Governance Guide

Data Subprocessors

How AIDevelopia manages its third-party data subprocessors, including audit controls, purpose definitions, and regulatory alignment.

Updated • August 4, 2025 Request Subprocessor Info

Our commitment

We only engage subprocessors that meet strict security, compliance, and data governance requirements. Each provider undergoes risk assessment, privacy validation, and continuous monitoring aligned to GDPR, SOC2, and regional security controls.

Active Subprocessors

These partners may process limited customer data strictly for service delivery.

Subprocessor Purpose Location
Amazon Web Services (AWS) Cloud hosting provider United States
OpenAI AI model provider United States
Anthropic AI model provider United States
Groq AI model provider United States
Stripe Payment processing United States
Google Analytics Analytics United States
Resend Email delivery United States
Intercom Customer support United States

Subprocessor Qualification Controls

Every subprocessor must meet the following controls before approval:

Security Screening & Risk Review

Infrastructure and data handling evaluation Breach history assessment Vendor maturity scoring

Data Processing Agreements in Place

GDPR Article 28 compliance DPA signatures stored for auditing Region-specific data residency rules

Restricted Scope Processing

Subprocessors are only allowed access where required No full-dataset exposure Minimum retention principles applied