Skip to main content
← All legal documents

Subprocessor List

Last updated July 24, 2026

This Subprocessor List identifies the third-party service providers engaged by SchoolToolz ("Proctorly," "we," "us," or "our") that may process Customer Data in connection with the Proctorly services.

Capitalized terms not defined in this Subprocessor List have the meanings given in the applicable Master Services Agreement, Terms of Service, Data Processing Addendum, or other agreement between Proctorly and the customer.

1. Current Subprocessors

SubprocessorService ProvidedData ProcessedProcessing LocationPurpose
Supabase, Inc.Cloud database, authentication, and storageTeacher/school account data, exam metadata, session metadata, flags, review notes, authentication credentialsUnited States (N. Virginia)Database, authentication, storage, and backup infrastructure
Cloudflare, Inc.Object storage (R2) and CDNWebcam snapshots, screen snapshots, ID photos, short screen-share clips, short audio clips, file metadataUnited States (primary); object storage and CDN may also use Cloudflare’s ENAM region (United States / Canada)Object storage and content delivery for sensitive media
Stripe, Inc.Payment processingBilling contact information, transaction details, payment status, plan typeGlobalSubscription billing and payment processing
Plus Five Five, Inc. (Resend)Transactional and support emailName, email address, notification content, support message content, session/token identifiersUnited States (N. Virginia)Account notices, password resets, alerts, support responses, and service-related communications
Functional Software, Inc. (Sentry)Application monitoring and error trackingTechnical logs, error information, redacted request dataUnited StatesError monitoring, diagnostics, and reliability
Vercel Inc.Hosting and analyticsTeacher-facing usage data, pageview data, request logs, IP addressGlobalHosting, content delivery, and product analytics for teacher-facing pages
PostHog Inc.Product analyticsTeacher-facing usage data, interaction data, feature usageUnited StatesProduct analytics and service improvement; student routes excluded
OpenRouter, Inc.Artificial intelligence model routingFlag data, text summaries, and placeholders for test/teacher/student names; no student images or screen captures sentVaries by approved underlying model provider (restricted to providers reviewed under the Vendor / Subprocessor Review Checklist)Routes AI-assisted report and email-generation prompts to approved third-party model providers under zero-data-retention or equivalent terms where available
Google LLCFace detection model delivery (MediaPipe)IP address and user-agent metadata when the student browser requests the model file from storage.googleapis.com; no student images or exam content sentModel files delivered via Global CDN (primary United States)Delivers the face-detection model file for on-device, client-side face-presence / face-count detection
jsDelivr (ProspectOne / Fastly)Face detection WASM delivery (MediaPipe)IP address and user-agent metadata when the student browser requests WASM files from cdn.jsdelivr.net; no student images or exam content sentGlobal CDNDelivers the MediaPipe WASM runtime files for on-device, client-side face detection

2. Subprocessor Details

For each Subprocessor, Proctorly may disclose the following information where applicable:
Supabase, Inc.
  • Website: https://supabase.com
  • Service: Managed database, authentication, and object storage
  • Purpose of Processing: Host application data, authenticate users, and store session/test records
  • Categories of Customer Data: Account data, exam and session metadata, flags, review notes, authentication credentials
  • Categories of Data Subjects: Teachers, school administrators, students
  • Primary Processing Location: United States (N. Virginia)
  • Data Storage Location: United States (N. Virginia)
  • Transfer Safeguard: Not Applicable
  • Security Documentation: https://supabase.com/security
  • Privacy Policy: https://supabase.com/privacy
  • Subprocessor Status: Active
  • Effective Date: July 24, 2026
Cloudflare, Inc.
  • Website: https://www.cloudflare.com
  • Service: Object storage (R2) and content delivery network
  • Purpose of Processing: Store and serve sensitive exam media files
  • Categories of Customer Data: Webcam snapshots, screen snapshots, ID photos, short screen-share clips, short audio clips, file metadata
  • Categories of Data Subjects: Students
  • Primary Processing Location: United States (primary); object storage and CDN may also use Cloudflare’s ENAM region (United States / Canada)
  • Data Storage Location: United States (primary); media and metadata may also be stored or cached in ENAM (United States / Canada)
  • Transfer Safeguard: Cloudflare Data Processing Addendum / Standard Contractual Clauses for any cross-border transfer
  • Security Documentation: https://www.cloudflare.com/security
  • Privacy Policy: https://www.cloudflare.com/privacy
  • Subprocessor Status: Active
  • Effective Date: July 24, 2026
Stripe, Inc.
  • Website: https://stripe.com
  • Service: Payment processing
  • Purpose of Processing: Process subscription billing and payments
  • Categories of Customer Data: Billing contact information, transaction details, payment status, plan type
  • Categories of Data Subjects: Teachers, school administrators
  • Primary Processing Location: Global
  • Data Storage Location: Global
  • Transfer Safeguard: Standard Contractual Clauses / Data Processing Addendum
  • Security Documentation: https://stripe.com/docs/security
  • Privacy Policy: https://stripe.com/privacy
  • Subprocessor Status: Active
  • Effective Date: July 24, 2026
Plus Five Five, Inc. (Resend)
  • Website: https://resend.com
  • Service: Transactional and support email delivery
  • Purpose of Processing: Send account, service-related, and support emails
  • Categories of Customer Data: Name, email address, notification content, support message content, token identifiers
  • Categories of Data Subjects: Teachers, school administrators, students (via token links), users submitting support requests
  • Primary Processing Location: United States (N. Virginia)
  • Data Storage Location: United States (N. Virginia)
  • Transfer Safeguard: Not Applicable
  • Security Documentation: Available upon request.
  • Privacy Policy: https://resend.com/legal/privacy-policy
  • Subprocessor Status: Active
  • Effective Date: July 24, 2026
Functional Software, Inc. (Sentry)
  • Website: https://sentry.io
  • Service: Application monitoring and error tracking
  • Purpose of Processing: Monitor application health and diagnose errors
  • Categories of Customer Data: Technical logs, error information, redacted request data
  • Categories of Data Subjects: Teachers, school administrators, students (indirect, via metadata)
  • Primary Processing Location: United States
  • Data Storage Location: United States
  • Transfer Safeguard: Not Applicable
  • Security Documentation: https://sentry.io/security
  • Privacy Policy: https://sentry.io/privacy
  • Subprocessor Status: Active
  • Effective Date: July 24, 2026
Vercel Inc.
  • Website: https://vercel.com
  • Service: Hosting and analytics
  • Purpose of Processing: Host the Proctorly application and collect teacher-facing analytics
  • Categories of Customer Data: Teacher-facing usage data, pageview data, request logs, IP address
  • Categories of Data Subjects: Teachers, school administrators
  • Primary Processing Location: Global
  • Data Storage Location: Global
  • Transfer Safeguard: Standard Contractual Clauses / Data Processing Addendum
  • Security Documentation: https://vercel.com/security
  • Privacy Policy: https://vercel.com/legal/privacy-policy
  • Subprocessor Status: Active
  • Effective Date: July 24, 2026
PostHog Inc.
  • Website: https://posthog.com
  • Service: Product analytics
  • Purpose of Processing: Analyze product usage on teacher-facing pages
  • Categories of Customer Data: Teacher-facing usage data, interaction data, feature usage
  • Categories of Data Subjects: Teachers, school administrators
  • Primary Processing Location: United States
  • Data Storage Location: United States
  • Transfer Safeguard: Not Applicable
  • Security Documentation: https://posthog.com/handbook/company/security
  • Privacy Policy: https://posthog.com/privacy
  • Subprocessor Status: Active
  • Effective Date: July 24, 2026
OpenRouter, Inc.
  • Website: https://openrouter.ai
  • Service: Artificial intelligence model routing
  • Purpose of Processing: Route prompts for advisory integrity reports and email-generation drafts to approved underlying model providers
  • Categories of Customer Data: Flag data, text summaries, and placeholders for test/teacher/student names; no student images or screen captures sent
  • Categories of Data Subjects: Students (indirect, via flag summaries), teachers
  • Primary Processing Location: Varies by approved underlying model provider
  • Data Storage Location: Varies by approved underlying model provider
  • Transfer Safeguard: Restricted to approved providers reviewed under the Vendor / Subprocessor Review Checklist; provider-specific Data Processing Addendum / Standard Contractual Clauses or zero-data-retention, where available
  • Security Documentation: Available upon request.
  • Privacy Policy: https://openrouter.ai/legal/privacy
  • Subprocessor Status: Active
  • Effective Date: July 24, 2026
Google LLC
  • Website: https://www.google.com
  • Service: MediaPipe face-detection model delivery
  • Purpose of Processing: Deliver the MediaPipe face detection model file to the student's browser for local, on-device processing
  • Categories of Customer Data: IP address and user-agent metadata from the model-file request; no student images or exam content sent to Google
  • Categories of Data Subjects: Students
  • Primary Processing Location: Model files served from Google Cloud Storage (storage.googleapis.com), primarily United States
  • Data Storage Location: Google Cloud Storage (primary United States)
  • Transfer Safeguard: Google Cloud Data Processing Addendum / Standard Contractual Clauses for any cross-border transfer
  • Security Documentation: https://cloud.google.com/security
  • Privacy Policy: https://policies.google.com/privacy
  • Subprocessor Status: Active
  • Effective Date: July 24, 2026
jsDelivr (ProspectOne / Fastly)
  • Website: https://www.jsdelivr.com
  • Service: MediaPipe face-detection WASM delivery
  • Contracting Entity: Volentio JSD Limited
  • Purpose of Processing: Deliver the MediaPipe WASM runtime files to the student's browser for local, on-device face detection
  • Categories of Customer Data: IP address and user-agent metadata from the WASM-file request; no student images or exam content sent to jsDelivr
  • Categories of Data Subjects: Students
  • Primary Processing Location: Global CDN (nodes vary by student location)
  • Data Storage Location: Global CDN
  • Transfer Destination: EU/EEA, UK, United States, and other jurisdictions served by the global CDN
  • Transfer Safeguard: Volentio JSD Limited Data Processing Agreement, including EU Standard Contractual Clauses (Module 2 or 3 as applicable) and the UK Addendum to the EU SCCs where relevant
  • Subprocessor: Fastly, Inc. — CDN delivery; data may be transferred to Fastly infrastructure locations; covered by Fastly Data Processing Terms and Standard Contractual Clauses
  • Security Documentation: https://www.jsdelivr.com/terms
  • Privacy Policy: https://www.jsdelivr.com/privacy
  • Subprocessor Status: Active
  • Effective Date: July 24, 2026

3. Categories of Subprocessors

Proctorly may engage Subprocessors in the following categories:

  1. cloud infrastructure and hosting;
  2. database and file-storage services;
  3. authentication and identity management;
  4. payment and subscription processing;
  5. email and communication services;
  6. application monitoring and error tracking;
  7. cybersecurity and fraud-prevention services;
  8. customer support and communication platforms;
  9. product analytics;
  10. document-processing services;
  11. artificial intelligence service providers; and
  12. professional services necessary to operate, maintain, and support the Services.

4. Changes to Subprocessors

Proctorly may add, replace, or remove Subprocessors as necessary to operate and improve the Services.

Proctorly will update this Subprocessor List when a new Subprocessor is authorized to process Customer Data.

Where required under the applicable Data Processing Addendum, Proctorly will provide Customer with advance notice of a new Subprocessor by:

  • email to the Customer's designated notification address;
  • an in-product notification;
  • publication on this webpage; or
  • another method agreed upon by the parties.

The notice period will be 30 days before the new Subprocessor begins processing Customer Data, unless a shorter period is reasonably necessary to:

  1. address an emergency;
  2. prevent or respond to a security threat;
  3. maintain service availability;
  4. comply with applicable law; or
  5. replace a Subprocessor that has unexpectedly discontinued its services.

5. Customer Objections

Where the applicable Data Processing Addendum provides a right to object, Customer may submit a written objection to a new Subprocessor within 30 days after receiving notice.

The objection must:

  1. be based on reasonable and documented data-protection or information-security concerns;
  2. identify the specific Subprocessor;
  3. describe the basis of the objection; and
  4. be submitted to privacy@proctorly.co.

Proctorly and Customer will work in good faith to address the objection.

Possible resolutions may include:

  1. providing additional information regarding the Subprocessor;
  2. implementing reasonable additional safeguards;
  3. limiting the Subprocessor's access to Customer Data;
  4. using a commercially reasonable alternative, where available; or
  5. permitting Customer to discontinue the affected portion of the Services as provided in the applicable agreement.

An objection does not automatically prohibit Proctorly from using the Subprocessor unless the applicable agreement expressly states otherwise.

6. Subprocessor Obligations

Proctorly requires each Subprocessor that processes Customer Data to enter into a written agreement containing data-protection and security obligations appropriate to the services provided.

Such obligations may include requirements concerning:

  1. confidentiality;
  2. information security;
  3. processing only for authorized purposes;
  4. assistance with data-subject requests;
  5. Security Incident notification;
  6. deletion or return of Customer Data;
  7. international data transfers;
  8. compliance with applicable data-protection laws; and
  9. restrictions on appointing additional subprocessors.

Proctorly remains responsible for the performance of its Subprocessors to the extent required by the applicable agreement and applicable law.

7. International Data Transfers

Where a Subprocessor processes Customer Data outside the country or region in which it was originally collected, Proctorly will use an appropriate transfer mechanism where required by applicable law.

Such mechanisms may include:

  1. the European Commission Standard Contractual Clauses;
  2. the United Kingdom International Data Transfer Addendum;
  3. an applicable adequacy decision;
  4. participation in a recognized data-transfer framework;
  5. binding corporate rules; or
  6. another legally recognized transfer mechanism.

8. Affiliates

No Proctorly affiliate currently processes Customer Data.

Where applicable, Proctorly will list any affiliate Subprocessors here.

9. Removed Subprocessors

No Subprocessors have been removed from this list during the last 12 months.

Where applicable, Proctorly will list any removed Subprocessors here.

10. Contact Information

Questions or objections regarding this Subprocessor List should be submitted to:

SchoolToolz

Privacy Contact: Privacy Team

Email: privacy@proctorly.co

Security Email: security@proctorly.co

Mailing Address: Durham, North Carolina, United States