We're hiring new talents!

Confidential Nextcloud

A secure and reliable way to store, manage and share data with customers and partners with the gold standard of data sovereignty.

Easy. Fast. Secure.

Use Nextcloud collaboration capabilities with the extra layer of security, without compromising functionality, usability, and performance.

Nextcloud Gold Partner

Gold
Partner

As premium partner, enclaive works closely with Nextcloud and offers a powerful, managed applications tailored to individual customer needs. Confidential Nextcloud was certified by Nextcloud as part of a comprehensive system audit.

Certified Infrastructure

Hosted on a high-performance environment meeting the highest data security and privacy standards. Confidential Nextcloud runs in German ISO-27001 datacenters, provides superior TOMs and complies with DSGVO/GDPR and other confidentiality regulations.

Data
Blindbox

enclaive’s cutting-edge data blindbox technology shields data and automates encryption. Any exchanged data is 3D encrypted: in use, transit and at rest, making it impossible to access the data by unauthorized parties. 

Strengthening Collaboration: Enhancing Security in Teamwork

Exchange data securely, with the highest industry standards for data protection. 

Strengthen your Ransomware resilience.

The ideal solution for file exchanges 

Enterprises, small to medium businesses, and agencies now have the perfect collaboration solution.

Nextcloud data management means you’ll be able to collaborate fast, easily and securely with clients and partners while smoothly distinguishing between private and shared documents, files, and folders. Advanced rights management puts you in control of all data at all times. 

Embedded functionalities such as the comment option or advanced synchronization across devices, provides a comprehensive solution to fit any teamwork-specific requirements.

Always encrypted Files in the cloud

Leveraging Confidential Computing, the confidential environment establishes the highest level of application security and data privacy without putting even a bit of an extra burden on the user or his operation.

Confidential Nextcloud runs within a high-security encrypted execution environment providing the capability for the reporting and auditing requirements you may face. 

Compliance with § 203 StGB, § 43a BRAO, § 5 BOStB, and § 9 BO

The enclaive Confidential Nextcloud is committed to providing you with the required level of data protection to comply with DSGVO/GDPR data privacy.

It is the only choice for medical, legal and tax advisors and regulated industries obligated to protect, maintain and enforce the confidentiality of clients, patentiants, and customers.

Choose your Confidential Nextcloud package

Seamless access at any time

Connect and access any data from any device at any time effortlessly and completely secure with Confidential Nextcloud.

Confidential Nextcloud in action

See in a short video on how the Confidential Nextcloud strengthens your collaboration with enhanced  features.

Top security.
Peak performance.

The underlying infrastructure is built, run and operated from within the EU. The ISO 27001-certified data centres are among the most secure in the world. Continuous maintenance makes sure our network, hardware and software components are kept up to date.

Being among the globally leading confidential computing innovators, we rely on state-of-the-art security technology to cover all eventualities. We perform and mirror backups daily, and keep your data safe from DDoS attacks and Ransomware.

How we stack up

See how Nextcloud compares to these popular closed-source services, and switch to a more open and transparent solution to protect your data!

Licensing Open source
open source = any OSI approved license. Anything else is proprietary.
Proprietary
open source = any OSI approved license. Anything else is proprietary.
Proprietary
open source = any OSI approved license. Anything else is proprietary.
Proprietary
[ownCloud Enterprise Edition] open source = any OSI approved license. Anything else is proprietary.
Proprietary
open source = any OSI approved license. Anything else is proprietary.
Proprietary
open source = any OSI approved license. Anything else is proprietary.
Proprietary
open source = any OSI approved license. Anything else is proprietary.
Proprietary
open source = any OSI approved license. Anything else is proprietary.
Unlimited storage and amount of files
Limits imposed by either the purchased plan or your own infrastructure when self-hosting.
The limit is customer infrastructure. There are no limits from the Nextcloud side.
Varies per plan Varies per plan Max 10 TB
Large file support 10GB 5GB 10GB 20GB 25GB
Global Scalability
Sharding across clusters and data centers
Single cluster: up to 100K active users. With Global Scale: unlimited.
5K in one group, 10K for educational organizations, unclear limits otherwise.
Some limitations exist but nothing is clearly documented.
2K users in a share, more limits exist but not clearly documented.
Unclear
Various file limitations exist, unclear user limits.
Clients
Mobile clients                     
Free version only supports up to 3 client devices total.
  
Auto upload Images/Video/other files  / / / / *
Can do files with external app.
/ / *
Can be done with external app.
/ / / / *
Only paid. Files can be done with external app.
/ / *
Extra paid feature. Files can be done with third party app.
/ / *
Files can be done with third party app.
/ / *
Desktop clients                         
Free version only supports up to 3 client devices total.
  
LAN synchronization
Extensible with Apps
Allows third party to write apps that integrate apps in the cloud itself, adding functionality.
Over 200 apps available.
No third-party apps that can be integrated.
Limited to Microsoft Apps.
Over 70 apps available.
Limited Microsoft office integration.
No third-party apps that can be integrated.
Limited Microsoft office integration.
Pretty wide range of apps.
Server features
Unified Search
Cross-application search (Calendars, mails, chat messages, files etc).
Full-text search costs money, cross-application search free.
Full-text search paid, cross-app search not available.
Full-text search only in paid versions, with 365 integration no cross-app search.
File versioning Limited Limited
Only for MS Office files.
Limited
25–50 revisions depending on plan.
Limited
Max 1 month, up to 1 year with Business subscription.
Limited
Max 3 revisions.
File locking/Checkout
Block a file temporarily from being edited while you work offline with it.
Does NOT block collaborative editing.
*
Not available in web UI or WebDAV.
Only for business edition.
Multiple link shares
Share note
Add a note for the share.
Dashboard
Dashboard app with overview of info like recent files, chats, calendar items and more.
Admins have a dashboard, users not.
View PDF, Images, Video, Gallery
Integrated Audio/Video/Text chat / / / / / / / /
Unsupported.
/ / / / / / / /
Integrated Groupware (Calendar / Contacts / Mail / Kanban) / / / / / / / / / /
Only as unsupported (Nextcloud-developed) third party apps.
Not natively, third party app.
/ / / / /
G = through Google Apps
/
Mobile calendar/Contact integration /
Both Android/iOS (Android with integrated 3rd party tool).
/
Unsupported. Available for iOS, Android possible with tool from Nextcloud partner.
Online Office web/ Mobile apps
Online Office web / mobile apps.
/
4 options
With Collabora Online, ONLYOFFICE, Hancom Office or MS Office Online.
/ /
Feature-limited in web and mobile UI compared to desktop.
/
3 options
Collabora Online, OnlyOffice, MS Office Online.
/
Through Microsoft Office
/
Microsoft Office 365
/
Microsoft Office 365
/
Microsoft Office 365
Knowledge management
A knowledge base/wiki with articles/pages, sub pages, search and other basic knowledge base functionality is available.
Forms and surveys
The platform allows creating forms and surveys and store and display the results.
User-managed groups
Normal users can create and manage groups without having to rely on the system administrator, a power user or a group admin.
File Drop (customer file upload)
Public link to folder recipient can upload to, which hides existing content of the shared folder.
Video verification
Protect public links with Video Verification.
Inter-server sharing
Sharing between separate cloud instances of different vendors. Example, Nextcloud users can share files with users on Pydio and ownCloud servers.
Workspaces
Add context to a folder by having a space to add comments, notes and todo lists.
*
Can pin files to the top of a folder, which gives a big preview.
Accessibility
Keyboard/Screen reader support
Could not find information.
WCAG 2.1 support AA/AAA
AAA with optional theme.
AA/AAA
AAA with Box.com accessiblity site.
Dyslexia-friendly font
Admin features
Access control lists
Permissions on files and folders, inherited by default, can be overridden at any level.
Content workflow automation
Only via third party app.
limited to admins
limited to admins
limited to admins
limited to admins
limited to admins
limited to admins
Approval process workflow
Cryptographic document signatures
Request documents signed with DocuSign or another technology
DocuSign, EID-Easy and LibreSign.
Automatic script execution
Impersonate users
Real time notifications
files created, updated, shared, unshared and deleted by user or others, chat or call received etc.
Monitoring web/API interface / / / / / / / /
Data retention policy support limited
Max 6 months.
Long term support (5–10 years)
Life cycle matching your operating system.
N.A.
Hosted only, customer has no control over when/what changes.
N.A.
Hosted only, customer has no control over when/what changes.
N.A.
Hosted only, customer has no control over when/what changes.
N.A.
Hosted only, customer has no control over when/what changes.
N.A.
Hosted only, customer has no control over when/what changes.
N.A.
Hosted only, customer has no control over when/what changes.
Branding
Easy self-service in UI or full custom CSS
Very limited
Using paid ownBrander or manually changing CSS.
Varies per plan but mainly yes.
Very limited
Compliance features
Audit trail
Mandatory if you have a legal requirement to find out who did what and when.
Imprint and privacy links
Only to their imprint and privacy policy, not yours.
Only to their imprint and privacy policy, not yours.
Only to their imprint and privacy policy, not yours.
Only to their imprint and privacy policy, not yours.
Only to their imprint and privacy policy, not yours.
*
If self-hosted
Built in data-request/account deletion
You can request (deletion of) data.
You can request (deletion of) data.
You can request (deletion of) data.
You can request (deletion of) data.
You can request (deletion of) data.
Yes
Terms-of-service
You and your customers you share with have to agree to their terms.
You and your customers you share with have to agree to their terms.
You and your customers you share with have to agree to their terms.
You and your customers you share with have to agree to their terms.
You and your customers you share with have to agree to their terms.
If self-hosted.
Security features
Server side encryption
Client side / End-to-end encryption
Google is working to introduce this.
Only offering a web E2EE solution without client support so failing to provide zero-knowledge protection.
Video Verification
Optionally verify identity of recipient by video call.
Brute force hacking protection
There is an unsupported external app developed by community student, occasionally updated.
NIST compliant password policy
Web UI secured with CSP 3.0
Same-site cookie attribute
File Access Control
Can be done in limited way with third party applications.
App access rights
Allow restricting mobile/desktop/third party applications access to filesystem or other data.
Authentication
Enforceable 2‑factor authentication U2F/OTP/SMS Signal/Telegram notifications
Supports multiple factors.
U2F/OTP/SMS notifications
Multiple factors.
U2F/OTP/SMS notifications
Supports multiple 2nd factor options.
Cannot be enforced, only supporting OTP.
SMS
Supports multiple factors.
SMS  SMS/U2F/OTP OTP/SMS
OTP only via Duo Push
ML based suspicious login detection
Uses machine learning technology to protect authentication.
LDAP/AD
Native SAML
Native SAML is implemented directly in the application without a requirements on external software like Apache modules. Native SAML is compatible with all webservers and supports group memberships, flexible session management, multiple identity providers and app specific passwords.
Auth via env variable
Authentication through Apache modules allows eg SAML/ShibbolethADFS, OAuth, OpenID, CAS and more.
Kerberos
Storage
File storage (local/NFS)
Object storage (S3/Swift)
Only support for outdated V2 authentication.
CIFS/Windows Shares
Also supports Kerberos
Sharepoint
2013/2016
2013/2016
Extensible storage

Confidential Nextcloud Use Cases

Confidential Nextcloud provides secure storage and data management irrespective of the industry.

School and public sector

Simpler organisation means more time for creativity.

  • Streamlined administrative processes
  • User-friendly data management
  • Enhanced collaboration and communication internally and externally

Financial and legal advisors

Maintain the highest data privacy standards and confidentiality.

  • Data protection end-to-end
  • Active control of access 
  • Remote attestation feature for auditing purposes

Hospitals and health sector

Streamline collaboration and organization for hospitals and medical centers with zero trust.

  • Enhanced data protection for sensitive medical records
  • Track file access and customize authorization rights
  • Data sovereignty at all times

Start using confidential
environments today

Contact us now and we’ll be in touch helping you getting Enclaive up and running in just minutes

Nextcloud Hosting

FAQ – Frequently asked questions

Nextcloud is open source software that is primarily used as cloud storage, but can be flexibly expanded with various features for communication, and productivity.

With Nextcloud, you can back up and synchronise your files automatically and, if necessary, include data from other users in the cloud. You can access data and/or business apps in the cloud from any location and from any device – whether on a smartphone, tablet, desktop PC or laptop. It’s also possible to set up individual sharing and access rights that can be configured and customised.

In addition to the wide range of possible uses, one major difference compared to other cloud storage – such as Dropbox, Google Drive and OneDrive – is the protection of your data. With the enclaive Confidential Nextcloud, you keep control over your data and your privacy leveraging the flexibility of the cloud.

Confidential Nextcloud from enclaive provides you with GDPR compliant data storage as well as strict European data security and other services. This flexible and secure data storage is suitable for companies, institutions and associations, as well as for self-employed and private individuals.

The Confidential Nextcloud service provides 100% runtime encryption ensuring that the legally required security and privacy is built in without having to worry about potential regulatory implications given by the origin of the provider. The enclaive service ensures the application and data are always and build into the technology disconnected from the infrastructure. This ensures that no operator has potential access at any time.

enclaive’s Confidential Nextcloud is a highly reliable and secure Nextcloud-hosted solution. Your data belongs to you and you alone, which means that no one else can access it unless you deliberately share it.

Thanks to extensive configuration options, you can define access rights precisely and individually – according to each user’s needs and their role. For example, you can set up time-limited passwords for data sharing or define customised access rights for reading, writing and sharing data.

Nextcloud also provides the option of video calls to share your data. Instead of sending the password via email or chat, the recipient must start a video call to request the password from you. This innovative method allows you to verify the identity of the person before you give out the password.

Within the enclaive Confidential Cloud, all your data is stored in compliance with the GDPR and the Schrems II ruling. This applies to cloud data and any individual configurations.

Our systems are located exclusively in state-of-the-art data centres in Europe and are subject to strict data protection laws.

Unlike with many other cloud hosting services, your data will not be transferred or accessible to other countries where comparable high data protection standards are often not in place.

We ensure that your cloud is always kept up to date from a technical perspective. You do not have to deal with any maintenance or system updates. This way security risks caused by outdated installations can be avoided.

Thanks to extensive configuration options, you can define access rights precisely and individually – according to each user’s needs and their role. For example, you can set up time-limited passwords for data sharing or define customised access rights for reading, writing and sharing data.

Nextcloud also provides the option of video calls to share your data. Instead of sending the password via email or chat, the recipient must start a video call to request the password from you. This innovative method allows you to verify the identity of the person before you give out the password.

Within the enclaive Confidential Cloud , all your data is stored in compliance with the GDPR and the Schrems II ruling. This applies to cloud data and any infdividual configurations.

Our systems are located exclusively in state-of-the-art data centres in Europe and are subject to strict data protection laws.

Unlike with many other cloud hosting services, your data will not be transferred or accessible to other countries where comparable high data protection standards are often not in place.

We ensure that your cloud is always kept up to date from a technical perspective. You do not have to deal with any maintenance or system updates. This way security risks caused by outdated installations can be avoided.

If your data has been stored with another provider, such as Google, OneDrive, or similar, you can migrate within the time that is convenient for you. You can simply drag and drop the files from the old environment to the enclaive Confidential Nextcloud.

If you plan to move large amounts of data we recommend doing this in a two-step approach

a) test how and works and see if you see any performance impact on your side

b) move the main part of the data in off hours to avoid business impact/interruptions on your side.

You’ll notice the first benefit of Confidential Nextcloud as soon as you use it – no programming skills are required.  As part of the purchase process, you choose the Nextcloud sizing, set your domain, and create an administration account. You can then get started right away.  enclaive will take care of all system updates, network configuration, and infrastracture. You’re only responsible for updating the Nextcloud apps that you’ve selected.

Confidential Nextcloud is particularly suitable for companies without a high level of technical expertise who do not want to take care of regular maintenance and carry out all necessary updates themselves. 

With the Confidential Nextcloud service, you can enjoy all the benefits and features of Nextcloud without the administrative effort or technical expertise. You can back up your data, synchronize it automatically, and organize and transfer photos, videos, and other data in no time. The data transfer is completely encrypted. enclaive operates your Confidential Nextcloud in German data centers in compliance with the highest security standards. We take care of regular maintenance and all necessary system updates. Nevertheless, you are always in control of your Nextcloud and your data. Who you grant access to is entirely up to you.

Small to medium-sized companies and larger Enterprise teams that need secure, functional, and convenient data storage as the basis of their collaboration platform choose Confidential Nextcloud. Confidential Nextcloud services from enclaive are suitable for any company or public and private institution that must work with data across their network while staying in line with the applicable laws and regulations without the internal overhead.

In short, Confidential Nextcloud service is an ideal, affordable, and professional collaborative storage solution for small and medium-sized businesses and larger teams that don’t want to hire extra IT specialists to set up and maintain their Nextcloud server and not want to worry about the infrastructure provider.

Yes, as long as you have an internet connection and a suitable device, you can securely access your data at any time no matter where you are – this is one of Nextcloud’s greatest strengths. You can access your data storage both on the move and via desktop client. This works via:

  • Windows
  • Linux
  • macOS
  • Android
  • iOS

In addition, Nextcloud is not only compatible with Windows, etc. – third-party clients can use Nextcloud via WebDAV. Android and iOS apps can be downloaded from the following links:

  • Android
  • iOS

Yes, the Nextcloud theme can be customized extensively, for example, to match your company’s corporate design.

In addition, you can send individualized links with your own URL instead of generic URLs from third-party providers such as Google Drive or Dropbox.

Get in touch with us

Cookie Consent with Real Cookie Banner