Sub-processors
The third-party services that process customer data on our behalf.
GrowVenom uses the third-party services listed below to operate the product. Each one processes some customer data on our behalf, and each is here because our own code calls it. This list was built by auditing the outbound API calls our services actually make, not by asking vendors what they would like disclosed.
AI and model vendors
These vendors receive the prompts, scripts and reference media that GrowVenom generates content from. Prompts are assembled from your brand profile, your uploaded documents and the briefs you write.
| Vendor | Purpose | Data reaching them |
|---|---|---|
| OpenAI | Text generation across all services; structured outputs | Prompts derived from your brand data and briefs |
| Anthropic | Document extraction, configurable alternate provider | Uploaded brand documents, when enabled |
| Google Vertex AI | Image generation | Image prompts and reference imagery |
| ElevenLabs | Text-to-speech and voice cloning | Script text; uploaded voice samples |
| Replicate | Model hosting for image and video generation | Prompts and reference media |
| fal.ai | Model hosting, including xAI Grok and OpenAI models | Prompts and reference media |
Anthropic is listed even though it is off by default. Document extraction picks its provider from a single environment variable, which defaults to OpenAI. Anthropic is one configuration change away from being live, so we disclose it now rather than let this page silently go stale the day someone flips that flag.
Infrastructure
These vendors host the application, store your data, and handle billing and email.
| Vendor | Purpose | Data reaching them |
|---|---|---|
| Supabase | Authentication, primary database, file storage | Account identity, workspace records, uploaded files |
| Google Cloud Storage | Generated media storage | Images and video produced for your brand |
| Google Drive | Optional document ingestion, at your direction | Only the folders you explicitly connect |
| Railway | Application hosting | All data in transit through the application |
| Resend | Transactional email | Email address and message contents |
| Stripe | Payment processing | Billing details and payment card data |
| Sentry | Error monitoring | Error reports and request metadata; configured not to send default personal data |
| LangSmith (LangChain) | Tracing of AI requests for debugging and cost tracking | AI prompts and outputs for image generation requests, when tracing is enabled |
Stripe holds card data; GrowVenom never does.Payment card details are collected by Stripe and stored on Stripe’s systems. They do not pass through GrowVenom’s servers and are not stored in our database. If you are completing a security questionnaire, this is the answer to the card-data question.
Connected platforms
These are the social platforms GrowVenom publishes to and reads analytics from. We access them only on your instruction, using credentials you grant through each platform’s own authorisation flow. We never hold a platform credential you did not explicitly connect.
| Vendor | Purpose | Data reaching them |
|---|---|---|
| Meta / Facebook Graph API | Publishing and analytics retrieval | Content you schedule; metrics we read back |
| Instagram Graph API | Publishing and analytics retrieval | Content you schedule; metrics we read back |
| LinkedIn API | Publishing and analytics retrieval | Content you schedule; metrics we read back |
Platform access is revocable at any time, from Settings → Connections inside your workspace, or from the platform’s own app settings. Disconnecting cancels any pending scheduled posts for that account. See Data Deletion for what happens to the data we already hold.
Where your data is processed
The vendors above operate internationally, so data processed by GrowVenom may be handled outside your own country. We only send a vendor the data it needs for the function described in its row.
Changes to this list
We will update this page before a new sub-processor begins processing customer data, and we will bump the version at the top of the page when we do. If you would like to be told directly when this list changes, email hello@growvenom.ai and we will add you to the notification list.
Questions
For security reviews, vendor due-diligence questionnaires, or anything else about how we handle your data, contact hello@growvenom.ai.
