Technological Sovereignty for Europe

75% of our infrastructure runs on self-hosted servers in Germany. No US Cloud Act. No third-party dependencies. Full GDPR compliance.

Why Europe Needs Independent Technology

Dependence on US cloud providers is a strategic risk for European organizations.

πŸ›‘οΈ

US Cloud Act

US authorities can access data stored with American cloud providers at any time β€” even when servers are located in Europe.

πŸ”’

Vendor Lock-in

Proprietary systems from AWS, Google, and Microsoft create dependencies that cost millions and limit innovation.

⚠️

Lack of Control

When cloud services go down or prices change, there is no plan B. European organizations are at the mercy of US corporations.

βš–οΈ

GDPR Conflicts

Schrems II showed: data transfers to the US are legally problematic. Every company using US cloud carries a compliance risk.

Our Answer: Self-Hosted Infrastructure

The Mana platform proves that a full SaaS ecosystem works without US cloud dependencies.

75% Self-Hosted
Target: 90%+
Self-Hosted (14)
Cloud, ersetzbar (5)
Cloud, unvermeidbar (2)

Data in Germany

All user data stays on our own servers in Germany. No data transfer to third countries. No US cloud dependency.

Open Source Stack

PostgreSQL, Redis, MinIO, Matrix β€” our infrastructure is built on proven open-source technologies. No proprietary lock-in.

Local AI

LLM, image generation, speech recognition, and text-to-speech run locally on our own hardware. No data leaves the server.

Our Infrastructure in Detail

14 of 21 core components run entirely on our own hardware in Germany.

πŸ—„οΈ

Datenbank

PostgreSQL 16 + Drizzle ORM

Self-Hosted
⚑

Cache

Redis 7

Self-Hosted
πŸ“¦

Object Storage

MinIO (S3-kompatibel)

Self-Hosted
πŸ”

Authentifizierung

Better Auth (EdDSA JWT)

Self-Hosted
πŸ”

Suche

SearXNG + mana-search

Self-Hosted
πŸ’¬

Messaging

Matrix/Synapse + 13 Bots

Self-Hosted
πŸ“Š

Monitoring

VictoriaMetrics + Grafana

Self-Hosted
πŸ“ˆ

Analytics

Umami

Self-Hosted
πŸ›

Error Tracking

GlitchTip (Sentry-kompatibel)

Self-Hosted
βš™οΈ

Automation

n8n

Self-Hosted
πŸ€–

LLM / KI-Chat

Ollama + Gemma 3

Self-Hosted
🎀

Spracherkennung

Whisper Large V3 (mana-stt)

Self-Hosted
πŸ”Š

Sprachsynthese

Piper + Kokoro (mana-tts)

Self-Hosted
🎨

Bildgenerierung

FLUX.2 klein (mana-image-gen)

Self-Hosted
πŸ“§

E-Mail

Brevo SMTP β†’ Postal geplant

Migration geplant
🌐

Landing Pages

Cloudflare Pages β†’ Self-hosted geplant

Migration geplant
πŸ”—

Tunnel/DNS

Cloudflare Tunnel β†’ WireGuard geplant

Migration geplant
πŸ–ΌοΈ

Bild-API

Replicate β†’ mana-image-gen Migration

Migration geplant
πŸ‘οΈ

Vision-KI

Google Gemini β†’ lokale Modelle testen

Migration geplant
πŸ’³

Zahlungen

Stripe (kein EU-Alternative)

Cloud (unvermeidbar)
πŸ”‘

Google OAuth

FΓΌr Kontakte-Import nΓΆtig

Cloud (unvermeidbar)

GDPR Compliance at Every Level

Not just on paper β€” technically and organizationally implemented.

βœ…

Lawfulness & Transparency

Only technically necessary cookies. Explicit consent for all data processing. No hidden data collection.

πŸ“‰

Data Minimization

Only email required for registration. Automatic deletion after purpose fulfillment. Anonymized analytics with self-hosted Umami.

πŸ‘€

Data Subject Rights

All 6 rights implemented: Access, Rectification, Erasure, Portability, Objection, Restriction β€” via self-service dashboard.

πŸ”

Technical Security

TLS 1.3, AES-256 encryption, EdDSA JWT authentication, regular security audits.

🚨

72h Breach Notification

Automated detection of data breaches. Immediate internal escalation. Notification to authorities within 72 hours.

πŸ€–

AI Without Training Risk

No user data for AI training. Local models process data directly on the server β€” nothing leaves the infrastructure.

Open Technologies Instead of Proprietary Silos

Proven open-source software replaces expensive cloud services β€” without quality loss.

πŸ—„οΈ

PostgreSQL 16

Instead of DynamoDB / Firestore

⚑

Redis 7

Instead of ElastiCache

πŸ“¦

MinIO

Instead of AWS S3

πŸ”

Better Auth

Instead of Auth0 / Okta

πŸ”

SearXNG

Instead of Google / Algolia

πŸ’¬

Matrix/Synapse

Instead of Slack / Teams

πŸ€–

Ollama + Gemma

Instead of OpenAI API

πŸ“Š

VictoriaMetrics

Instead of Datadog

Who Is This For?

European organizations with high requirements for data protection and independence.

πŸ›οΈ

Public Administration

Government agencies implementing digital sovereignty. GDPR compliant, no US cloud dependency, transparent open-source stack.

πŸ₯

Healthcare

Hospitals, practices, and health organizations with the highest data protection requirements. Patient data guaranteed to stay in Germany.

πŸŽ“

Education & Research

Universities, schools, and research institutions needing independent AI tools and secure communication. Special conditions available.

🏒

SMBs (Mittelstand)

European companies breaking free from Big Tech dependency while using state-of-the-art AI tools. Flexible credit system instead of subscription trap.

Our Path to 90%+ Independence

Transparent roadmap β€” from today to full sovereignty.

βœ… Completed

Local AI Infrastructure

LLM (Ollama + Gemma 3), image generation (FLUX.2), speech recognition (Whisper), and text-to-speech (Piper + Kokoro) run fully locally.

Q2 2026

Eliminate Cloud AI

Migrate Picture App to local mana-image-gen. Route all LLM calls through central mana-llm gateway with automatic Google fallback.

Q3 2026

Email Independence

Replace Brevo SMTP with self-hosted Postal or Stalwart. DNS with own European provider.

Q4 2026

Self-Hosted Landing Pages

Serve static sites directly from own server instead of Cloudflare Pages.

2027

Server Redundancy & 90%+ Independence

Second server for high availability. PostgreSQL streaming replication. No single point of failure.

Frequently Asked Questions

What does technological sovereignty mean?

The ability to operate and control your IT infrastructure independently of foreign providers. At Mana, this means: 75% of our infrastructure runs on our own servers in Germany β€” with the goal of reaching 90%+.

Why is the US Cloud Act a problem?

The US Cloud Act obliges American companies to grant US authorities access to data β€” even when stored on servers in Europe. This directly contradicts GDPR and threatens European data sovereignty.

Which cloud dependencies remain?

Only two: Stripe for payment processing (there is no fully European payment gateway alternative) and Google OAuth for optional Google contacts import.

How does local AI work?

We run Ollama with models like Gemma 3 on our server in Germany. FLUX.2 generates images locally, Whisper transcribes speech, Piper and Kokoro synthesize speech β€” all without cloud API calls.

Is the open-source stack enterprise-ready?

Absolutely. PostgreSQL, Redis, and MinIO power the infrastructure of companies like Apple, Instagram, and Netflix. These technologies are more proven than many proprietary alternatives.

Can I use the Mana infrastructure for my organization?

Yes. We offer consulting and implementation for organizations looking to build similar independent infrastructure. Contact us for a custom offer.

Where are the servers located?

In Germany. The production infrastructure runs on own hardware with 74 Docker containers, connected via a Cloudflare Tunnel (which will be replaced by WireGuard in the medium term).

Ready for Digital Sovereignty?

Let us make your IT infrastructure independent together. We are happy to advise you β€” free of charge and transparent.