Dropbox is a great Tool, no question, but if you're a company (outside of the US) you should think about what you store where.
I'm fine with Dropbox, but there's my Boss, you know.
But if your data never crosses a US border (E.g. a Norwegian person using jottacloud), then the NSA cable taps have no effect. If your server is not in a US server farm or in a US Company, then it can't be subverted at destination the way that lavabit was going to go (and the other major companies have already gone).
I'm really suspicious of this "safer in the USA" stuff right now.
Perhaps, as pertains to the taps we were warned about by Mark Klein, Snowden, et al. But if you think that's the full extent of US intelligence taps, Angela Merkel's cell phone rather disagrees. (And the notion that they'd tap a half dozen foreign leaders before they tapped a trunk line or five is pretty laughable.)
That taps at borders which NSA / GCHQ have legal access to are well documented: http://www.independent.co.uk/news/uk/politics/operation-temp...
Other borders ... not so much.
> With the NSA's money and engineering resources, I don't really think any data is safe anywhere.
The NSA are legally constrained. They can't walk into a data center in Germany waving a court order and insist on a tap and no publicity. This is essentially what happened to lavabit because their data center was in the US. Yeah, a data center in Europe could be hacked. but:
1) Any bad actor could try to do this
2) Trying to do this in a notionally friendly country is not the most diplomatic thing. Not saying it can't happen but it would be arrogant and risky. Consider the fallout if some disgruntled sysadmin drops dox on it. http://www.cbc.ca/news/world/nsa-s-alleged-spying-on-merkel-...
There are laws in the US that they attempt to abide by that make this more difficult domestically, but not as difficult on foreign soil.