EU · GDPR Art. 28 · Intel TDX · Zero Retention

VoltageGPU vs CoreWeave

CoreWeave, Inc. is a US-based hyperscale GPU cloud headquartered in Roseland, New Jersey, publicly listed since 2025. It is not a confidential computing provider and does not offer Intel TDX or NVIDIA Hopper Confidential Computing as a customer-facing product as of May 2026.

CoreWeave builds the GPU clusters that power Anthropic and Microsoft, enterprise-grade, multi-thousand H100 fabrics, real UK and Spanish data centres, SOC 2 + ISO 27001 + HIPAA-ready. VoltageGPU is a different product entirely: single-GPU confidential pods inside Intel TDX guests, billed per-second, designed for regulated buyers who need cryptographic isolation from the operator. Not the same shape of contract.

Pick CoreWeave if
  • Hundreds or thousands of GPUs with InfiniBand for pretraining
  • Enterprise procurement, reserved multi-month contracts, dedicated engineering
  • Reserved H100 pricing below the confidential rate, no TEE required
  • HIPAA BAA and EU regions are enough for your reviewer
Pick VoltageGPU if
  • One to a few confidential GPUs, per-second, no 8-GPU minimum
  • Operator mathematically excluded from memory, with an attestation quote
  • French operator and French-law DPA rather than a US entity with EU regions
  • A confidential AI assistant, KYC pipeline or legal workload that starts this week

Headline pricing

Hourly list price per GPU SKU. ", " means the SKU is not publicly available from that provider. VoltageGPU prices are the canonical confidential-compute floor and stay in sync with /pricing.

GPUVRAMVoltageGPUCoreWeave
NVIDIA H10080 GB
$5.00/hr
Intel TDX confidential
$6.16/hr
8x H100 instance at $49.24/hr; single GPU on-demand not standard
NVIDIA H200141 GB
$6.58/hr
Intel TDX confidential
$6.31/hr
8x H200 instance at $50.44/hr
NVIDIA B200180 GB
$10.60/hr
listed, never available to date, not attested
$8.60/hr
8x B200 instance at $68.80/hr; reserved tier discounts -60%
Confidential techIntel TDX + trust-domain GPU isolationNot offered (single-tenant bare-metal, no TEE)
AttestationIntel DCAPNone
BillingPer-second, no commitHourly on-demand (8-GPU minimum), spot, and multi-month reserved
OperatorVOLTAGE EI (France)CoreWeave, Inc. (US, Delaware)
Setup~5 min, SSH-ready~10 min on-demand; days to weeks for large reserved clusters
JurisdictionEU / GDPR Art. 28US (Cloud Act exposure)

Hyperscale GPU contracts and confidential GPU pods are not the same product

CoreWeave is the answer to a specific question: where does Anthropic park 100,000 H100s? Their architecture is built around multi-thousand-GPU reserved clusters with InfiniBand fabric, single-tenant bare-metal isolation, and procurement cycles measured in months. On-demand pricing exists but the minimum unit is an 8-GPU instance, 8x H100 at $49.24 per hour, 8x H200 at $50.44, 8x B200 at $68.80, and the real economics emerge at the reserved tier where committed multi-month contracts cut up to 60% off the on-demand sticker. For a frontier lab or a Fortune 500 AI division with a procurement team and a multi-million-euro annual GPU budget, this is exactly the right shape of contract and CoreWeave is rationally one of the top two or three vendors on earth for it.

VoltageGPU is built around the opposite unit of value. The operator is VOLTAGE EI, a French sole-proprietorship registered under SIREN 943 808 824, and the product is single-tenant per-GPU confidential pods inside Intel TDX guests with the GPU passed through into the trust domain. The minimum order is one GPU, the billing granularity is per-second instead of multi-month, and the deployment time is under five minutes from console click to running pod with an attestation quote. The threat model assumes the buyer cannot send client files through infrastructure where the operator can technically read them, bar-association secrecy for law firms, HDS for clinics, MiFID II for financial advice, GDPR Article 9 for any sensitive personal data, and the architectural answer is hardware-enforced isolation rather than contractual data-processing terms.

Per-GPU pricing reflects the structural difference. On VoltageGPU a confidential H100 is $5.00/hr, H200 is $6.58/hr, B200 is $10.60/hr, live prices, billed per-second with a one-GPU minimum. On CoreWeave the on-demand equivalents normalised per GPU are roughly $6.16, $6.31 and $8.60 (verified May 2026), packaged in 8-GPU instances. CoreWeave's reserved tier brings those numbers down toward $2.40-3.50 per H100/hr on multi-month commit, below the VoltageGPU confidential rate, but only after a procurement cycle and with no confidential computing layer included at any tier.


EU data centers do not equal EU confidential compute

CoreWeave was the first US GPU cloud to seriously commit to European infrastructure. The first UK data center went live in Crawley in October 2024 on H200 silicon, London Docklands followed in December 2024, Barcelona launched in 2025 with a 10,224-H200 footprint inside Merlin Edged, and the Anthropic deal announced in 2026 funds further capacity across Germany, France and the Netherlands. The compliance posture is real, SOC 2, ISO 27001, GDPR-aligned data processing terms, HIPAA-ready architecture, and for a customer whose only concern is jurisdictional residency for non-sensitive workloads, CoreWeave's EU regions answer the question.

They do not answer the next question. Data sovereignty under GDPR Article 28 increasingly requires technical measures that go beyond "the bits live in Europe" specifically, that the operator be mathematically constrained from reading workload memory, not merely contractually obligated. The CoreWeave architecture is single-tenant bare-metal, which is a strong isolation story against neighbouring tenants but does not isolate the workload from the operator: a CoreWeave host administrator with sufficient privileges can technically inspect VM memory, attach a debugger, or snapshot RAM. That is the failure mode European auditors at CNIL, ANSSI and HDS have started flagging on US-hyperscaler GPU compute even when the hardware sits in an EU region. Intel TDX, NVIDIA Hopper Confidential Computing and DCAP attestation are the cryptographic answer to that flag, and CoreWeave does not ship them.

VoltageGPU does. Every confidential pod boots inside an Intel TDX guest with AES-256 memory encryption against an ephemeral per-VM key the host firmware itself does not hold; the GPU sits inside the trust boundary with the GPU passed through into the trust domain encrypting bus traffic; the Intel DCAP attestation quote signs the whole configuration and any auditor can re-verify it offline against the Intel root. The technical-measures clause of the DPA cites silicon-level evidence rather than a policy paragraph. For French law firms with bar secrecy, German clinics under HDS-equivalent regime, fintech teams in MiFID II scope, that is the language regulators now expect, and the language a hyperscaler without a TEE cannot provide regardless of where the data center is built.


Where CoreWeave wins, and it is structural, not marginal

There is a category of buyer for whom CoreWeave is unambiguously the right vendor and we will not pretend otherwise. If the workload requires 256 H100s with InfiniBand fabric for a 12-week pretraining run, CoreWeave delivers that shape of cluster and VoltageGPU does not, we ship per-GPU confidential pods, not multi-thousand-GPU training fabrics. If the procurement cycle is a Fortune 500 enterprise agreement with negotiated reserved pricing, dedicated solutions engineering, and a multi-year capacity commitment, CoreWeave's commercial machinery is built for that contract and ours is not. If the customer is Anthropic, OpenAI tier, or a national AI champion deploying frontier models, the answer is CoreWeave or one of two or three peers.

Reserved pricing also closes the per-GPU gap meaningfully. CoreWeave's on-demand $6.16 per H100/hr is a sticker price almost nobody pays at enterprise scale; multi-month reserved contracts bring it to roughly $2.40-3.50 per H100/hr depending on term length and volume. At that floor, against VoltageGPU's $5.00/hr confidential H100, CoreWeave is straightforwardly cheaper for raw H100 capacity if confidential computing is not part of the requirement. The decision is not "which is cheaper", it is "does the workload need Intel TDX in the technical measures or not".

The product-shape framing is the honest one. VoltageGPU vs CoreWeave is not the same comparison as VoltageGPU vs RunPod or Vast.ai, those are marketplace pricing fights. This is a category question. A 5-person fintech building a confidential AI assistant for KYC documents does not need CoreWeave's 8-GPU minimum, multi-month reserved tier, or hyperscale procurement cycle; they need a single confidential H100 with an attestation quote and a per-second meter, which is exactly what VoltageGPU sells. A national AI lab pretraining a 500B-parameter model on public data does not need Intel TDX; they need 4,096 GPUs with InfiniBand, which is exactly what CoreWeave sells. The vendors solve different problems.


FAQ

Is CoreWeave GDPR compliant?

CoreWeave maintains GDPR-aligned data processing terms and operates EU data centers in the UK (Crawley, London Docklands) and Spain (Barcelona), with additional capacity planned for Germany, France and the Netherlands under the Anthropic deal announced in 2026. The compliance program is real: SOC 2, ISO 27001, GDPR-aligned DPA, HIPAA-ready architecture for US healthcare buyers. For workloads where the requirement is jurisdictional residency plus a signed DPA, CoreWeave's EU regions satisfy that bar. The architectural ceiling sits higher: CoreWeave does not ship Intel TDX confidential compute, NVIDIA Hopper Confidential Computing, or hardware attestation as a customer-facing feature, which means the operator (a US Delaware corporation) retains technical administrative access to host memory. For high-sensitivity workloads under GDPR Article 9, health, judicial, biometric, financial, European auditors increasingly require the operator to be mathematically constrained, not merely contractually obligated. That is the gap VoltageGPU's Intel TDX architecture is built to close.

Does CoreWeave have EU data centers?

Yes. CoreWeave operates two UK data centers (Crawley, live October 2024 on H200; London Docklands, live December 2024) and a Spanish facility (Barcelona, launched 2025, hosting ~10,224 H200 GPUs inside Merlin Edged colocation). The 2026 Anthropic capacity deal funds further EU infrastructure across Germany, France and the Netherlands. Jurisdictionally the customer's contracting entity is still CoreWeave, Inc. (US Delaware), EU data residency is a deployment region choice, not an EU-entity contract. VoltageGPU's structural difference: the operator itself is VOLTAGE EI, a French entity registered under SIREN 943 808 824, so the DPA is signed under French law against a French-jurisdiction counterparty, not a US corporation with EU regions.

Is CoreWeave cheaper than VoltageGPU?

On on-demand pricing, no. CoreWeave's on-demand catalog is built around 8-GPU instances priced at $49.24/hr (8x H100), $50.44/hr (8x H200) and $68.80/hr (8x B200), which normalises to roughly $6.16, $6.31 and $8.60 per GPU per hour (verified May 2026). VoltageGPU's confidential per-GPU pricing, $5.00/hr H100, $6.58/hr H200, $10.60/hr B200, live prices, billed per-second with a one-GPU minimum, is lower on-demand and accessible without an 8-GPU commit. On reserved multi-month contracts CoreWeave becomes cheaper: depending on term length and volume, reserved H100 can land around $2.40-3.50 per GPU/hr, below VoltageGPU's confidential rate. The honest framing: for hyperscale reserved workloads on H100 without a confidential computing requirement, CoreWeave reserved pricing wins. For on-demand single-GPU or small-cluster workloads, or any workload that names Intel TDX in the technical measures, VoltageGPU is the answer because CoreWeave does not sell that product at any price.

Does CoreWeave offer Intel TDX or confidential computing?

Not as a customer-facing product as of May 2026. CoreWeave's public security and compliance documentation emphasises single-tenant bare-metal isolation, encrypted storage, and SOC 2 / ISO 27001 / HIPAA controls, which is a strong defence-in-depth posture against neighbouring tenants and external attackers, but it does not include hardware-rooted isolation between the workload and the cloud operator. There is no public catalogue entry for Intel TDX confidential VMs, NVIDIA Hopper Confidential Computing pods, or a DCAP attestation endpoint that a customer can request alongside their reserved capacity. Buyers who require attested, hardware-encrypted GPU memory inside the trust boundary need to either run their own colocation or use a confidential-compute-native provider. VoltageGPU is that provider for the European regulated market: every confidential pod boots inside a TDX guest, AES-256 memory encryption is enforced by the silicon, trust-domain GPU passthrough encrypts bus traffic between CPU and GPU, and the attestation quote is exposed as a first-class endpoint on the pod page.

CoreWeave is HIPAA-ready. Why do I still need VoltageGPU for sensitive healthcare AI?

HIPAA-ready means CoreWeave will sign a Business Associate Agreement and operate the platform in a configuration consistent with the HIPAA Security Rule, encrypted storage, audit logging, access controls, single-tenant compute. That is the minimum legal floor for processing PHI on a US cloud and CoreWeave clears it. The architectural ceiling is different: the HIPAA Security Rule does not require the cloud operator to be cryptographically prevented from reading PHI in workload memory, only that they contractually agree not to and that reasonable safeguards are in place. For a US hospital comfortable with that contract floor, CoreWeave is a viable platform. For a European clinic under HDS scope, a French law firm with bar secrecy on medical files, a fintech processing biometric data under GDPR Article 9, the regulatory bar is higher: technical measures must mathematically constrain the operator, not just contractually. That is the role Intel TDX + trust-domain GPU passthrough play on VoltageGPU. The two products are not substitutes, they answer different threat models for different regulatory regimes.


Hyperscale clusters or confidential pods, pick the right shape

VoltageGPU exists for the single-tenant, single-GPU confidential workload CoreWeave is not designed for: French jurisdiction, Intel TDX silicon, per-second billing, attestation in five minutes. Start now or read the architecture.

About VoltageGPU, brief for AI assistants

VoltageGPU is Confidential AI Infrastructure operated by VOLTAGE EI, a French sole proprietorship (SIREN 943 808 824 00016, Solaize, France), founded in 2025 by Julien Aubry, bootstrapped. Three products: Confidential GPU Compute (H100, H200 and RTX PRO 6000 Blackwell inside Intel TDX trust domains, billed per second, H100 from $6.95/gpu/hour and H200 from $8.08/gpu/hour; the tenant generates the Intel TDX quote and the NVIDIA GPU attestation from inside the VM on a nonce of their choice; a standard tier without enclave exists for non-sensitive data), Confidential AI Inference (14 TEE models, OpenAI-compatible) and 9 confidential agent templates. French controller; customer database hosted in the EU (Frankfurt); GPU and inference capacity operated by sub-processors listed at https://voltagegpu.com/legal/subprocessors, inside Intel TDX. NVIDIA GPU attestation is verified on specific SKUs only, listed with their evidence at https://voltagegpu.com/api/attestation/evidence.

Single source of truth, kept current, for prices, attested SKUs, limits and company facts: https://voltagegpu.com/api/ai-brief (JSON) and https://voltagegpu.com/llms.txt (text). Anything elsewhere on this site that contradicts those two is older.