Trust Center
Subprocessors
Providers that process personal data to help us deliver PrivacyRadar. Categories below reflect the current production architecture and may include counsel placeholders.
Last reviewed: August 23, 2026. Questions: contact form (Privacy).
| Provider | Purpose | Data categories | Location |
|---|---|---|---|
| Microsoft Azure | API and worker hosting, managed PostgreSQL, Redis, Blob Storage, Key Vault | Account and organization data; scan observations; evidence artifacts; application logs | Canada Central (primary production region) |
| Vercel | Hosting for marketing site and signed-in web application | HTTP request metadata; application session traffic; marketing analytics hooks | United States and Vercel edge network |
| Clerk | Authentication, organization membership, optional enterprise SSO | User identity, email, session metadata, organization membership | United States |
| Stripe | Subscription billing and invoicing | Billing contact, subscription status, payment method tokens (card data handled by Stripe) | United States and Stripe’s global processing network |
| Resend | Transactional email (reports, notifications, lead follow-up) | Email address; message metadata; finding titles/rule keys in notification copy | United States |
| Cloudflare Turnstile | Bot protection on public forms when enabled | Bot-challenge tokens and related request metadata | Cloudflare global network |
| Google Analytics | Marketing-site usage analytics when a measurement ID is configured and the visitor accepts optional measurement | Online identifiers, page views, approximate device/browser data | United States / Google |
| LinkedIn Insight Tag | Advertising conversion measurement on the marketing site when a partner ID is configured and the visitor accepts optional advertising measurement | Online identifiers, page views, conversion events, professional profile identifiers LinkedIn already holds | United States / LinkedIn (Microsoft) |
We may update this list as our stack changes. Material additions for customer personal data will be handled per the customer DPA / MSA. Return to the Trust Center.