senduler

Sub-processors

Last updated: July 2026

Adam Williams, operating Senduler, is based in Toronto, Ontario, Canada. Primary infrastructure runs in the United States via IONOS Cloud. We use the following sub-processors to deliver the service. We will update this list when sub-processors change materially.

Sub-processor Purpose Data processed Location Transfer safeguard
IONOS Cloud VPS Application hosting, PostgreSQL database Form submission payloads (database), account data, API traffic United States SCC annex where EEA/UK data applies
IONOS Cloud Object Storage File storage for form uploads Uploaded files attached to submissions United States SCC annex where EEA/UK data applies
Redis (co-located on IONOS Cloud VPS) Rate limiting, hot-path form lookup cache Form endpoint keys, rate-limit counters (IP + form id); not full submission payloads United States SCC annex where EEA/UK data applies
Resend Transactional email (notifications, auto-responses) Email addresses, submission field content in email body (unless link-only mode) United States (global delivery) SCC annex where EEA/UK data applies
Stripe Subscription billing Account email, billing metadata, payment method tokens United States / EU Stripe DPA; SCC where required
Cloudflare Turnstile captcha verification (when enabled) IP address, captcha token Global SCC annex where EEA/UK data applies
Google reCAPTCHA verification (when enabled by customer) IP address, captcha token Global (often US) SCC where EEA/UK data applies

Not sub-processors (Controller responsibility)

The following are configured by Controller and are not Senduler sub-processors:

  • Webhook URLs and Slack incoming webhooks you configure — you are responsible for the security and lawfulness of those endpoints
  • Notification recipient mailboxes — copies may exist in your email provider and forwarders

Data flow summary

  1. Form visitor submits data → IONOS Cloud VPS, US (Senduler API; submission fields stored in PostgreSQL)
  2. Uploaded files → IONOS Cloud Object Storage (United States)
  3. Optional notification → Resend (may include field values unless link-only mode)
  4. Account billing → Stripe

Updates

Material changes to sub-processors will be communicated to customers via email or in-app notice where required. Controllers may object on reasonable data-protection grounds where applicable law provides that right.

Contact

privacy@senduler.com