Sub-processors

Effective date: 2026-09-02

A sub-processor is a third party that processes personal data on our behalf to help us deliver the hosted RepoOps service. This page is the canonical list referenced by our Data Processing Agreement and Privacy Policy. The free localhost desktop app runs on your machine and reaches only a few of the rows below. PostHog receives the anonymous reliability beacon that is on by default and that you can turn off (see section 1.1 of the Privacy Policy). Vercel serves the update feed the app checks for a new version. Anthropic, OpenAI and OpenRouter are called only if you paste your own API key and use a feature that asks a model something, such as Ask or Dreaming; that call goes straight from your machine on your key, and carries the brain content the feature is working on. Nothing else here is reached unless you bind the install to a hosted team.

Current sub-processors

Sub-processorPurposeRegion
NeonPostgres database hostingUS-East
VercelApplication + edge hosting; Web Analytics (opt-in via cookie banner)Global
StripePayments + subscription billingUS/EU
ResendTransactional emailUS
PostHogProduct analytics on the website (opt-in via cookie banner)US
PostHogAnonymous desktop reliability beacon (on by default, opt-out in the app)US
Google AnalyticsWeb analytics (opt-in via cookie banner)US
SentryServer-side error reporting; Session Replay (opt-in via cookie banner)US/EU
AnthropicClaude API - the customer's own key, the customer's own sub-processor, on every tierUS
OpenAIChat Completions API - the customer's own key, the customer's own sub-processor, if they choose itUS
OpenRouterModel routing - the customer's own key, the customer's own sub-processor, if they choose itUS

Changes to this list

We will give at least 30 days’ notice by updating this page before adding or replacing a sub-processor that processes personal data. Hosted-account holders who want to be notified of changes by email can subscribe by emailing support@repoops.ai with the subject “sub-processor updates”. Under the DPA, Customers may object to a new sub-processor on reasonable grounds before the change takes effect.

Change log

DateChange
2026-08-26OpenAI and OpenRouter added as customer-selected providers for hosted brain inference, alongside Anthropic. Hosted Ask, capture-photo and entity indexing run on the key the customer stores for the provider they choose, so the provider is the customer's own sub-processor. Recorded here on 2026-09-02, later than it should have been.
2026-08-18Split the PostHog row in two: product analytics on the website, which is opt-in via the cookie banner, and the anonymous desktop reliability beacon, which is on by default. Same processor, two consent models. Added to this log after the change.
2026-07-01Initial published sub-processor list, matching the DPA and Privacy Policy tables.

See also: Data Processing Agreement · Privacy Policy · Legal center.