Sub-processors
Current provider register
These providers were identified from live HERmones infrastructure or the current application configuration. The evidence column distinguishes live services from providers found only in application configuration.
Service providers
| Provider | Purpose | Data involved | Location / region | Evidence |
|---|---|---|---|---|
| Amazon Web Services (AWS) | Application API and cloud infrastructure | Account and service data submitted to the HERmones API; depending on the feature used, this may include health-related data a user submits | United States — US East (N. Virginia) | Live API infrastructure |
| Cloudflare, Inc. | Network security, proxying, and content delivery for app.hermones.com | Network request data, including IP address, device information, cookies, and proxied application traffic | Global network | Live member-app infrastructure |
| Vercel Inc. | hermones.com website hosting and delivery | Website request, device, and diagnostic data | Global edge network; provider headquartered in the United States | Live website infrastructure |
| Klaviyo, Inc. | Marketing email, website forms, and subscription management | Contact details, consent, and email engagement data | United States and other locations described by the provider | Live website configuration |
| Mailgun Technologies, Inc. | Transactional email delivery | Recipient email address and message delivery data | United States and other locations described by the provider | Application configuration; live account settings not independently verified |
| Google LLC | Website analytics and push-notification delivery | Website usage and device information; mobile push token and delivery data | Global infrastructure | Live website and current mobile configuration |
| Microsoft Corporation | Website diagnostics and interaction analytics through Microsoft Clarity | Website interaction, device, and diagnostic data | Global infrastructure | Live website configuration |
Providers not currently configured
- Reading provider: no external reading provider is implemented in the current HERmones application or API code.
- PostHog: PostHog is not installed or configured, so there is no PostHog processing region to disclose.
- Meta: hermones.com does not load a Meta pixel or send events to Meta.
Changes to this register
This register will be updated as HERmones' provider arrangements change. Questions may be sent to privacy@hermones.com.