Subprocessors

Last updated August 7, 2026

These are the third-party providers that process data on our behalf, and specifically what each one receives. We keep this list short on purpose — every provider here is one we depend on to run the product.

Always active

These providers are involved in running the service for every customer.

Vercel

Application hosting and content delivery

All requests to the application pass through Vercel, including any data in transit. Uploaded files are stored in Vercel Blob storage.

Neon

Managed PostgreSQL database

All application data at rest: account details, business records, ledger entries, and payroll records.

Active only in certain cases

These providers only receive data when a specific feature is in use. If you never use the feature, no data reaches them.

Stripe

Subscription billing

Your organization name and an internal account identifier. Card details are entered on Stripe's own hosted checkout and never reach our servers.

Active when you subscribe to a paid plan.

Resend

Transactional email delivery

Recipient name and email address, and the contents of the message — which may include an invoice number, amount, and an attached invoice PDF.

Active when you send an invoice or enable payment reminders.

Plaid

Bank account connections and transaction data

Bank login credentials are entered directly with Plaid and are never visible to us. We receive transaction dates, amounts, and descriptions, plus the institution name and last four digits of the account.

Active only if you choose to connect a bank account.

Google (Gemini API)

AI-assisted bookkeeping

When you use an AI feature: a bank transaction's description and amount for category suggestions, or summary financial totals for reporting questions. Requests are processed under our API agreement with Google, which does not permit training on the data. If you connect your own AI provider key instead, requests go to your provider and Google receives nothing.

Active only when you use an AI feature without connecting your own provider key.

Google Analytics

Website measurement

Standard web analytics for the public pages only — pages viewed, approximate location from a truncated IP, browser and referrer. It is not loaded once you sign in: no page inside your books is measured, so no company name, document, customer or balance ever reaches it.

Public marketing pages only; never inside the application.

Sentry

Error monitoring

Technical error reports: stack traces, browser and request metadata. Payloads are filtered to remove credentials and secret-shaped values before transmission.

Active when error monitoring is enabled.

Services you connect yourself

The AI assistant is included with eligible plans and runs through Google's Gemini API (listed above). You can instead connect your own API key — Anthropic (Claude) or Google (Gemini) — in which case every AI request routes to your provider under your agreement with them, and our platform provider receives nothing. Either way, nothing is sent unless you actively use an AI feature, and removing your key (or never using the features) stops all AI requests.

Changes to this list

We update this page when a provider is added or removed. For how this fits into our overall handling of your data, see the privacy policy.