Subprocessors
The infrastructure providers that process data on behalf of Novos Publishing LLC, what each of them does, and how we tell you when the list changes.
1. What this page is
To run Uplynx we rely on a small number of service providers. Where one of them processes personal data on our behalf, it is a subprocessor, and this page is the current list of them.
Each is bound by a written contract that limits them to processing data for the purpose of providing their service to us, requires appropriate security, and prohibits them from using your data for their own purposes.
This page forms part of our Privacy Policy and of our Data Processing Addendum.
2. Current subprocessors
| Provider | What it does for us | Data it processes | Location |
|---|---|---|---|
| Clerk, Inc. | Authentication, account management and organization membership | Name, email address, account identifier, sign-in metadata | United States |
| Neon, Inc. | Managed Postgres database — the primary store for the service | All service data, including account records and project content | United States |
| Vercel Inc. | Application hosting, delivery and request logging | Request metadata, including IP address, user agent and paths; content in transit | United States |
| GitHub, Inc. | Repository integration — only where a customer connects a repository | Repository and commit metadata sent by the integration you configured | United States |
| Cloudflare, Inc. | Object storage (R2) for documents and files saved to a project | The contents of any document or file you save, and its name and size | United States |
| Functional Software, Inc. (Sentry) | Server error monitoring, so that faults are found by us rather than by you | Error messages, stack traces, and request metadata such as method and path. Request bodies, cookies, credentials and account email addresses are removed before anything is sent. | United States |
GitHub processes data only for customers who have chosen to connect a repository. If you have not connected one, no data reaches it.
Cloudflare stores files in a bucket located in the United States, and its jurisdiction setting prevents objects being placed outside it. The bucket is private: files are reachable only through short-lived links that our servers issue after checking your access, and never by a public address.
Sentry receives error reports from our servers only. It runs no code in your browser, and we strip request bodies, cookies, credentials and email addresses before an error leaves our systems — so the contents of your projects are not part of an error report.
3. Announced, not yet in use
We list providers here once the decision to use them is made and before they start processing anything, so that you have notice in advance rather than after the fact.
| Provider | What it will do for us | Data it will process | Location |
|---|---|---|---|
| Stripe, Inc. | Payment processing for paid plans | Billing contact, payment method and transaction records. Stripe holds card details; we do not receive them. | United States |
No payments are processed today. This row takes effect when paid plans open, and you will be told before that happens.
4. How we tell you about changes
You give us general authorization to engage subprocessors. Before we add one, or replace one, we will update this page and give at least 30 days' notice by email to account holders, unless a change is urgently required to keep the service secure or available — in which case we will tell you as soon as we can.
If you object to a new subprocessor on reasonable data-protection grounds, write to zero2ceo.email@gmail.com within the notice period. We will work with you to find an alternative, and if we cannot, you may cancel your subscription and we will refund any prepaid amount covering the period after cancellation.
5. Contact
Questions about this list, or a request for the contractual terms we hold with any provider on it, go to zero2ceo.email@gmail.com.
Questions go to zero2ceo.email@gmail.com.