← Back to StarSprout

Sub-processors

Version subprocessors-v1 (2026-07) · Pending external legal review before public launch.

Who we use, and what each receives

StarSprout runs on a deliberately small set of providers. Each receives only what its job requires — and child surfaces load nothing from any third party at all (our build fails if they try).

ProviderWhat it doesWhat it receivesRegion
SupabaseDatabase, authentication, file storage, realtimeAll family data described in the Privacy Policy, encrypted at rest; adult sign-in emails; proof photosUnited Kingdom (London)
VercelApplication hosting and scheduled jobsRequest traffic in transit; no family data at restEU/UK edge
AnthropicAI text generation (storylines, lessons, nudges, weekly narrative)Enumerated tokens only: an age band, an avatar theme, a chore category, or clamped weekly counts. Never names, photos, locations, or child-written text. Not used for model training.API (US), no data retained for training
ResendEmail deliveryAdult email addresses and the content of the emails we send themEU/US
PostHogProduct analytics — parent and marketing surfaces ONLY, never child surfacesPseudonymous usage events from adults; no child identifiers exist to sendEU
SentryError monitoringError reports with personal identifiers stripped (sendDefaultPii is off)EU

Changes

We update this register before any new provider touches family data, and the change is announced in the app.