PassControl legal
Service providers.
The infrastructure services that may process beta data, plus the model providers you choose as routing destinations.
PassControl infrastructure
| Provider | Role | Legal information |
|---|---|---|
| Vercel | Application hosting, edge delivery and operational logs | Privacy · DPA |
| Supabase | Authentication, Postgres database, Vault and realtime services | Privacy · DPA |
| Upstash | Redis-backed nonces, rate limits, kill state, reservations and caches | Privacy · DPA |
| Resend | Transactional authentication, invitation, setup-follow-up, feedback-request and password-recovery email | Privacy · DPA |
| ImprovMX | Inbound forwarding for owner, support, privacy and legal contact mail | Privacy · GDPR |
| Sentry | Scrubbed error and security monitoring when configured | Privacy · DPA |
These providers may use further subprocessors and may process data outside Bulgaria or the EEA under the mechanisms described in their legal documents. This list describes the intended beta stack; the final production account settings and contractual coverage must be confirmed before invitations are sent.
User-selected routing destinations
OpenAI, Anthropic, Groq, Mistral, Together and DeepSeek are supported model destinations. A provider receives a request only when you configure its credential and route a call to it. Your own contract and privacy terms with that provider govern its handling of the prompt, response and account data.
Website assets
PassControl and Vertias package their fonts locally. Loading either site does not require a visitor-data request to Google Fonts.
Changes
This page will be updated before a material new service provider is used for beta personal data. Questions can be sent to owner@passcontrol.vertias.eu.