EN · RO
Last updated: October 5, 2026
Version: 2026-10-05. The links below identify the providers’ published data-protection terms. Processing locations and transfer safeguards depend on the service, contracting entity and applicable account arrangements. Contact mail@workstudio.online for the safeguards applicable to your data.
| Provider | Data and role | Provider terms and safeguards |
|---|---|---|
| Google Cloud Platform | Hosted account/content/security data Processor/subprocessor | Cloud DPA; standard contractual clauses for restricted transfers. |
| Brevo | Transactional email addresses, content and delivery data Processor/subprocessor | Terms, DPA and subprocessor annex. |
| Namecheap Private Email | Support/legal mailbox content and metadata Processor/subprocessor for correspondence | Data Processing Addendum; Private Email terms also apply. |
| OpenAI | Optional AI input/output; automatic Feedback moderation Processor; subprocessor for instructed business content | DPA and standard contractual clauses; organization data controls determine retention. |
| Better Stack | Public endpoint monitoring; operator account data Monitoring provider; independent controller for its account data | DPA describes EU–US Data Privacy Framework where applicable and SCC fallback. Monitoring excludes customer workspace content. |
| Paddle | Purchase, billing, tax, payment and refund data Independent controller and merchant of record | Data Sharing Addendum for independent-controller processing; not a general workspace subprocessor. |
The DPA notice and objection procedure applies to adding/replacing customer-data subprocessors. Provider operational accounts and controller processing are distinguished above. Request applicable safeguards at mail@workstudio.online.