Trust

Subprocessors

The third-party services dvt relies on to operate the product, what each one processes, and where. Because queries run in your warehouse, none of these services receive your warehouse's data rows or values.

ServicePurposeData processedRegion
WorkOSAuthentication & identity (sign-in, organizations, directory)Names, email addresses, organization & membership metadataUnited States
NeonMetadata database (dashboard specs, accounts, roles, audit logs, encrypted credentials)Account metadata and dashboard specs; warehouse credentials as ciphertext; opt-in warehouse catalog structure (names/types/comments only, never data rows or values).United States
Fly.ioApplication & query-engine hosting (compute)Data in transit during a request; nothing persisted to disk by dvtUnited States
CloudflareCDN, DNS, website hosting, and encrypted object storage (R2) for dashboard exports and trial CSV uploadsWebsite traffic; PNG/PDF export artifacts (encrypted, organization-scoped, retained indefinitely — no deletion schedule, and closing an organization does not delete them; deleted on request — email [email protected]); trial CSV uploads (encrypted Parquet, organization-scoped, deleted by an automated job after the trial ends)Global edge (exports & uploads: western North America — Cloudflare location hint, not a residency guarantee)
ResendTransactional email (sign-in and product notifications)Email addresses and message contentUnited States
SentryError tracking (application errors across our services)Diagnostic/error events — may include user IDs, request context, and stack tracesUnited States
AxiomApplication logsApplication logs and request metadata — may include user/organization IDsUnited States

This list is kept current as our infrastructure evolves. For a data processing agreement (DPA) or advance notice of subprocessor changes, email[email protected]. See also oursecurity overview.