All legal documents

Sub-processors

Last updated 2026-09-24

1. What this page covers

Cheetah Technologies LLC uses the providers below to run Cheetah OS and our website. Each is bound by a written contract that limits its use of personal information to providing services to us. For Customer Data, these providers are sub-processors under our Data Processing Addendum. How we use the information is explained in our Privacy Policy.

2. Sub-processors for the Cheetah OS application

ProviderPurposePersonal information involvedLocation
NeonPostgreSQL database hostingAll data stored in the Service; sensitive fields remain encrypted with per-tenant keysUnited States [[FILL: confirm region]]
VercelApplication hosting and content deliveryRequest data and application data in transitUnited States [[FILL: confirm region]]
Amazon Web Services (S3 and KMS)Document storage and encryption key managementUploaded documents, such as identity documents, bank statements and tax forms, stored encryptedUnited States [[FILL: confirm region]]
StripeSubscription billing and payment methodsBilling contact details, payment method details (held by Stripe; we never store full card numbers), invoicesUnited States [[FILL: confirm]]
TelnyxVoice calls, text messages, phone numbers and call recordingPhone numbers, call and message metadata, text message content, call recordingsUnited States [[FILL: confirm region]]
ResendTransactional email deliveryRecipient email addresses and message contentUnited States [[FILL: confirm region]]
SentryError monitoringTechnical error data, which may include User identifiersUnited States [[FILL: confirm region]]
CloudflareBot protection (Turnstile) on sign-in and formsBrowser and device signals, IP address[[FILL: confirm]]
[[FILL: malware scanning provider]]Malware scanning of uploaded filesUploaded files[[FILL: confirm]]
[[FILL: large language model provider]]In-app AI assistantThe User's request and conversation, the User's name, role and organization name, and records the assistant looks up; not used to train models [[FILL: confirm no-training and retention terms]][[FILL: confirm]]

3. Services a customer chooses to connect

These providers are used only if a customer connects its own account. They are the customer's own providers, and the customer's agreement with them governs their use of the data.

ProviderWhen it is usedPersonal information involved
GoogleWhen a customer connects a Google mailbox for email outreach, through OAuth or IMAP and SMTPMailbox authorization credentials (stored encrypted) and email sent or read through the connection
MicrosoftWhen a customer connects a Microsoft mailbox for email outreach, through OAuth or IMAP and SMTPMailbox authorization credentials (stored encrypted) and email sent or read through the connection

4. Providers for the cheetahos.app website

These providers process information about website visitors, for which we are the controller.

ProviderPurposePersonal information involvedLocation
VercelWebsite hostingRequest data such as IP address and browser typeUnited States [[FILL: confirm region]]
NeonRate limiting records and demo account creationA salted hash of the visitor's IP address; details entered in the demo formUnited States [[FILL: confirm region]]
CloudflareBot protection (Turnstile) on the contact and demo formsBrowser and device signals, IP address[[FILL: confirm]]
GroqAI inference for the "Ask our AI" chatMessages the visitor types into the chat[[FILL: confirm]]

5. Planned providers

If and when we enable planned features such as bank data connections, identity verification, AI voice agents or point-of-sale connectors, we will add the providers involved to this page and give notice as described below before they process Customer Data.

6. Notice of changes

We will give customers at least 30 days' notice before a new sub-processor begins processing Customer Data, by [[FILL: notice method, e.g. email to customer administrators, plus an update to this page]]. Customers may object on reasonable data protection grounds within that period, as described in our Data Processing Addendum. To receive notices, [[FILL: describe how to subscribe, e.g. email privacy@cheetahos.app]].

Contact

Questions about our sub-processors: privacy@cheetahos.app [[FILL: confirm mailbox exists]] or info@cheetahos.app. Cheetah Technologies LLC, [[FILL: mailing address]].