Sub-processors
To deliver our services, BizKitHub partners with trusted data processors. This page provides transparency about our partners, their locations, and roles.
Last updated: May 12, 2025
Legal Notice
This Sub-Processor page is incorporated into the Data Processing Agreement (DPA) and Terms of Service or Master Service Agreement (MSA) entered into between Customer and BizKitHub.
All Sub-processors
Complete list of third-party vendors that may process customer data on behalf of BizKitHub.
AWS
Cloud infrastructure, compute, storage, and networking services
Vercel
Frontend hosting and deployment platform
Neon
PostgreSQL database hosting and management
Google Analytics
Website analytics and user behavior tracking
Google Workspace
Email services, document collaboration, and productivity tools
Stripe
Payment processing and financial transactions
Comgate
Local payment gateway for Czech and European markets
Notion
Internal documentation, project management, and knowledge base
Cloudflare
CDN, DDoS protection, DNS, and edge computing services
Sentry
Error tracking, performance monitoring, and application debugging
Slack
Internal team communication and collaboration
Resend
Transactional email delivery and email API services
By Category
Sub-processors organized by their primary function in our infrastructure.
Infrastructure
- AWS
Hosting
- Vercel
Database
- Neon
Analytics
- Google Analytics
Productivity
- Google Workspace
- Notion
Payments
- Stripe
- Comgate
Security
- Cloudflare
Monitoring
- Sentry
Communication
- Slack
- Resend
Data Protection & Compliance
Our commitment to data security and regulatory compliance across all sub-processor relationships.
Our Commitments
- GDPR ComplianceAll sub-processors are contractually bound to GDPR requirements
- Regular AuditsContinuous security assessments and vendor reviews
- Data Processing AgreementsDPAs in place with all vendors handling customer data
- Incident NotificationImmediate alerts for any security incidents
Security Standards
- SOC 2 Type IICompliance verification where applicable
- ISO 27001Certification requirements for vendors
- EncryptionEnd-to-end encryption in transit, encryption at rest
- Penetration TestingRegular vulnerability assessments
Regional Compliance
Data sovereignty and regional requirements across our sub-processor network.
European Union
GDPR Compliant
All sub-processors handling EU customer data comply with GDPR requirements. Data transfers outside the EU are protected by appropriate safeguards.
EU-based processors:
Neon (database), Comgate (payments), and regional AWS/Cloudflare infrastructure ensure data sovereignty.
United States
Privacy Framework Compliant
US-based sub-processors comply with applicable privacy frameworks and maintain appropriate certifications for international data transfers.
Key US processors:
AWS, Vercel, Stripe, Google services with Standard Contractual Clauses (SCCs) for EU data protection.
Questions About Sub-processors?
If you have questions about our sub-processors or data processing practices, our privacy team is ready to assist.