Distinct-app

Legal hub

Subprocessors

Last updated: 18 August 2026

The table below lists the service providers we've confirmed are actually integrated into the platform's code or configuration — not a generic list of what a SaaS platform typically uses. Hosting/processing regions and Data Processing Agreement status are marked TO BE CONFIRMED where we could not verify them from the repositories alone; we will not publish a claim we can't back up.

ProviderPurposeData categoriesData processing / hosting locationDPA status
SupabaseDatabase, authentication, file storage for most appsAccount data, business data, bookings, fileseu-north-1 (AWS Stockholm, Sweden) — confirmed from the project's own configurationCONFIRMED — STANDARD DPA
VercelApplication hosting for most appsAll data transiting the hosted appProject/deployment-specific — no region is pinned in this project's configurationCONFIRMED — STANDARD DPA
CloudflareDNS, object storage (R2), and hosting for some appsUploaded files/photos; DNS traffic metadataGlobal/distributed network; the shared R2 storage bucket is located in Western EuropeCONFIRMED — STANDARD DPA
PaystackPayment processing, where enabled on an appPayment status, transaction reference — not full card dataSouth Africa and other jurisdictions involved in Paystack's payment infrastructureMERCHANT AGREEMENT REVIEW REQUIRED
ResendOutbound transactional email, where configuredRecipient email address, message contentUnited States — per Resend's Privacy PolicyCONFIRMED — STANDARD DPA
sms1.smsmessenger.co.zaLive SMS delivery (Marketing app)Recipient phone number, message contentSouth Africa-based provider; processing/data-hosting location not contractually confirmedDPA REQUIRED
Black Forest Labs (FLUX)AI image generation (Flyer Forge, Logo Maker Genie, Marketing)Prompt text only — no personal information intentionally sent by us, though a user could enter personal information in a promptProvider confirmation pendingAVAILABLE — ACCEPTANCE/EXECUTION REQUIRED

Not every app uses every provider above. This list is reviewed alongside the platform governance documentation and updated when a new provider is integrated.