panel · v0 hosted preview · statusfree tier open · paid tiers in DP onboarding
panel/legal/sub-processors
sub-processors · v0

sub-processors

last updated: 2026-05-20 · effective: TBD

v0 — pending counsel review. reflects current panel practices. wording may change after legal review. questions: privacy@goku.codes.

sub-processors are third parties we use to operate panel. operators on a paid plan receive 30 days' email notice before any addition or material change per the DPA.

active

vendorpurposedataregionterms
Oracle Cloud Infrastructurehosting (compute, storage, network)all panel data at rest + in motionFrankfurt, DEDPA
Let's Encrypt (ISRG)TLS certificate issuancedomain name onlyUSrepository
GitHubsource code hostingcode only, no production dataUSDPA

sibling internal services (same trust boundary)

servicepurposedatalocation
scrubber-proxyPII/secret sanitization before a unit reaches a rateroperator-submitted unit contentsame host, Frankfurt

planned (not yet active)

vendorwhenpurposeDPA
Stripefirst paid planpayments + invoicingDPA
Postmark / AWS SESfirst transactional emailoperator email, verification mailsDPA
Cloudflareif CDN/WAF addedrequest metadata, IPDPA
Sentry / equivalentif error tracking addedscrubbed stack tracesDPA

evaluated and rejected

  • Google Analytics / GA4 — EU transfer + consent overhead; privacy-respecting alternative (Plausible/Umami self-hosted) preferred.
  • Hotjar / FullStory — session replay = behavioral biometrics; incompatible with the panel data posture.

notice + objection

paid operators receive 30 days' advance email notice for additions or material changes. operators may object in writing; if unresolved, the operator may terminate per the DPA. list reviewed quarterly.