Subprocessors¶
Statement¶
A subprocessor, for the purposes of this page, is any third-party service that processes ClaimGuard customer data on our behalf in the production environment. The list is short — one entry — and is maintained alongside the Vendor management page, which covers the process of vetting and reviewing vendors.
This list is current as of 2026-04-29. Changes to it are tracked in the internal hardening journal and disclosed to material customers on the contractually required notice cadence (today, no customer is at material scale; this becomes operational at first regulated-customer onboarding).
Production subprocessors¶
| # | Subprocessor | Purpose | Data processed | Region | DPA / contract |
|---|---|---|---|---|---|
| 1 | Google LLC — Google Cloud Platform | Compute, persistent storage, secrets, audit logs, snapshots | All production application data: user accounts, claim narratives, evidence files, configuration, secrets at rest | Primary: europe-west1 (Belgium). Snapshots: same region geography. |
Google Cloud DPA accepted at project setup. |
Non-subprocessors (clarifying scope)¶
The following touch the codebase or development environment but do not process production customer data:
- Snyk — scans source manifests / source code; does not see runtime data.
- GitHub — source-code hosting and PR review.
- npm registry / PyPI — pull-only; no production data exposure.
These are documented under Vendor management for completeness but are not subprocessors in the data-processing sense.
How additions and changes are handled¶
- A new subprocessor is added only after the vendor process described in Vendor management is complete.
- The change lands in this page in the same PR that wires the new vendor into production.
- The change is recorded in the internal hardening journal so the history is reconstructable.
- For customers under a contractual notification clause, the change triggers the contractually required notice. Today no customer is at material scale; this becomes operational at first regulated- customer onboarding.
Data residency note¶
The primary residency commitment we can give a customer today is
"data at rest lives in the europe-west1 GCP region for the
persistent storage tier."
Status¶
implemented — verified 2026-05-10.
One subprocessor enumerated and covered by the Google Cloud DPA.
Roadmap¶
- PDF index of executed contracts — a single internal page linking each subprocessor entry to the PDF of the executed DPA / Order Form and any addenda.
- Customer notification workflow for material new subprocessors — formalized at first regulated-customer onboarding.