Skip to main content
Provider inventory

Who else touches your records

Providers marked in use are in the path for every deployment of JobSite. Conditional providers stay off for a tenant until the feature is enabled and its contract, security, deletion, incident and data-location review is recorded.

subprocessors-2026-08-17

Published

JobSite service providers, their capability, data boundary, processing location and status
ProviderCapabilityData boundaryProcessing locationStatus
VercelHosting and delivery for the JobSite web applicationRequests to the web application, edge routing metadata and deployment artefactsProvider network locations, potentially outside CanadaOn track: In use — hosts this application
SupabaseIdentity and sessions, the PostgreSQL database, and private object storage for documentsAccount identifiers, authentication factors, session and security metadata, and the tenant records and files themselvesDeployment-specific project region and provider support locationsOn track: In use — shared project, isolated by schema and row-level security
Amazon Web ServicesInfrastructure for the jobsite-platform service that this application calls server-to-serverTenant-scoped service records, encrypted files and minimized operational telemetryCanadian primary region where configured; limited global support and security processing may applyOn track: In use — platform service
PostHogOptional product analyticsConsented, minimized interaction events without project contentConfigured service region and support locationsInformational: Conditional — analytics consent defaults off
OpenAI or Anthropic, through the governed AI gatewaySpecifically enabled AI assistanceRedacted, permission-filtered context for the approved capability onlyProvider locations, potentially outside CanadaNeeds attention: Conditional — no provider key is present in this environment
StripePayment processing, were a paid plan to existNone. No billing relationship exists and no payment method is collectedNot applicable while unusedInactive: Not in use — no paid plan is published
TwilioTenant-enabled SMS and voiceContact number, disclosure and consent state, message or call routing, minimized delivery evidenceProvider network locations, potentially outside CanadaInactive: Conditional — off until tenant provisioning and review
MapboxTenant-enabled routing and travel-time estimatesPurpose-limited route coordinates; not an unrestricted worker trailProvider locations, potentially outside CanadaInactive: Conditional — off without tenant policy; no token in this environment
DocuSignTenant-enabled electronic signaturesSigner identity, document reference, consent and completion evidenceConfigured account region and provider support locationsInactive: Conditional — off until professional and provider review
Scope

What this page does and does not mean

A tenant's active provider set depends on the capabilities it has enabled, so this page does not mean every conditional provider receives your information. Material provider changes are versioned and communicated through the applicable contract or tenant notice.

Publishing this inventory is not a claim that every provider's formal review is complete. Conditional activation stays blocked until its recorded review passes.

Two rows worth reading twice

Stripe and the AI gateway

Stripe is listed as not in use. An earlier version of this page described it as “core for paid subscriptions”. There is no paid plan, no published price and no verified JobSite provisioning with Stripe, so the row would have implied a billing relationship that does not exist.

The AI gateway has no provider key in this environment. An AI run is enqueued as a governed job whether or not a model answers it, so the row stays in the inventory — but nothing is currently being sent to a model provider from this deployment.

The complete privacy notice · Security mechanisms