Public legal and trust materials for the AI-assisted invoicing platform.
A trust-center style overview of the third-party processing categories used to host, secure, analyze, message, and power AI features.
These pages are written to be plain-English and liability-conscious. Final review by a licensed lawyer is recommended before production launch.
We use third-party infrastructure and service providers to host, secure, analyze, support, and improve the platform. Providers should receive only the minimum data required for their role, and the list below is designed to be edited from a central config source as vendors change.
If Google or Gmail integration is enabled, users should be informed about the categories of Google user data accessed, the purpose for access, how long related metadata is retained, and how users can revoke or request deletion. Integrations should request minimum necessary scopes only.
Vendor names and categories are controlled from the centralized legal config so they can be updated without rewriting page layout.
Application hosting, managed databases, backups, and storage infrastructure.
Data types
Current / planned vendors
Session management and future OAuth connectivity.
Data types
Current / planned vendors
Usage analytics, performance monitoring, and security telemetry.
Data types
Current / planned vendors
User-authorized invoice sends, reminder sends, and delivery support.
Data types
Current / planned vendors
Draft generation, summarization, refinement, and assistive workflow features.
Data types
Current / planned vendors
Future payment flows, if introduced later.
Data types
Current / planned vendors