Subprocessors
Last updated: May 22, 2026
Customers may subscribe to change notifications under Section 6 of the Data Processing Agreement.
This list identifies the third parties Keel API, Inc. (“Keel”) engages to provide the Keel Service. Customers may refer to this list under Section 6 (Subprocessors) of the Data Processing Agreement. Subprocessors are reviewed against Keel's vendor risk standards before engagement and are bound by written obligations materially protective of Customer Personal Data.
Infrastructure and Hosting
- Fly.io, Inc. — compute and primary application infrastructure. Primary region:
sjc(San Jose, California, United States). - Supabase, Inc. — managed PostgreSQL hosting (database of record) and connection pooling. Hosted on Amazon Web Services in the
us-west-1(Northern California) region. Supabase uses Amazon Web Services, Inc. as its underlying infrastructure subprocessor. - Cloudflare, Inc. — R2 object storage for externally anchored integrity checkpoints and edge networking. Checkpoint manifests contain chain heads, sequence numbers, and hashes only; no Customer Personal Data is stored in checkpoints by design.
- GitHub, Inc. — source code hosting and CI/CD via GitHub Actions, using OIDC-authenticated deploys to Fly.io. Customer Personal Data is not routed through CI by design.
- Vercel, Inc. — marketing website (keelapi.com) hosting and edge networking. Vercel Analytics is loaded only when site visitors consent via the cookie banner; see our Cookie Policy. The Keel Service backend is not hosted on Vercel.
Identity and Authentication
- Clerk, Inc. — customer dashboard authentication, session management, and organization membership. Processes account contact information, authentication metadata, and session identifiers.
Billing and Payments
- Stripe, Inc. — payment processing, subscription billing, metered usage invoicing, and customer billing portal. Processes billing contact information and invoice records. Payment instrument identifiers are held by Stripe, not Keel.
External Timestamp Witness Services
- FreeTSA.org (Starter), DigiCert and GlobalSign (Production / Enterprise), or a customer-selected RFC 3161 timestamp authority for eligible Enterprise deployments. The TSA receives only the SHA-256 hash of a checkpoint; no Customer Personal Data is transmitted.
Email and Operational Communications
- Zoho Corporation — business email hosting and routing for legal@, privacy@, security@, support@, and similar operational addresses (Zoho Mail, US data center). Customer support traffic is also routed through Zoho.
Customer Support
Customer support is operated via the email channel listed above. Keel does not currently use a separate support ticketing platform.
Analytics and Operational Telemetry
- Functional Software, Inc. (dba Sentry) — application error monitoring and performance tracing for the Keel API. United States hosting (Sentry US data center).
send_default_piiis set tofalse; abefore_sendscrub additionally redacts authorization headers, API keys, request bodies, and query strings before transmission. Customer Personal Data is excluded by configuration.
Keel does not currently use a third-party product analytics service. If Keel adds an analytics subprocessor in the future, it will be added to this list and notified per Section 6 of the Data Processing Agreement.
AI Providers (Customer-elected, managed execution only)
The following third parties may receive Customer Personal Data only when Customer elects to use managed execution routes that proxy to the named provider. When Customer uses permit-first or decision-only modes, Keel does not transmit prompt or completion content to any AI provider.
- OpenAI, L.L.C. — managed dispatch to OpenAI models (United States).
- Anthropic, PBC — managed dispatch to Anthropic Claude models (United States).
- Google LLC — managed dispatch to Vertex AI / Gemini models.
- Microsoft Corporation — managed dispatch to Azure OpenAI Service (customer-selected Azure region).
- Amazon Web Services, Inc. — managed dispatch to AWS Bedrock (customer-selected AWS region).
Customer's use of managed execution to a given AI provider constitutes Customer's instruction and authorization for Keel to engage that provider as a subprocessor for the relevant request traffic.
Notice and Objection
Keel notifies Customer of new subprocessors that will process Customer Personal Data for the Service in accordance with Section 6 of the Data Processing Agreement:
- at least thirty (30) days in advance for ordinary-course additions, by updating this list and, where Keel offers designated enterprise notice contacts, by sending notice to the contact identified by Customer;
- as soon as practicable and no less than ten (10) days in advance for changes required to address imminent security threats or legal compliance obligations.
Customer may object to a new subprocessor within the notice period on reasonable data protection grounds specific to the proposed processing. The parties will work in good faith for up to thirty (30) days to resolve the objection. If unresolved, Keel may either (a) not use the proposed subprocessor for Customer, or (b) permit Customer to terminate the affected Service or Order Form on written notice before the new subprocessor begins processing Customer Personal Data for that affected Service.
Contact
Questions about this list, including subscription to subprocessor change notifications: