Effective date: 25 September 2026
Last updated: 25 September 2026
1. Overview
Turbyn uses third-party service providers to deliver and support its services. A subprocessor processes customer personal data on Turbyn’s behalf in connection with the service. Other providers support account administration, billing and website operations.
The providers that process information for a particular customer depend on the services and features used. This page should be read together with our privacy policy and data processing agreement.
Locations below describe data hosting or processing, rather than a provider’s registered office. Regional hosting does not exclude international processing for network delivery, account administration or technical support.
2. Platform services
| Provider | Service | Information processed | Hosting and processing location |
|---|---|---|---|
| Google Cloud and Firebase | Application hosting, databases, file storage and credential protection | Account and workspace records, action source and build artifacts, workflow data, logs, stored values and encrypted credentials. | Belgium for regional compute and storage (europe-west1). Firestore uses the European eur3 multi-region: Belgium and the Netherlands, with a witness region in Finland. |
| Clerk | Authentication and account management | User identity, contact information, organization membership, roles and authentication activity. | United States. |
| E2B | Isolated code builds and execution | Source code, dependencies, workflow inputs and outputs, execution logs and credentials supplied to authorized actions. | European Union. |
| Upstash | Rate limiting and execution admission controls | Workspace and portal identifiers, request counters and usage-control records. | European Union. |
| Axiom | Operational monitoring and troubleshooting | Execution records, which may include workflow inputs, outputs, console logs and errors. | Germany for event data (AWS eu-central-1, Frankfurt). Account administration uses Axiom’s global control plane. |
| Mailjet | Transactional email delivery | Recipient details, message content and delivery information. | Germany (Frankfurt) and Belgium (Saint-Ghislain). |
Providers receive information relevant to their service. Workflow data and logs may contain personal information supplied by customers or generated by their code. Email delivery also involves the recipient’s email provider, whose processing locations may differ.
Hosting information is described in Google’s Firestore location documentation, Clerk’s security information, Axiom’s regional hosting documentation and Mailjet’s data-location information.
3. Business and website services
| Provider | Service | Information processed | Hosting and processing location |
|---|---|---|---|
| Stripe | Payment processing, subscriptions and invoicing | Billing contact and payment information, subscription records, and workspace and usage references. | United States and other countries in Stripe’s international processing network. |
| Google Workspace | Business email and support correspondence | Contact details and the contents of messages and attachments sent to us. | Google’s global infrastructure, subject to applicable Workspace data-region settings. |
| HubSpot | Contact enquiries, website consent management and optional analytics | Names, email addresses, company details, enquiry topics and messages; consent preferences and website activity where analytics consent is given. | United States (West, na2 hosting region). |
| Factors.ai | Optional website analytics, attribution and company identification | Browser identifiers, website activity, referral information and associated company information where analytics consent is given. | United States. |
These services support Turbyn’s business and website rather than execute customer workflows. Providers may act as independent controllers for certain activities, such as payment compliance or their own service administration. Their applicable terms and privacy notices govern those activities. Optional website tracking is subject to the choices described in our cookie policy.
Further information is available in Stripe’s data processing terms, Google Workspace’s data-region documentation, HubSpot’s hosting-region documentation and Factors.ai’s security policy.
4. Customer-selected services
Your connected HubSpot portal and any external APIs called by your actions are services you select and authorize. They are not Turbyn subprocessors solely because they can be used with Turbyn. You are responsible for the relevant accounts, permissions and agreements.
Installing third-party packages may also involve requests to package registries. Review the licenses and data practices of the dependencies and external services used by your code.
5. International processing
International transfers of customer personal data are subject to the data processing agreement and any applicable transfer terms. A provider’s regional hosting arrangements do not constitute an EU-only processing commitment for the entire Service.
For region-selectable services, processing locations depend on the deployment and any replication arrangements. Contact hello@useturbyn.com for the locations applicable to your service or to discuss specific data-residency requirements.
6. Changes and enquiries
We update this page when our service providers change. Notice and objection rights for changes to subprocessors handling customer personal data are set out in the data processing agreement.
For questions about a provider or its processing activities, contact hello@useturbyn.com.
Questions about this document?
Use our contact page to reach the team. Please avoid including sensitive data in your initial message.
Contact us →