Subprocessors
Draft v0.1 — under legal review; current as of September 2, 2026
Юридические документы доступны на английском языке.
This page lists the service providers that process data for the Bidders Booking Pilot. “Active” means the provider processes pilot data. “Conditional” means it does so only if the relevant feature or support channel is selected. Services marked “Not in pilot,” “Not used,” or “Not configured” do not receive pilot data.
Material changes are announced by email to workspace admins.
Change log
- Draft v0.1 — under legal review; current as of September 2, 2026: Initial publication.
| Provider | Service | Data and purpose | Region | Status | Terms |
|---|---|---|---|---|---|
| Amazon Web Services, Inc. | SES | Forwarded broker emails (raw MIME), envelope addresses, and notification emails to users; receives forwarded email and sends login and notification email. | us-east-1 (N. Virginia) | Active | AWS Service Terms |
| Amazon Web Services, Inc. | S3 | Raw MIME of forwarded emails, attachments, and uploaded documents; stores originals for parsing and re-parsing. | us-east-1 | Active | AWS Service Terms |
| Amazon Web Services, Inc. | RDS PostgreSQL | Workspace data, including parsed offers, roster, users, bids, drafts, replies, and audit log; runs the application database. | us-east-1 (primary and standby) | Active | AWS Service Terms |
| Amazon Web Services, Inc. | ECS / Fargate, ALB, SQS, ElastiCache/Redis, and CloudWatch | Data in memory while processing, queue messages with email references, and logs that may contain email addresses, subjects, and IDs; runs the application, queues, caches, and monitoring. | us-east-1 | Active | AWS Service Terms |
| Cloudflare, Inc. | Pages, DNS, and Email Routing | Website visitors’ IP and browser information; support@bidde.rs email in transit; hosts the public site and routes support email. | Global edge | Active | Cloudflare DPA |
| Google LLC | Gmail / Google Workspace support mailbox | Anything sent to support@bidde.rs, including screenshots and forwarded examples; handles support correspondence. | USA | Active | Google Workspace DPA |
| OpenAI, L.L.C. | OpenAI API | When an AI feature is enabled: an excerpt of an offer email with a load and truck snapshot for fit-checking, or an unparsed email’s subject line and sender address for template proposals. | USA | Off by default for new workspaces; enabled only at the customer's written request | OpenAI Business Terms |
| Stripe, Inc. | Invoicing and payment | Payment processing for pilot and subscription fees when card payment is enabled; pilots may be invoiced manually. | USA | Active from day 15 | Stripe DPA |
| Google LLC | Google Maps Platform | Not used in the Booking Pilot. | — | Not used | — |
| OpenStreetMap Foundation | Nominatim public geocoding API | City, state, and country strings from offers when the built-in city dictionary has no match; provides fallback geocoding for distance and matching. No names, email addresses, phone numbers, or full street addresses are sent. | EU (Netherlands) | Active fallback | Nominatim policy |
| Amazon Web Services, Inc. | Self-hosted Valhalla routing | Coordinates only; calculates road distance and deadhead for matching. | us-east-1 | Active (no third party beyond AWS) | — |
| Amazon Web Services, Inc. | Self-hosted Traccar | Driver GPS positions; supports Driver app live tracking. | us-west-1 (N. California) | Not in pilot | — |
| Google LLC | Firebase Cloud Messaging | Push tokens and notification payloads; supports Driver app push notifications. | USA | Not in pilot | Firebase data-processing terms |
| Google LLC | Gmail API / Pub/Sub | Mailbox contents; would support a direct mailbox connection. The Booking Pilot uses forwarding only and does not request Google OAuth scope. | USA | Not used | — |
| Functional Software, Inc. (Sentry) | Error monitoring | Stack traces and request metadata; would support crash reporting. | USA | Not configured | Sentry DPA |
| Telegram FZ-LLC | Support chat | Whatever a customer sends in chat; provides an optional support channel. | UAE / Netherlands | Conditional — customer choice | Telegram privacy policy |
All Amazon Web Services rows are one vendor under one AWS account; they are listed separately so customers can see which service holds which data. No Anthropic, Google Gemini/Vertex AI, AWS Bedrock, Azure OpenAI, Mistral, or other LLM integration is listed for the Booking Pilot.