com\/de\/?code=QVOTjhLPP0aZmoYc\" target=\"_blank\" rel=\"noreferrer noopener sponsored nofollow\">Info about Boxcryptor<\/a><\/p>\n\n\n\n<p>Boxcryptor also offers a sharing service that makes it possible to share encrypted files via a share link - very similar to the native Dropbox file sharing function. The <a href=\"https:\/\/whisp.ly\/de\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Sharing service from Boxcryptor is called Whisply<\/a> and works browser-based.<\/p>\n\n\n\n<p>A great idea in itself and very functional. But I found this \u201cworkaround\u201d cumbersome during testing. And my customers were still not guaranteed an EU server location. However, some insisted on this.<\/p>\n\n\n\n<p>So there was only one option for me: ditch Dropbox and store my work data on a self-hosted server in Germany. So I went in search of an open source cloud storage script that would <\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>has a release feature on board, <\/li>\n\n\n\n<li>that I can run on my own server, <\/li>\n\n\n\n<li>that is accessible from my other devices via app and <\/li>\n\n\n\n<li>ensures perfect synchronization.<\/li>\n<\/ul>\n\n\n\n<p>My software solution is called \u201cSeafile\u201d. Up to a maximum of 3 users can use the Pro version with a free license. But also for small and larger teams <a href=\"https:\/\/www.seafile.com\/en\/product\/private_server\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Seafile price<\/a> interesting. <\/p>\n\n\n\n<p>I registered a user account on seafile.com and got access to the source files, the Github repository of Seafile and the extensive documentation. I then set up a LEMP stack on one of my <a href=\"https:\/\/www.netcup.de\/vserver\/\" target=\"_blank\" rel=\"noreferrer noopener sponsored nofollow\">root server at the company Netcup GmbH<\/a> (Simply enter the voucher code for new customers worth \u20ac 5 during the order process: <code>36nc16160577660<\/code>) in Karlsruhe for use with Seafile: Ubuntu 20.04 LTS, Nginx, MariaDB, a subdomain with a proxy setup for Seafile, PHP 7.4 and 8.x were also installed in addition to the Python libs required for the tool.<\/p>\n\n\n\n<p>I then installed Seafile on the prepared server and put my new GDPR-compliant company cloud into operation. I removed all the data from my Dropbox, moved the data on my local computer to the new Seafile directory and started the synchronization. Both the installation and the setup went smoothly and without any problems.<\/p>\n\n\n\n<p><strong>Addendum on 18.11.2021:<\/strong> Even now, after some time of productive use, I am still very satisfied with this solution. It works flawlessly and is even much faster and better performing than my Dropbox ever was when syncing.<\/p>\n\n\n\n<p><strong>Addendum on 21.03.2023: <\/strong>In the meantime, I have found a data protection-compliant cloud solution for less tech-savvy users. The product <a href=\"https:\/\/www.hetzner.com\/de\/storage\/storage-share\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Storage Share from Hetzner <\/a> - e.g. 5TB pre-installed Nextcloud for only \u20ac 16.89 \/ month.<\/p>\n\n\n\n<p>What do you think about these solutions? How have you solved the cloud storage issue in your company?<br>I look forward to your answers in the comments section.<br><\/p>","protected":false},"excerpt":{"rendered":"<p>In order to meet the concerns of data protection officers and my customers as well as the provisions of the GDPR, I changed the cloud infrastructure of my office: a self-hosted server in Germany in combination with Seafile was the best solution for me.<\/p>","protected":false},"author":1,"featured_media":2723,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_et_pb_use_builder":"","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[13,37],"tags":[],"dipi_cpt_category":[],"class_list":["post-2718","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ratgeber","category-rechtliches"],"acf":[],"_links":{"self":[{"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/posts\/2718","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/comments?post=2718"}],"version-history":[{"count":1,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/posts\/2718\/revisions"}],"predecessor-version":[{"id":3575,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/posts\/2718\/revisions\/3575"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/media\/2723"}],"wp:attachment":[{"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/media?parent=2718"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/categories?post=2718"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/tags?post=2718"},{"taxonomy":"dipi_cpt_category","embeddable":true,"href":"https:\/\/isla-stud.io\/en\/wp-json\/wp\/v2\/dipi_cpt_category?post=2718"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}