Reconstruct Service Providers and Subprocessors
Effective date: October 11, 2026
Cryptify Corporation uses the providers below. A provider may act as our processor, as a subprocessor for customer data, or as its own controller, depending on the operation. Software we install on our own servers, including PostgreSQL, MinIO and Keycloak, is not a separate recipient. JetBrains, Cal.com and Sentry's publisher are not recipients merely because we run their software ourselves.
Changes that affect customer data under a signed DPA follow that DPA, including 30 days' notice before a new subprocessor.
| Provider | What it processes | Where and role |
|---|---|---|
| Primary hosting | Databases, capture files and the identity service, including backups of those systems | Germany. Hosting provider |
| Diagnostics, support and scheduling hosting | The servers that run our Sentry, YouTrack and Cal installations, including their databases | Poland. Hosting provider |
| Cloudflare | IP address, request metadata and traffic it must see to deliver and protect the site | Network and security provider. Processes traffic through its international network |
| Stripe | Billing contact, subscription and payment status for checkout that uses Stripe. Card details are entered on Stripe's page | Payment provider and its own controller for the card transaction |
| Name, email and account identifier, only if you choose Google sign-in | Sign-in provider. This is separate from any Google AI or URL-safety service | |
| Apple | Name, email and account identifier, only if you choose Apple sign-in | Sign-in provider |
| AI model provider, when a capture task uses one | The capture fields needed for that task, which can include a URL and page structure | The provider selected for that task, such as OpenAI, Anthropic or Google. Any use for the provider’s own training is subject to the disclosures, contractual restrictions and legal requirements applicable to that service. Customer data covered only by a DPA is not sent for this |
| URL safety service, when a submitted URL is checked | The URL or domain you submit | The service enabled for that check, such as a web-risk, malware or domain-registration lookup. Do not put secrets in the URL |
No other payment provider is in use. If one is added, it will be named here before it is offered at checkout.
YouTrack, Cal and Sentry run on the Poland hosting listed above. Support tickets are kept for 24 months after the last message. Diagnostic events are kept for 90 days. A sales booking is kept for 24 months after the last related message, the same period as a support ticket.