List of Data Sub-Processors¶
Understanding the crucial role that sub-processors play in our service delivery, Choozr Group Ltd is committed to upholding the highest standards of data privacy and security in our selection and management of these partners. Our dedication to protecting your data extends to every aspect of our operations, particularly in how we collaborate with third-party services that assist us in providing you with our offerings.
We recognize that trust in our services is fundamentally tied to our ability to responsibly manage and safeguard the data we process. To that end, we have instituted a rigorous vetting process for all our sub-processors. This process ensures that each sub-processor adheres to stringent data protection standards that align with our privacy values and comply with relevant data protection regulations, including the General Data Protection Regulation (GDPR).
Below is a detailed table of our current sub-processors. This table includes information on the specific roles these entities play in our service ecosystem, their geographic locations, and the existence of signed Data Processing Agreements (DPAs) with each. These agreements are a testament to our proactive approach in formalizing our commitment to data privacy and security, setting clear expectations and requirements for data handling, processing, and protection.
We continually monitor our sub-processors' compliance with these agreements and the evolving landscape of data protection laws to ensure ongoing adherence to our high standards. Our commitment to transparency in this process means we regularly update this list to reflect any changes in our engagements or the addition of new sub-processors.
| Entity | Purpose | Entity Country | Data Processing Location | Signed Data Processing Agreement | 
|---|---|---|---|---|
| Cloudflare, Inc. | Provides content distribution, security, and DNS services, enhancing web traffic management and security. Cloudflare acts as a reverse proxy, ensuring efficient and secure internet traffic flow. Cloudflare's services are also used to store the encrypted copies of user pictures when the users choose to send them to a selected tailor. | United States | Globally (EU Cloud Code of Conduct Compliant) | Yes | 
| Mailgun | An email service for sending transactional emails such as invoices, registration links, and password reset emails. | United States | European Union | Yes | 
| Backblaze | Offers encrypted storage for backups of user and server data, alongside unencrypted invoice copies. | United States | Netherlands | Yes | 
| Google, LLC | Utilized for document and file storage, authentication services (including Apple Sign in, Google Sign In, Facebook Sign In), and email services for customer support communications. | United States | United States, Ireland (for EU GDPR compliance) | Yes | 
| Slack | Provides encrypted internal communications for team collaboration and information sharing. | United States | European Union/United States (EU-U.S. Data Privacy Framework Certified) | Yes | 
| MongoDB Atlas | Hosts an encrypted database service containing all user data to ensure security and privacy. | United States | Ireland | Yes | 
| Hetzner Online GmbH | A cloud service provider offering server leasing and cloud services, ensuring reliable and secure infrastructure for operations. | Germany | Germany | Yes | 
| Scaleway | Provides cloud infrastructure services, including computing, storage, and networking resources. | France | France | Yes | 
| Wix.com Ltd | Offers a platform for creating HTML5 websites and mobile sites through an online drag-and-drop tool, including contact forms for inquiries. | Israel | European Union | Yes | 
| HubSpot, Inc. | Delivers a comprehensive cloud-based platform for marketing, sales, and customer service software, helping businesses grow better every day. | United States | European Union | Yes | 
| Stripe | A payment processing platform for e-commerce websites, handling secure transactions and payment details. | United States | United States (EU-U.S. Data Privacy Framework Certified) | Yes | 
| ZeroBounce | Provides email validation services to ensure email accuracy and reduce bounce rates, enhancing email communication effectiveness. | United States | European Union | Yes | 
| Apple, Inc. | Offers authentication services for iOS apps and various integration options for iOS app functionalities. | United States | United States, Ireland (for EU GDPR compliance) | Yes | 
| Facebook, Inc. | Enables user authentication through Facebook Login, allowing seamless sign-ins with Facebook credentials. | United States | United States, Ireland (for EU GDPR compliance) | Yes | 
| Papertrail | Provides logging services for monitoring, managing, and troubleshooting application logs, enhancing system reliability and security. | United States | United States | Yes | 
| Shopify | Offers deep integrations for e-commerce functionalities with select customers, supporting various aspects of online retail operations. | Canada | Canada/United States | Yes |