Live data from Hacker News

Fastmail offers EU data region

fastmail.com

121–130 of 302 posts

Re: Fastmail offers EU data region

#121
post #119

As long as the company's legal headquarters are in the U.S., U.S. agencies have access to the data under the Cloud Act—and non-U.S. citizens have absolutely no legal recourse when it comes to U.S. services

their HQ is supposed to be in Melbourne, Australia

They mention it only briefly in their publication. Their about page is clearer about that.

Re: Fastmail offers EU data region

#122
post #9

EU data regions are a reflexive action by companies that try to hold on to their EU customers (and more and more are leaving, surprisingly the larger ones seem to be leading here). Realize that as long as you are still hosted on US owned infrastructure or that if there are US (or: five-eyes) owned companies anywhere in the stack your data can still be forcibly pulled and often without you being aware that this happen…

Does this still apply if there are separate legal entities for US & EU operations? Take Hetzner as an example. They have a separate US company to deal with their US data center. Would their EU servers be vulnerable to the CLOUD Act?

> Take Hetzner as an example.

Similar happened already with OVH Canada vs France.

> In an affidavit, Xavier Barriere, corporate counsel at OVH in Paris, describes the dramatic situation: If the important proponent of European data sovereignty were to comply with the Canadian order, those responsible in France would be committing a criminal offense. They face up to six months in prison and fines of up to 90,000 euros per violation. However, if OVH ignores the Canadian court, it faces contempt of court proceedings in Ontario, which can also lead to severe sanctions.

https://www.heise.de/en/news/Canadian-Court-OVHcloud-from-Fr...

And one comment here: https://news.ycombinator.com/item?id=46060903

Re: Fastmail offers EU data region

#123
post #115

If what you need is a guarantee that your data remains only in the EU, we don’t have that, and we’d rather tell you directly than let you assume otherwise. Is there an alternative that really keeps data in the EU? (And not only in the sense it serves a sales promotion)

https://mailbox.org/ Germany https://posteo.de/ Germany https://runbox.com/ Norway https://www.migadu.com/ Switzerland more: https://european-alternatives.eu/category/email-providers

Splendid, thank you. the european-alternatives.eu is exactly what helped! Appreciate it!

Re: Fastmail offers EU data region

#124

Or you can just use any of the actual European companies (I’m using Tuta). https://european-alternatives.eu/category/email-providers

I started using tuta until I realised they don't support IMAP. Something to do with not guaranteeing encryption (which isn't even enabled by default) but has the convenient effect of locking you into their apps

Re: Fastmail offers EU data region

#125

Earlier quoted context omitted.

That's true but the EU still has a - mostly - functioning legal system. See 'Schrems' and other lawsuits that came out as they should have.

Take a look at how they play with regards to chat control. The EU is just the same corrupt BS like D.C., only with a lot more virtue signaling.

Not nearly the same thing. Trump and his family have made billions. I cannot say the same of von der Leyen.

Re: Fastmail offers EU data region

#126

Posted on the previous submission for this: it’s a good start, but from the article: If what you need is a guarantee that your data remains only in the EU, we don’t have that, and we’d rather tell you directly than let you assume otherwise.

Wow they completely missed the ball on why people want reassurances that their data stays in the EU

they also said in the article it is dependent on them standing up a second EU region. this is simply an announcement of their first.

Re: Fastmail offers EU data region

#128
post #61

The article states that they do not offer any guarantee that my data will stay in the EU! I feel that that's the whole point. And the whole point of them making this article/advertisement.

How could they possibly guarantee such a thing? Do you only send and receive emails with people in the EU?

Your reply is dishonest. I obviously couldn't replicate the entire article, but I'm assuming everyone that reads my comment also has read the article. And so you know very well what I meant.

If you advertise foolproof safes, but they end up not in fact being exactly that very thing you advertised then I'm sure you will have a great reason as to why actually your 'foolproof' safe can not be foolproof and you never guaranteed such a thing in your tos.

But at the end of the day, you promised foolproof safes, and you did not deliver.

Your argument is "well if you leave the lock open then...". And the reply to that argument is that "yes, we all know". The fact that I the user can make a mistake, does not excuse the company from saying "well, anyway, he would have made a mistake anyway so why bother"

Re: Fastmail offers EU data region

#129
post #9

EU data regions are a reflexive action by companies that try to hold on to their EU customers (and more and more are leaving, surprisingly the larger ones seem to be leading here). Realize that as long as you are still hosted on US owned infrastructure or that if there are US (or: five-eyes) owned companies anywhere in the stack your data can still be forcibly pulled and often without you being aware that this happen…

True. Australia is part of the Five Eyes alliance. Fastmail is an Australian company. Australia also has the Assistance and Access Act - https://havenmessenger.com/blog/posts/australia-assistance-a... - which just stops shy of asking Australian tech companies, like Fastmail, to build backdoors into their products so that the government can "legally access" data from them. (When the law passed, Fastmail lost many clients - https://www.itnews.com.au/news/fastmail-loses-customers-face... ).

Re: Fastmail offers EU data region

#130
post #9

EU data regions are a reflexive action by companies that try to hold on to their EU customers (and more and more are leaving, surprisingly the larger ones seem to be leading here). Realize that as long as you are still hosted on US owned infrastructure or that if there are US (or: five-eyes) owned companies anywhere in the stack your data can still be forcibly pulled and often without you being aware that this happen…

Yeah, this does absolutely not solve the CLOUD Act issues. However , it is good to look at what the ramifications of the CLOUD Act is for e-mail: - The US could request your data. You probably shouldn't use e-mail for anything sensitive anyway for many reasons. E-Mail was traditionally not encrypted and I think that many servers still allow plain-text communication. The protocols are old and there are all kinds of do…

Something like 99% of email is now done over TLS.
Post reply on HN