Subprocessor List

Last updated:

Tendrill, LLC ("Tendrill," "we," "us," or "our") uses certain third-party service providers ("subprocessors") to assist in providing our services. This page lists our current subprocessors and the types of data they may process on our behalf.

Current Subprocessors

The following table lists our current subprocessors:

Convex

Purpose: Database and backend infrastructure
Location: United States
Data Types: Account data, user preferences, application data

Plaid Inc.

Purpose: Financial account connections and data aggregation
Location: United States
Data Types: Financial account identifiers, balances, holdings, transactions

Resend

Purpose: Transactional email delivery
Location: United States
Data Types: Email addresses, email content

Twilio / Sendblue

Purpose: SMS and RCS messaging services
Location: United States
Data Types: Phone numbers, message content, delivery status

PostHog

Purpose: Product analytics and usage insights
Location: United States / European Union
Data Types: Usage data, device information, anonymized analytics

Sentry

Purpose: Error monitoring and application performance
Location: United States
Data Types: Error logs, stack traces, device information

OpenAI

Purpose: AI-powered features and insights generation
Location: United States
Data Types: User queries, context data for AI processing

Massive

Purpose: Market data and financial information
Location: United States
Data Types: Ticker symbols, price queries

Composio

Purpose: Third-party integrations and automation
Location: United States
Data Types: Integration credentials, workflow data

Polar

Purpose: Payment processing and subscription management
Location: United States
Data Types: Payment information, subscription status, billing details

Vercel

Purpose: Web hosting and content delivery
Location: United States (Global CDN)
Data Types: HTTP request data, access logs

International Data Transfers

Some of our subprocessors may process data outside of your country of residence. For transfers of personal data from the European Economic Area (EEA), United Kingdom, or Switzerland to countries that have not been deemed to provide an adequate level of data protection, we rely on appropriate safeguards such as:

  • Standard Contractual Clauses (SCCs) approved by the European Commission
  • Data Processing Agreements with appropriate security commitments
  • Subprocessor certifications (e.g., SOC 2 Type II, ISO 27001) where available

Updates & Notifications

How We Notify You of Changes

We update this page when we add or remove subprocessors. We encourage you to check this page periodically. For enterprise customers with Data Processing Agreements (DPAs), we provide advance notice of new subprocessors as specified in your agreement.

If you have concerns about a subprocessor listed above, please contact us at the address below. For customers subject to GDPR or similar regulations, you may have the right to object to the use of a new subprocessor as outlined in your DPA.

Data Processing Agreements

Enterprise customers may request a Data Processing Agreement (DPA) that governs the processing of personal data on their behalf. Our DPA includes:

  • Standard Contractual Clauses for international transfers
  • Security commitments and incident notification procedures
  • Subprocessor notification and objection rights
  • Data deletion and return procedures

To request a DPA, please contact us at the address below.

Contact

If you have questions about our subprocessors or wish to request a Data Processing Agreement:

Tendrill, LLC

141 N Water St, Unit 20

Milwaukee, WI 53202 United States

Email: privacy@tendrill.com