Subprocessors

Chief Tools uses third-party providers to operate our services. This page explains why we use each provider, where it processes data, where it is based, the safeguard used for international transfers, and which tools it applies to.

Last updated:

Shared platform subprocessors

Providers used across the platform.

Tool-specific subprocessors

Providers used only by the listed tools or features.

Business administration providers

Providers used for billing and statutory administration. We generally act as controller for this data, so they may not be subprocessors under a customer DPA.

Domain registration providers

Registrars and registries receive data required to register and manage domains. Their legal role varies, so we list them separately rather than treating every provider as a subprocessor.

Questions

Under our Data Processing Agreement, customers receive at least 30 days’ advance email notice before a new subprocessor begins processing Customer Data for a covered service.

“No restricted transfer” means the listed processing remains within the EEA. Where processing may occur outside the EEA, the listed adequacy decision, Data Privacy Framework certification or Standard Contractual Clauses provide the relevant GDPR Chapter V mechanism.

We review this list as our services change. If you have questions or corrections, please contact us.

Need help?

We are happy to help you with any questions you might have.

  Documentation   Roadmap   Report a bug   Get in touch