The European alternative for meetings, webinars and team comms
Spotrum is built, operated and hosted in the European Union. If your organisation is rethinking where its conversations should live, here is what actually changes when your vendor is European. And you don't have to be in Europe to benefit: wherever your team works, your data enjoys EU-grade protection.
One jurisdiction, not two
When your communications vendor is a US company, your data lives under two legal systems at once: the GDPR you answer to, and the US CLOUD Act your vendor answers to — which can compel disclosure of data held by US providers even when it is stored in Europe. With an EU vendor there is one framework: European law, end to end.
No transfer-mechanism gymnastics
Schrems II invalidated Privacy Shield and put every EU→US data transfer under scrutiny: standard contractual clauses, transfer impact assessments, supplementary measures. With core data stored by an EU company on EU servers, that entire compliance layer largely disappears from your DPO's desk.
A DPA with an EU data controller
Your data-processing agreement is signed with COUBUS OÜ, an Estonian company — supervised by an EU data-protection authority and reachable under EU law. Not the local representative of a foreign entity.
What stays in the EU
- Media servers — your calls are relayed by servers in EU data centres
- Files and recordings — stored on EU infrastructure
- Databases and backups — EU data centres
- The company itself — Estonian registry code 14419079, verifiable publicly
The honest footnote
Some optional features use named non-EU sub-processors — for example AI transcription and summaries. They are off by default, enabled per room by the host, documented in our Privacy Policy, and structurally impossible in end-to-end encrypted rooms. We would rather tell you this here than have you find it in an audit.
And when it must stay private
Any private room can be end-to-end encrypted — on every plan, including Free. Then jurisdiction stops mattering altogether: even we cannot read the room, so nobody can compel us to hand it over.
Where exactly is my data stored?
On servers in European Union data centres — media, files, recordings, databases and backups. The operating company is registered in Estonia.
Is Spotrum GDPR-compliant?
GDPR is our home law, not an export requirement. A data-processing agreement with the EU data controller is available on request, account data export and deletion are built in, and our supervisory authority is a European one.
Do any features send data outside the EU?
Core calling, chat, files and recordings stay on EU infrastructure. Only optional, host-enabled AI features use a named non-EU sub-processor, as documented in the Privacy Policy. End-to-end encrypted rooms never share content with anyone — including us.