Pexip
A single roll-up of ownership and CLOUD Act exposure.
-
EU-Sovereign EU/EEA/Switzerland-owned and -operated, with no identified CLOUD Act exposure.
-
EU-Based EU-operated, with at most minor or transient US exposure.
-
EU-Hosted This listing EU hosting available, but a US parent or hyperscaler sub-processor creates material exposure.
-
US-Linked Operated by a US-incorporated entity, directly subject to US jurisdiction.
Norwegian Euronext-listed (Oslo Børs) video collaboration platform, defense + government grade; self-host or hyperscaler-cloud-of-choice.
Pexip offers EU hosting in Norway, but a US parent or sub-processor leaves material CLOUD Act exposure. It is listed under Video conferencing.
Assessment notes
Pexip AS (Oslo, founded 2012, Norway Organisation Number 819 850 232) is a Norwegian video-collaboration platform listed on Oslo Børs since May 2020: Euronext-listed, EEA jurisdiction, no US-PE majority on record. The product is uniquely deployable as self-hosted on customer infrastructure or on Azure / GCP / AWS / hybrid / managed SaaS. Defense-grade customers include NATO, US Department of Veterans Affairs, US Air Force, US Treasury, the Irish and US governments, and Airbus. EU-adequate jurisdiction (Norway EEA), public DPA with disclosed sub-processors; CLOUD Act exposure held at material because the managed SaaS defaults to hyperscaler-of-customer-choice and a US Delaware entity (Pexip Inc.) handles US-government contracting; self-host on EU infrastructure removes the exposure entirely.
Findings
- CLOUD Act
- CLOUD Act exposure
How exposed customer data is to US authorities under the CLOUD Act (Clarifying Lawful Overseas Use of Data Act).
-
None EU operator, no US parent, no US sub-processors of note.
-
Minor A transient US sub-processor (CDN, maps); data at rest stays in the EU.
-
Material This listing US parent, or a core sub-processor is a US-owned hyperscaler.
-
Direct The operator itself is US-incorporated.
-
- Ownership
- Ownership
Where ultimate control over the operating company sits.
-
EU-owned EU-incorporated and EU-controlled; no significant US ownership.
-
European This listing Swiss/EEA-owned, with no significant US ownership; treated as European.
-
EU HQ, US-funded EU-headquartered but US venture- or PE-controlled.
-
EU subsidiary, US parent European operating company owned by a US parent company.
-
US-owned The operating company itself is US-headquartered.
-
- Sub-processors
- 15 · 11 US
Verified signals
-
EU / adequacy hosting: Yes
-
EU / adequacy operator: Yes
-
No US CLOUD Act exposure: No
-
Public DPA: Yes
-
Sub-processors disclosed: Yes
-
Open-source clients: No
-
Third-party certification: Yes
Exposure depends on how you run this product.
Vendor-operated: the sub-processors below apply.
How exposed customer data is to US authorities under the CLOUD Act (Clarifying Lawful Overseas Use of Data Act).
-
None EU operator, no US parent, no US sub-processors of note.
-
Minor A transient US sub-processor (CDN, maps); data at rest stays in the EU.
-
Material This listing US parent, or a core sub-processor is a US-owned hyperscaler.
-
Direct The operator itself is US-incorporated.
Deploy on your own EU infrastructure and you control hosting and every sub-processor.
How exposed customer data is to US authorities under the CLOUD Act (Clarifying Lawful Overseas Use of Data Act).
-
None This listing EU operator, no US parent, no US sub-processors of note.
-
Minor A transient US sub-processor (CDN, maps); data at rest stays in the EU.
-
Material US parent, or a core sub-processor is a US-owned hyperscaler.
-
Direct The operator itself is US-incorporated.
Jump to
About Pexip
Pexip is a Norwegian video-collaboration platform operated by Pexip AS (Oslo, Norway Organisation Number 819 850 232), founded in 2012 and listed on Oslo Børs (Euronext) since 14 May 2020 (the first fully-virtual IPO during the pandemic). The product portfolio covers three lines: Pexip Secure Meetings (purpose-built for secure environments with custom integrations and on-premise deployment), Pexip Connect (meeting-room interoperability across Microsoft Teams, Zoom, Google Meet, Cisco), and Pexip Engage (appointment scheduling). The customer roster reads as a who's-who of defense and government video procurement: NATO, the US Department of Veterans Affairs, the US Air Force, the US Department of the Treasury, parts of the Irish government, and Airbus. Strategic partners: Microsoft, Google, Zoom, Cisco, HP, Logitech, NVIDIA.
For procurement-grade EU buyers the differentiator is the flexible deployment model: Pexip can be deployed self-hosted on the customer's own infrastructure, in the customer's own Azure / GCP / AWS / OCI subscription, in a hybrid configuration, or as a managed SaaS, meaning a regulated buyer can run the entire Pexip stack inside their security perimeter on EU infrastructure (Hetzner, OVHcloud, Scaleway, IONOS, STACKIT, T Cloud Public) and meet the strictest sovereignty requirements. The privacy notice (last updated 11 November 2025) names three controllers: Pexip AS (Norway, primary), Pexip Inc. (USA, Delaware File Number 5215317, for US-government contracting), and Pexip Belgium (Belgium Enterprise number 0537.590.925, for EU-customer contracting where Belgium incorporation is preferred). The dual NO + BE EU legal-entity structure plus the US Inc for US-government customers is a sophisticated procurement-aware architecture.
Pricing is enterprise-grade and sales-engaged. Pexip does not publish a self-serve tier price. Best fit: government, defense, judicial, healthcare, financial-services, and other regulated mid-market and enterprise buyers who need video conferencing inside a controlled security perimeter; organisations evaluating Teams / Zoom / Webex alternatives where vendor lock-in to a US hyperscaler is unacceptable; multi-cloud deployments where a single video platform must work across Azure + AWS + GCP + on-prem. The material CLOUD Act exposure flag reflects the US Inc entity for US-government contracting and the SaaS-on-hyperscaler default; self-host on EU infrastructure removes the exposure entirely.
Sub-processor map · 15
-
GitHub Copilot USUnited States
Bug investigation tooling
-
Google USUnited States
Calendar synchronization (Pexip Engage / Skedify)
-
Google Cloud Platform USUnited States
Infrastructure / PoPs (Pexip Hosted Cloud)
-
Mailchimp / Mandrill USUnited States
Email notifications (Pexip Engage / Skedify)
-
Microsoft 365 Copilot USUnited Kingdom
Zendesk Ticket Connector
-
Microsoft Azure USUnited States
Teams CVI service PoPs (Pexip Hosted Cloud)
-
Microsoft Azure (NL region) USNetherlands
Hosting (Pexip Engage / Skedify)
-
NetApp USUnited Kingdom
Database support (Pexip Hosted Cloud)
-
Sentry.io USUnited States
Error monitoring
-
Twilio USUnited States
Email and SMS services
-
Zendesk USUnited States
Helpdesk support
-
Cronofy non-USUnited Kingdom
Calendar sync (Pexip Engage / Skedify)
-
Elastic EUNetherlands
Service log collection (Pexip Hosted Cloud)
-
Mividas EUSweden
Room management support
-
Spryng BV EUNetherlands
SMS (Pexip Engage / Skedify)
| Vendor | Country | Purpose | Owner |
|---|---|---|---|
| GitHub Copilot | United States | Bug investigation tooling | US |
| United States | Calendar synchronization (Pexip Engage / Skedify) | US | |
| Google Cloud Platform | United States | Infrastructure / PoPs (Pexip Hosted Cloud) | US |
| Mailchimp / Mandrill | United States | Email notifications (Pexip Engage / Skedify) | US |
| Microsoft 365 Copilot | United Kingdom | Zendesk Ticket Connector | US |
| Microsoft Azure | United States | Teams CVI service PoPs (Pexip Hosted Cloud) | US |
| Microsoft Azure (NL region) | Netherlands | Hosting (Pexip Engage / Skedify) | US |
| NetApp | United Kingdom | Database support (Pexip Hosted Cloud) | US |
| Sentry.io | United States | Error monitoring | US |
| Twilio | United States | Email and SMS services | US |
| Zendesk | United States | Helpdesk support | US |
| Cronofy | United Kingdom | Calendar sync (Pexip Engage / Skedify) | non-US |
| Elastic | Netherlands | Service log collection (Pexip Hosted Cloud) | EU |
| Mividas | Sweden | Room management support | EU |
| Spryng BV | Netherlands | SMS (Pexip Engage / Skedify) | EU |
Source: the vendor’s published sub-processor list, read 26 Aug 2026.
Frameworks & certifications
Capability matrix
Table 2Capabilities of Pexip
Integration & access
Compliance & governance
Pricing & tiers
Public documents
Alternatives in this category
-
United KingdomEU-HostedCLOUD Act exposure
How exposed customer data is to US authorities under the CLOUD Act (Clarifying Lawful Overseas Use of Data Act).
-
None EU operator, no US parent, no US sub-processors of note.
-
Minor A transient US sub-processor (CDN, maps); data at rest stays in the EU.
-
Material This listing US parent, or a core sub-processor is a US-owned hyperscaler.
-
Direct The operator itself is US-incorporated.
Public DPA: Yes Sub-processors: Yes Open source: Yes -
-
SwitzerlandEU-SovereignCLOUD Act exposure
How exposed customer data is to US authorities under the CLOUD Act (Clarifying Lawful Overseas Use of Data Act).
-
None This listing EU operator, no US parent, no US sub-processors of note.
-
Minor A transient US sub-processor (CDN, maps); data at rest stays in the EU.
-
Material US parent, or a core sub-processor is a US-owned hyperscaler.
-
Direct The operator itself is US-incorporated.
Public DPA: Yes Sub-processors: Yes Open source: No -
-
France · €10/moEU-BasedCLOUD Act exposure
How exposed customer data is to US authorities under the CLOUD Act (Clarifying Lawful Overseas Use of Data Act).
-
None EU operator, no US parent, no US sub-processors of note.
-
Minor This listing A transient US sub-processor (CDN, maps); data at rest stays in the EU.
-
Material US parent, or a core sub-processor is a US-owned hyperscaler.
-
Direct The operator itself is US-incorporated.
Public DPA: No Sub-processors: No Open source: Yes -
| Product | Sovereignty | CLOUD Act | Signals | From |
|---|---|---|---|---|
|
|
EU-Hosted | CLOUD Act exposure
How exposed customer data is to US authorities under the CLOUD Act (Clarifying Lawful Overseas Use of Data Act).
|
Public DPA: Yes
Sub-processors: Yes
Open source: Yes
|
— |
|
|
EU-Sovereign | CLOUD Act exposure
How exposed customer data is to US authorities under the CLOUD Act (Clarifying Lawful Overseas Use of Data Act).
|
Public DPA: Yes
Sub-processors: Yes
Open source: No
|
— |
|
|
EU-Based | CLOUD Act exposure
How exposed customer data is to US authorities under the CLOUD Act (Clarifying Lawful Overseas Use of Data Act).
|
Public DPA: No
Sub-processors: No
Open source: Yes
|
€10/mo |