Proofly Subprocessors List

This page provides information about the third-party subprocessors we use to provide our Services. These third parties may access, process, or store personal data in the course of providing their services to Proofly.

We carefully select each subprocessor and enter into appropriate data processing agreements with them to ensure an adequate level of protection for your personal data.

Current Subprocessors

Subprocessor
Legislati
ons
Location
Services Provided
Data Protection Framework
Microsoft Corporation (Azure)
United States
Cloud hosting for our API services
EU-US Data Privacy Framework certified
Google LLC
United States
Analytics, advertising services, and cloud hosting
EU-US Data Privacy Framework certified
Amazon Web Services, Inc.
United States
Cloud hosting and storage
EU-US Data Privacy Framework certified
HubSpot, Inc.
United States
EU-US Data Privacy Framework certified
EU-US Data Privacy Framework certified
Supabase Inc.
United States
Database services
Standard Contractual Clauses (SCCs)
Webflow, Inc.
United States
Website hosting
Standard Contractual Clauses (SCCs)
Twilio SendGrid
United States
Email delivery services
EU-US Data Privacy Framework certified
Storacha
United States
Blockchain transaction content storage in IPFS
Standard Contractual Clauses (SCCs)

Updates to Subprocessors

We may update this list from time to time as our business needs and technical infrastructure evolve. We encourage you to check this page periodically for any changes. If we make substantial changes to our subprocessors that may significantly affect your personal data, we will notify you through appropriate channels.

Your Rights

If you have any questions or concerns regarding our use of subprocessors, please contact our Data Protection Officer at dpo@proofly.ai.

International Data Transfers

For transfers of personal data to subprocessors located outside of the European Economic Area (EEA), United Kingdom, or Switzerland, we implement appropriate safeguards:

  • EU-US Data Privacy Framework (DPF): We prioritize working with US-based companies that are certified under the EU-US Data Privacy Framework where possible.

  • Standard Contractual Clauses (SCCs): For subprocessors not certified under the DPF, we implement the European Commission's Standard Contractual Clauses.

  • Additional Safeguards: Where necessary, we implement supplementary technical and organizational measures to ensure an adequate level of protection for all personal data transfers.