Subprocessors and service providers
This list reflects the current technical design. Final entity names, processing locations, transfer safeguards, and contractual roles must be verified before publication.
Current providers
| Provider | Purpose | Data involved | Control |
|---|---|---|---|
| Oracle Cloud Infrastructure | Application hosting, database, and object storage on the current production host | Account, archive, operational, and support data | Required for cloud service |
| Cloudflare | DNS, TLS termination, tunnel routing, and protected operator access | Network and request metadata; encrypted traffic handling | Required for public service routing |
| OpenAI | Speech-to-text and optional AI-generated summaries or suggested details | Selected audio, transcript text, and task instructions | Cloud AI can be disabled by the archive owner |
| Apple | Sign in with Apple, App Store purchase processing, push notifications, and app distribution | Identity, purchase, device push token, and transaction data | Depends on chosen Apple services |
| Optional Google sign-in | Identity token and basic account identity returned with consent | User may choose Sign in with Apple instead |
Questions
Questions about this inventory can be sent through the Support page.