Subprocessors
Every company that receives account or document data, what each one receives, where, and whether a Business Associate Agreement is in force. The list is held to our internal data-flow record by an automated check that runs before every release.
| Company | What it receives | Purpose | Region | BAA |
|---|---|---|---|---|
| Documents and infrastructure | ||||
| AWS S3 | ReceivesEvery document you upload, send or receive, with its cover page, encrypted at rest. | PurposeDocument storage | RegionUS East (N. Virginia) | BAAIn force |
| Neon | ReceivesYour account and team details, the record of every fax with its numbers, page counts and status, inbox details, support messages and the access log. Never the documents themselves. | PurposeApplication database | RegionUS East (N. Virginia) | BAAIn force |
| Vercel | ReceivesEvery request to the site, as the hosting platform. | PurposeHosting | RegionUS East | BAAIn force |
| Amazon Bedrock | ReceivesPages of some outbound faxes, as reduced images. No number, name or account reference. The pages stay inside AWS and are neither retained nor used for training.Covered by the same agreement as our document storage. | PurposeScreening for junk-fax blasts | RegionUS East (N. Virginia) | BAAIn force |
| Cloudflare | ReceivesNothing for faxterra.com itself. It holds our domain and DNS and is not in the path of your requests. A visitor who mistypes our domain has their IP address seen at the redirect. | PurposeDomain registration, DNS and misspelling redirects | BAANot applicable | |
| Fax delivery | ||||
| Telnyx | ReceivesThe document being sent, the number it goes to and your sending number.Carries the phone-network leg of a fax as a conduit under HIPAA's conduit exception (78 FR 5571). | PurposeFax delivery and receipt | BAANone | |
| Faxage | ReceivesThe fax number just assigned to you, as the destination of a test fax from a number of our own. It sees that number and nothing else: not who holds it, and never a document. | PurposeConfirming a newly assigned number can receive | BAANone | |
| Payments, email and notifications | ||||
| Stripe | ReceivesYour email address and an account reference.Card details go to Stripe directly and never reach us. Receives no documents. | PurposePayment processing | BAANot applicable | |
| Resend | ReceivesYour email address and the details of each fax notice: the number, the page count and the outcome. The signed copy of an executed Business Associate Agreement, as an attachment to the signer.A HIPAA account receives notices that carry no name, number or document detail. | PurposeTransactional email | BAANone | |
| Expo Push Service | ReceivesYour device push token and the text of each mobile notification.A HIPAA account receives notices that carry no number or detail. | PurposeMobile push notifications | BAANone | |
| Sign-in | ||||
| ReceivesYour sign-in identity, if you sign in with Google. | PurposeSign-in | BAANot applicable | ||
| Apple | ReceivesYour sign-in identity, if you sign in with Apple; on first launch of the iPhone app, an anonymous install-attribution token. | PurposeSign-in and app install attribution | BAANot applicable | |
| Analytics, advertising and video | ||||
| PostHog | ReceivesA user reference, your email address and product events such as fax counts and errors.Receives no documents. | PurposeProduct analytics | BAANone | |
| Sentry | ReceivesError details: the message, where in the app it happened, and a pseudonymous user reference. Sentry discards your IP address rather than storing it with the report. | PurposeError monitoring | BAAIn force | |
| Google Analytics | ReceivesPage views, anonymized. | PurposeWeb analytics | BAANot applicable | |
| Google Ads | ReceivesA signup, a fax sent or a subscription, as a conversion event tied to an ad click. | PurposeAd attribution | BAANot applicable | |
| Microsoft Advertising (Bing) | ReceivesA signup, a fax sent or a subscription, as a conversion event tied to an ad click. | PurposeAd attribution | BAANot applicable | |
| YouTube | ReceivesOnly after you press play on a walkthrough video: the request for the video, with your IP address and the page you were on. | PurposeWalkthrough video playback | BAANot applicable | |
| Support and help | ||||
| Anthropic | ReceivesYour questions to the "Ask the docs" help chat and, if you are signed in, a limited summary of your own plan and usage. Never a document. | PurposeThe help chat | BAANone | |
| Google Workspace | ReceivesEmail you send to our support, feedback and founder addresses, in full. | PurposeOur inbound mailboxes | BAANone | |
A BAA marked “None” means no agreement is in place with that company. The region column is filled where we have recorded one. The same companies are listed in the privacy policy; questions about any of them go to privacy@faxterra.com. Back to the Trust Center.