Synchronise AI
PrivacySub-processorsCookieTermsLogin
Privacy

Sub-processors.

These are the third-party services that help us operate Synchronise AI. Each one is bound to protect customer data and process it only to provide its part of the service. We keep this list current and notify workspace admins before a new sub-processor that handles customer data takes effect.

v2026.06 · effective 4 June 2026← Back to Privacy Policy
ProviderRegionPurposeSecurity posture
SupabaseTokyo, JapanDatabase, auth, and file storage — holds all workspace dataSOC 2 Type II, ISO 27001 (provider)
VercelGlobal edgeApplication hosting and serverless functions — data in transitSOC 2 Type II, ISO 27001 (provider)
Fly.ioRegional (per workspace)Dedicated compute for autonomous agents — prompt + signal during a runSOC 2 Type II (provider; report under NDA)
AnthropicUnited StatesAI inference for chat, insights, and agents — prompts + connected signalSOC 2 Type II, ISO 27001/42001 (provider); no training on API data
ComposioUnited StatesOAuth broker / tool router — holds connector tokens; reads sources during tool callsSOC 2 Type II (provider)
ResendUnited StatesTransactional + agent email — recipient address and message contentSOC 2 Type II (provider)
StripeUnited States / IrelandSubscription billing — billing contact and plan; card data handled by StripePCI DSS Level 1; SOC 1 & SOC 2 (provider)
PostHogUnited StatesProduct analytics + masked session recording — usage events, no raw source dataSOC 2 Type II (provider)
TelegramGlobalOptional agent delivery — linked chat ID + notifications (only if you link it)No DPA; notification channel only

About this list

Synchronise AI does not hold its own SOC 2 attestation. The certifications in the table belong to the named providers and reflect their own published statements; their reports are available from them directly, typically under NDA. Regions reflect where each provider processes data for us and can change as providers evolve their infrastructure.

Sources you connect

The tools you connect — analytics, support, project management, docs, and communication platforms — are the data sources you point us at, not sub-processors acting on our behalf. We read from them through the OAuth broker above, at the scopes you grant, and you can disconnect any of them at any time. Their handling of your data is governed by their own terms.

Changes

When we add or replace a sub-processor that handles customer data, we update this page and email workspace admins before the change takes effect. You have 30 days to object on reasonable data-protection grounds. See the Privacy Policy and Data Processing Addendum for the full terms.

Related documents
  • Privacy PolicyWhat we collect, why, and your rights.
  • Cookie NoticeWhat we set in your browser and why.
  • Data Processing AddendumProcessor terms for connected customer data.
  • Terms of ServiceThe agreement that governs use of the product.

Synchronise AI · ABN 68 960 446 366 · Gautham Srinivas, founder · Tokyo, Japan data residency. Questions and requests: gautham@synchronise.ai.

© Synchronise AI. This page supersedes any prior version. We email workspace admins before material changes take effect.