Alternativa solo UE a Supabase.

Supabase is the open-source Firebase alternative: hosted Postgres + Auth + Storage + Edge Functions + Realtime with a polished developer experience. Supabase Inc. is a Delaware US corporation; the EU regions (Frankfurt, Ireland, London, Paris) run on AWS infrastructure under both Supabase and AWS US-jurisdictional control. The good news: Supabase is open-source. You can self-host the entire stack on EU infrastructure with full feature parity — that is the sovereign alternative we deploy for clients.

Fornitore
Supabase
Sede
San Francisco, CA
Giurisdizione
United States
Regime giuridico
CLOUD Act, FISA 702

"Regione UE" non è sovranità. Quattro domande decidono.

La residenza dei dati indica dove sono i bit. La sovranità indica quale sistema giuridico può imporre l'accesso. La risposta deve reggere su tutte e quattro — altrimenti lo stack non è sovrano.

Residenza

Dove sono fisicamente archiviati i dati?

Non "nel cloud" — quale datacenter, in quale paese, sotto quale giurisdizione.

Sub-responsabili

Chi altro è nel suo percorso dei dati?

Ogni fornitore che tocca i dati: il CDN, il relay e-mail, il tracker degli errori, la pipeline di analytics.

Giurisdizione

Quali leggi possono imporre la divulgazione?

Un fornitore con sede negli USA è soggetto al FISA 702 e al CLOUD Act — anche quando i dati sono a Francoforte.

Custodia delle chiavi

Chi detiene effettivamente le chiavi di cifratura?

Se il provider cloud detiene sia i dati che le chiavi, può leggerli — indipendentemente dal DPA.

AWS · Azure · GCP — EU region

Fallisce su giurisdizione e custodia delle chiavi.

Bit nell'UE, casa madre statunitense, sub-responsabili americani nel percorso predefinito, chiavi gestite dal fornitore.

Stack gestito da Binadit

Passa su tutte e quattro.

Ospitato in UE su infrastruttura con sede europea. Zero sub-responsabili statunitensi nel percorso predefinito. Chiavi del cliente o di KMS europeo. Elencati per nome nel suo DPA Articolo 28.

Perché i team se ne vanno Supabase

Supabase exits we have run come from one consistent trigger: a B2B SaaS that picked Supabase for its DX, grew to enterprise customers, and discovered that "Supabase Frankfurt on AWS Ireland" is two layers of US-jurisdictional processors that fail Schrems II analysis. The Supabase team itself has publicly discussed the data sovereignty constraints on their blog. Self-hosting Supabase on EU infrastructure preserves the full DX (the same supabase-js client works) while moving to full EU jurisdiction.

Supabase servizi e i loro equivalenti solo UE

Una migrazione non è "scambiare una scatola con un'altra". La mappatura sottostante è ciò che eseguiamo per i clienti che lasciano Supabase per motivi Schrems II — piena giurisdizione UE, nessuna casa madre USA nel percorso dei dati.

Supabase servizio Alternativa solo UE Nota di ingegneria
Postgres (managed) Self-hosted Supabase on Hetzner, OVH Managed PostgreSQL with Supabase services on top, Aiven Self-hosted Supabase deploys via Docker Compose; the managed-by-Binadit version on Hetzner is the cleanest sovereign equivalent.
Auth (GoTrue) Self-hosted GoTrue (it's open-source), Keycloak, Authentik (DE) GoTrue is part of the open Supabase stack; self-hosting preserves the JWT-based auth with social logins, magic links, MFA.
Storage (S3-compatible) Self-hosted Supabase Storage with MinIO backend, OVH Object Storage as direct alternative Supabase Storage is a service layer over S3-compatible storage; works with any EU S3 backend.
Edge Functions (Deno) Self-hosted Deno runtime on EU compute, Scaleway Serverless Functions, EdgeDB on EU infra Edge Functions are Deno runtimes; the self-hosted equivalent runs on any EU container platform.
Realtime (Postgres CDC) Self-hosted Supabase Realtime on EU compute, native Postgres LISTEN/NOTIFY, Hasura on EU Realtime is open-source; self-hosting preserves the WebSocket-based pub/sub.
Vector embeddings (pgvector) Self-hosted Postgres + pgvector on EU compute, Qdrant (DE-headquartered) self-hosted or cloud For dedicated vector workloads, Qdrant Cloud EU is a sovereign-by-default alternative.
Studio (admin UI) Self-hosted Supabase Studio (it's open-source), pgAdmin self-hosted Studio is part of the self-hosted distribution.
Database backups pg_dump scheduled to EU object storage, WAL-G to S3-compatible EU storage, Borgbase EU WAL-G with EU object storage backend is the production-grade pattern.
API (PostgREST) Self-hosted PostgREST on EU compute, Hasura, custom API layer PostgREST is open-source; self-hosting preserves the REST API generation.
CLI / Migrations Standard supabase-cli works with self-hosted instances, sqitch, Atlas The Supabase CLI supports `--db-url` to point at self-hosted instances.

Come migriamo da Supabase

Una tipica migrazione di mid-market si svolge in tre fasi. I numeri qui sotto assumono un team di ingegneria di 6-10 persone e uno stack applicativo moderatamente complesso.

Days 1–5

Self-hosted Supabase deployment

Deploy self-hosted Supabase stack on Hetzner (Docker Compose or Kubernetes). Configure auth providers, storage backend, Edge Functions runtime. Set up monitoring and backups.

Days 6–14

Database + auth migration

Postgres dump+restore to self-hosted instance. User accounts migrated via auth provider data export. Storage buckets mirrored. Edge Functions redeployed.

Weeks 2–3

Application cutover

Application config updated to point at self-hosted Supabase URL. Same supabase-js client, same RLS policies, same auth flows. Cutover with a verification window.

Self-hosted Supabase on a single Hetzner CCX23 (€25/month) replaces Supabase Pro at $25/month-per-project plus per-project usage. For multi-project workloads, savings compound: a typical Supabase team plan ($599/month) becomes €40-100/month in raw infrastructure plus the managed-partner fee if you don't want to operate it yourself. Plus full EU jurisdiction.

Domande frequenti

Is Supabase's EU region (Frankfurt, Ireland) sufficient for GDPR?

Residency yes, sovereignty no. Supabase Inc. is US-headquartered, and the Frankfurt/Ireland regions run on AWS — also US-jurisdictional. For Schrems II analyses, both layers are exposed.

Does self-hosted Supabase have full feature parity?

Yes for the core stack: Postgres, Auth (GoTrue), Storage, Edge Functions, Realtime, Studio, PostgREST. The supabase-js client works identically. The features that aren't in self-hosted: paid-tier features like team management UI and integrated logging dashboards (you build those with Loki + Grafana on EU infra).

How operationally complex is self-hosted Supabase?

For single-environment production, a single CCX23 Hetzner VM with Docker Compose is sufficient and operationally manageable for an experienced engineering team. For multi-environment or HA setups, Kubernetes with Helm chart is the production pattern; we operate this for clients.

Does the supabase-js client need code changes?

Just one: the URL points at your self-hosted instance instead of `*.supabase.co`. RLS policies, auth flows, storage URLs, realtime subscriptions — all unchanged.

What about managed Supabase EU equivalents?

There are emerging EU-headquartered offerings (Supascale, Supafast — both early-stage), but the production-ready answer is self-hosted Supabase managed by an EU partner. We deploy and operate this exact pattern.

How long does a Supabase exit take?

For a single-environment project (one Postgres, basic auth, a few buckets): 1–2 weeks elapsed. For multi-environment or large-data setups: 3–6 weeks. The migration is mechanically clean because everything is open-source upstream.

Pianifica la tua uscita da Supabase.

Chiamata di scoping di 30 minuti. Mappiamo il tuo stack rispetto alle alternative solo UE, stimiamo lo sforzo di migrazione e ti diciamo se è la scelta giusta.