Legal
Subprocessors.
Updated before any addition — last updated 10 August 2026.
| Provider | Purpose | Notes |
|---|---|---|
| Cloudflare, Inc. | Hosting, application runtime (Workers), and optional D1 / R2 object storage | Global edge; data at rest encrypted |
| Neon, Inc. | Postgres system of record when DATABASE_URL is configured | US/EU region per project; encrypted at rest |
| Stripe, Inc. | Subscription billing, invoices, and payment processing | PCI handled by Stripe; we store customer/subscription ids only |
| Enrich Layer | Identity resolution lookups (email → professional profile), only when you connect it | Per-address lookups on your instruction |
| PostHog, Inc. | Product analytics and engagement event processing, only when you connect it | Your PostHog project, your keys |
| LeadMagic | Mailbox-level email validation, only when you connect it | Per-address checks on your instruction |
| Resend | Transactional auth email (magic links), only when RESEND_API_KEY is set | Email delivery for sign-in links |
Optional providers (Enrich Layer, PostHog, LeadMagic) only become subprocessors for your workspace when you connect them. Questions: legal@listfunnel.ai.