Sub-processors
To run Gridwork we rely on third-party services that process data on our behalf. This page lists them, what each one does, and whether it applies to every workspace or only when you switch a capability on. It is referenced by our Privacy Policy.
We update this page when the list changes. If you need advance notice of new sub-processors for your own compliance process, email privacy@bygridwork.com and we will add you to the notice list.
Core sub-processors
These process data for every Gridwork workspace.
| Service | Purpose | Processing region |
|---|---|---|
| Render | Application hosting and compute | EU (Frankfurt) |
| Supabase | Managed Postgres database, authentication, file storage | EU |
| Anthropic | AI models that generate agent reasoning and replies | US |
| Resend | Transactional and outbound email delivery | US / EU |
| Stripe | Subscription billing and payment processing for Gridwork fees | US / EU |
Conditional sub-processors
These are engaged only when you connect the corresponding account or your workspace has that capability enabled. If you never connect it, it never sees your data.
| Service | Purpose | Engaged when |
|---|---|---|
| Meta Platforms | WhatsApp Business messaging, Instagram messaging, lead ads | You connect WhatsApp, Instagram or Meta Ads |
| Telegram | Bot messaging | You connect a Telegram bot |
| Calendar scheduling, Google Ads, Maps place lookup | You connect a Google account | |
| Voyage AI · Cohere | Text embeddings and search re-ranking for knowledge retrieval | Knowledge retrieval is enabled |
| Portkey | AI gateway — routing, per-workspace budgets and rate limits | Gateway routing is enabled |
| Langfuse · Braintrust | Agent tracing and quality evaluation | Observability is enabled |
| Temporal | Durable workflow execution for long-running follow-up | Durable workflows are enabled |
| E2B | Isolated sandbox for code the agents execute | Sandboxed execution is used |
| Composio | Managed connections to third-party business apps | You connect an app through the integrations hub |
| HubSpot · Salesforce · Zoho · Pipedrive | CRM record sync | You connect that CRM |
| Shopify | Order, product and inventory data | You connect your store |
| Stripe · Tabby · Tamara · Ziina | Payment links and checkout for your customers | You connect that payment provider |
| DocuSign · Dropbox Sign | Contract signature | You connect e-signature |
| Zoom · Recall.ai | Meeting links and meeting-note capture | You connect meetings |
| Vapi · ElevenLabs | Voice calls and speech synthesis | Voice is enabled on your workspace |
| Tavus · HeyGen | Video generation | Video is enabled on your workspace |
| Apollo · Clay · Instantly | Prospect data enrichment and outbound sequencing | You connect that growth tool |
| DataForSEO | Keyword and search-ranking data | SEO tooling is used |
A note on processing regions
Gridwork's own infrastructure is hosted in the European Union (Frankfurt), on providers independently certified to SOC 2 Type II — see Security. Several sub-processors above — model providers and messaging platforms in particular — process data in the United States. See Privacy for how that data is handled.