Legal

Sub-processors

Last updated 28 June 2026

How to read this list

These are the third parties ewpire engages to process personal data on behalf of its customers (the controllers) in delivering the Service. For cookieless website measurement ewpire uses Cloudflare Web Analytics (a function of Cloudflare, row 1), which stores nothing on the visitor's device. For product and funnel analytics it uses PostHog (row 7, EU Cloud), loaded only after the visitor accepts the Analytics cookie category; PostHog then stores an anonymous identifier in the browser's local storage (no advertising cookie). It also engages an error-monitoring processor (Sentry, row 6) under legitimate interest for security and reliability; this is not analytics and sets no cookie. Payment-card data is handled by Stripe under its own terms.

Infrastructure and operations

#Sub-processorPurposeLocationTransfer mechanism
1Cloudflare, Inc.User-site hosting (Pages/Workers) for generated MVPs and AEO/GEO presence; CDN, DDoS protection, edge compute and EU storageUS / EEA edgeEU edge/storage intra-EEA; SCC Module 2 + DPF where the recipient is certified, for any US leg
2DaytonaSandboxed build runtime for Validation (ephemeral, per-build)SCC Module 2 + TIA if non-EEA; intra-EEA if EEA region
3Hetzner Online GmbHVPS hosting ewpire's own consensus engine and Python worker (not user apps)Germany (EEA)Intra-EEA
4Stripe Payments Europe Limited and/or other Stripe entities as applicableBilling, subscription and credit-pack payments, and Connect Express referral payouts (Stripe acts as an independent controller for payment data)Ireland (EEA) + USIntra-EEA; controller-to-controller (Module 1) / DPF for the US Stripe entities; onward transfers under Stripe's own safeguards
5Resend, Inc.Transactional emailUSSCC Module 2 + DPF where certified
6Functional Software, Inc. (dba Sentry)Application error and performance monitoring (captures error/exception events, which may include IP address and technical request/session context)EU data residency (Frankfurt, de.sentry.io); operator USEU-region storage intra-EEA; SCC Module 2 + DPF where certified for any US support access
7PostHog, Inc. (EU Cloud)Product and funnel analytics (page views, product events); personal data processed only after the visitor accepts the Analytics cookie category; an anonymous identifier is stored in local storage (no advertising cookie)EU Cloud (Frankfurt); operator USEU-region storage intra-EEA; SCC Module 2 + DPF where certified for any US parent access

Consensus LLM inference

These providers perform inference on controller inputs (idea text, interview answers, brand/site content, prompts, and in Validation generated code). All are engaged on a no-training / no-model-improvement basis. Because the consensus primitive selects the best model per task, a given input is transmitted only to the subset engaged for that deliberation.

#Sub-processorLocationTransfer mechanism
8Anthropic, PBCUSSCC Module 2 + DPF where certified
9OpenAI, L.L.C.USSCC Module 2 + DPF where certified
10Google LLC (LLM inference only – not website analytics)USSCC Module 2 + DPF where certified
11Alibaba Cloud (Qwen)SingaporeSCC Module 2 + TIA
12Mistral AI SASFrance (EEA)Intra-EEA
13DeepSeekChinaOff by default – see China note
14Zhipu AI (GLM)ChinaOff by default – see China note
15OpenRouter, Inc.USSCC Module 2 / Module 3 for the onward routed lab, under equivalent safeguards

China-provider note. DeepSeek and Zhipu AI (GLM) are established in the People's Republic of China, which has no EU adequacy decision. They are disabled by default; ewpire routes data to them only on explicit opt-in or after pseudonymisation such that no directly-identifying personal data leaves the EEA, and an account may permanently exclude China-based providers at no cost.

Change notice

ewpire gives advance notice before adding or replacing a sub-processor: at least 30 days for a new non-EEA sub-processor (which materially changes the transfer-risk profile), and at least 14 days for a new EEA sub-processor or a like-for-like replacement. Controllers may object under DPA §4.2; an unresolved objection entitles the controller to terminate with a pro-rata refund of prepaid, unused credits.