List of BizKitHub Sub-processors

To support the delivery of our Services, BizKitHub may engage and use data processors with access to certain Customer Data. This page provides important information about the identity, location, and role of each Sub-processor.

πŸ“‹ Legal Notice

This Sub-Processor page is incorporated into the DPA and Terms of Service or MSA entered into between Customer and BizKitHub (whichever shall be applicable).

Last updated: 12 May 2025

Sub-processors Overview

Vendor NameLocationPurposeCategory
AWS
Global (EU, US, AP)Cloud infrastructure, compute, storage, and networking servicesInfrastructure
Vercel
Global (EU, US)Frontend hosting and deployment platformHosting
Neon
EU, USPostgreSQL database hosting and managementDatabase
Google Analytics
GlobalWebsite analytics and user behavior trackingAnalytics
Google Workspace
GlobalEmail services, document collaboration, and productivity toolsProductivity
Stripe
Global (EU, US)Payment processing and financial transactionsPayments
Comgate
Czech Republic, EULocal payment gateway for Czech and European marketsPayments
Notion
US, GlobalInternal documentation, project management, and knowledge baseProductivity
Cloudflare
GlobalCDN, DDoS protection, DNS, and edge computing servicesSecurity
Sentry
US, EUError tracking, performance monitoring, and application debuggingMonitoring
Slack
US, GlobalInternal team communication and collaborationCommunication
Resend
US, EUTransactional email delivery and email API servicesEmail

Categories Overview

Infrastructure

1 vendor
  • β€’ AWS

Hosting

1 vendor
  • β€’ Vercel

Database

1 vendor
  • β€’ Neon

Analytics

1 vendor
  • β€’ Google Analytics

Productivity

2 vendors
  • β€’ Google Workspace
  • β€’ Notion

Payments

2 vendors
  • β€’ Stripe
  • β€’ Comgate

Security

1 vendor
  • β€’ Cloudflare

Monitoring

1 vendor
  • β€’ Sentry

Communication

1 vendor
  • β€’ Slack

Email

1 vendor
  • β€’ Resend

Data Protection & Compliance

βœ… Our Commitments

  • β€’ All sub-processors are contractually bound to GDPR compliance
  • β€’ Regular audits and security assessments
  • β€’ Data Processing Agreements (DPAs) with all vendors
  • β€’ Continuous monitoring of data handling practices
  • β€’ Immediate notification of any security incidents

πŸ”’ Security Standards

  • β€’ SOC 2 Type II compliance where applicable
  • β€’ ISO 27001 certification requirements
  • β€’ End-to-end encryption for data in transit
  • β€’ Encryption at rest for stored data
  • β€’ Regular penetration testing and vulnerability assessments

Regional Compliance

πŸ‡ͺπŸ‡Ί European Union (GDPR)

All sub-processors handling EU customer data comply with GDPR requirements. Data transfers outside the EU are protected by appropriate safeguards.

EU-based processors: Neon (database), Comgate (payments), and regional AWS/Cloudflare infrastructure ensure data sovereignty.

πŸ‡ΊπŸ‡Έ United States

US-based sub-processors comply with applicable privacy frameworks and maintain appropriate certifications for international data transfers.

Key US processors: AWS, Vercel, Stripe, Google services with Standard Contractual Clauses (SCCs) for EU data protection.

Questions About Sub-processors?

If you have questions about our sub-processors or data processing practices, our privacy team is here to help.