Scope and change notices
This list identifies providers enabled for Posto's production service. A provider only receives the data needed for the stated purpose. Product features that are disabled do not send customer data merely because integration code exists.
Posto will update this page before a new subprocessor begins processing Customer Personal Data. Where an agreement or applicable law requires individual advance notice, Posto will notify the affected account contacts. Customers may send a reasonable data-protection objection to privacy@postoconnect.com before the stated effective date of a change.
Amazon Web Services, Inc. (AWS)
Purpose: cloud compute and networking; PostgreSQL database hosting; encrypted object storage, backups, keys, and secrets; operational logs; and Amazon SES transactional email.
Data: account and business records, redacted contextual requests, delivery and conversion events, security and financial ledgers, encrypted reports and backups, recipient email address, and transactional email content.
Primary processing region: AWS US West (N. California), United States (us-west-1). Email delivery and AWS support or security operations may use AWS's documented global infrastructure.
Stripe, Inc.
Purpose: advertiser checkout and payment confirmation; Developer Connected Account onboarding, transfers, payouts, disputes, and payment-risk operations.
Data: account and business contact details, transaction identifiers and amounts, payment or payout status, and onboarding information submitted directly to Stripe. Posto does not store full card or bank-account numbers.
Processing region: United States and other locations used by Stripe and its published service providers under Stripe's transfer safeguards.
OpenAI, L.L.C. and applicable OpenAI affiliates
Purpose: create embeddings used for contextual matching and retrieval.
Data: PII-filtered request text and product or creative text needed to create embeddings. Optional demographics, authentication proofs, payment data, and raw financial records are not included in embedding requests.
Processing regions: United States and the API processing locations listed in OpenAI's current subprocessor disclosure.
Nanonoble Pte. Ltd. (MiniMax)
Purpose: bounded Campaign Agent analysis, product-image generation, and configured embedding services.
Data: campaign, catalog, creative, placement, and aggregated performance inputs needed for the requested operation. Posto does not send unfiltered conversation transcripts, payment credentials, or device identifiers to the Campaign Agent.
Processing region: United States data centers, with support and transfer safeguards described in the MiniMax API Privacy Policy.
Google LLC
Purpose: Google Play Integrity verification for authenticated Android requests and Gemini API extraction for supported catalog and product workflows.
Data: Play Integrity tokens, request hashes, registered app identity and integrity verdicts; or the catalog/product content submitted to the applicable Gemini workflow. Posto does not send optional demographics to these services.
Processing regions: United States and other Google service locations governed by the applicable Google data-processing terms.
Apple Inc.
Purpose: Apple App Attest app and device-integrity proof for authenticated iOS requests.
Data: App Attest key identifiers, challenges, assertions, counters, and registered Team ID and Bundle ID. Posto does not require an advertising identifier or hardware serial number.
Processing regions: United States and other Apple service locations applicable to App Attest.
Advertisers, destinations, and affiliate partners
Advertisers and destinations selected by a user are data recipients, not Posto subprocessors. After a user chooses to click, Posto may send the destination a pseudonymous click identifier needed for redirect and attribution. The destination processes subsequent activity under its own privacy notice. Affiliate integrations such as Trip.com are production-disabled unless explicitly enabled and disclosed for the applicable campaign.
Contact
Questions, change-notice requests, or objections may be sent to privacy@postoconnect.com. Legal notices may be sent to legal@postoconnect.com.