legal

Subprocessors

Last updated: August 24, 2026. This lists third parties that may process personal data to provide Calmping.

1. Core service subprocessors

ProviderPurposeData
Render (Render Services, Inc., USA)Application hosting, database storage, backupsAll stored account and monitoring data
Resend (email delivery)Sending verification, reset, and alert emailsRecipient email address, message content
StripeSubscription billing (Pro)Billing identifiers, payment details (handled by Stripe)
Browser push services (Apple, Google, Mozilla, Microsoft)Delivering Web Push alertsPush subscription endpoint, alert content

2. User-selected integrations

These are optional and activated only when you connect them. Data is sent at your instruction and governed by that provider's terms and privacy policy. For how we process personal data on your behalf, see our Data Processing Agreement.

ProviderTriggered whenData sent
OpenAI / Anthropic / Google (Gemini) / your Custom AI endpointYou request an AI incident diagnosisIncident evidence, timeline, recent results, cached runbook excerpts (never your stored API key inside the prompt)
Slack / Discord / your webhook endpointYou enable that alert channelAlert title, summary, and incident link
Your monitored targetsEach scheduled or manual checkThe request you configured, from Calmping's probe

3. Changes

We will update this page before adding a new core subprocessor. Material changes will be announced where required.

4. Contact

For questions about our subprocessors, use the contact page.