Effective date: 28 May 2026. The third-party providers Truvyo uses to deliver the Service. Customer notification of additions or replacements: 30 days, per the DPA.
| Provider | Purpose | Data category | Location |
|---|---|---|---|
| Cloudflare, Inc. | Compute (Workers + Durable Objects), storage (D1, Vectorize, R2, KV), edge inference (Workers AI for embeddings) | All Customer Content; conversation transcripts; tenant configuration | Region selected per tenant (default: US) |
| Anthropic, PBC | LLM inference (Claude Haiku 4.5 and Claude Sonnet 4.6) | Prompts (including end-user messages) and grounding context per request | US |
| Stripe, Inc. | Payment processing | Billing contact, payment method (card numbers stored by Stripe, not Truvyo) | US |
| Postmark (ActiveCampaign) | Transactional email (sign-in links, billing notices, security alerts) | Operator email address; email body content | US |
| Airtable, Inc. | Human review queue for benched articles; Customer-facing only when Customer opts in | Article drafts flagged by the cross-check audit; not Customer Content | US |
| Bright Data Ltd. | Web scraping for the auto-update pipeline (Shared Library ingestion + research mode) | None — outbound only, no Customer data sent | Global |
| Sentry, Inc. | Application error monitoring | Stack traces, request metadata; PII stripped at SDK | US |
Each subprocessor is bound by terms at least as protective as those in our DPA. Truvyo conducts initial due diligence (SOC 2 / ISO certification, regional compliance, security posture) before engaging a new subprocessor, and reviews active subprocessors annually.
Truvyo provides Customers with at least 30 days' notice via email before engaging a new subprocessor or replacing an existing one. Customers may object on reasonable security or compliance grounds; if the parties cannot agree on a remedy, the Customer may terminate without penalty.
Contact: privacy@truvyo.ai