Subprocessors
The service providers that may process data on our behalf, and what each one does.
Last updated June 1, 2026
Current subprocessors
Each entry states what the provider does and what categories of data it can reach. Providers that can reach protected health information have a business associate agreement in place.
- Cloud hosting and managed PostgreSQL — application hosting and database. Reaches encrypted health data.
- PayPal — subscription billing. Reaches name, email and billing details. Never reaches health data.
- Transactional email provider — account, security and reminder emails. Reaches email address and discreet message content only.
- Twilio — optional SMS reminders. Reaches phone number and discreet message content only.
- Object storage — uploaded documents, encrypted at rest. Reaches encrypted files.
- Sentry — error monitoring with PHI-safe redaction. Reaches stack traces and request metadata, never health values.
- AI model provider (optional, per tenant) — processes only the minimal context a skill requires, under terms prohibiting training on customer data.
Changes
Organisations on a contract receive advance notice of any addition to this list and may object under their data processing addendum.