Skip to main content

Subprocessor List

Last Updated: 2026-03-26 Effective Date: 2026-03-26

Pavri uses the following third-party subprocessors to deliver its services. We notify customers of changes to this list at least 30 days in advance by email or dashboard notification.


Infrastructure Subprocessors

SubprocessorPurposeLocationData ProcessedSOC2 Status
Google Cloud Platform (GCP)Primary cloud infrastructure (Kubernetes, GKE, Cloud Storage)USA, EU (configurable)All platform dataSOC2 Type II ✓
Amazon Web Services (AWS)Secondary / backup infrastructureUSABackup dataSOC2 Type II ✓
Microsoft AzureSecondary infrastructure (Azure Kubernetes Service)USA, EU (configurable)Secondary workloadsSOC2 Type II ✓

Database and Messaging

SubprocessorPurposeLocationData ProcessedSOC2 Status
ClickHouse Cloud (or self-hosted)Telemetry storage (agent events, sessions)Customer's chosen regionAgent telemetry eventsSOC2 Type II ✓
PostgreSQL (cloud-managed)Policy state, agent registry, audit logs, account dataCustomer's chosen regionAccount data, policy config, audit logPlatform SOC2 ✓
NATS JetStream (self-hosted)Event streaming between servicesCustomer's clusterEvent envelope metadataN/A (self-hosted)
RedisRate limiting stateCustomer's clusterAPI key + request metadata (no PII)N/A (self-hosted)

Authentication

SubprocessorPurposeLocationData ProcessedSOC2 Status
WorkOSEnterprise SSO (SAML/OIDC), user directory, JWT issuanceUSA (AWS-hosted)User identity, email, org membershipSOC2 Type II ✓

AI / Machine Learning (Detection Pipeline)

SubprocessorPurposeLocationData ProcessedSOC2 Status
AnthropicT3 LLM judge (async, uncertain cases only)USASubset of flagged prompt content (0.50-0.85 confidence band + 1-5% audit sample)SOC2 Type II ✓
OpenAIT3 LLM judge (fallback)USASubset of flagged prompt content (same as above)SOC2 Type II ✓

Note: T3 LLM judge is only invoked for events with confidence scores in the uncertain band (0.50-0.85) and a configurable audit sample (default 1-5% of traffic). Customers can disable T3 in their detection settings to prevent content from leaving their infrastructure. The T0 (patterns) and T1 (ONNX model) tiers run entirely in the customer's environment.


Communications

SubprocessorPurposeLocationData ProcessedSOC2 Status
SendGrid (Twilio)Transactional email (alert notifications, invites)USAEmail addresses, alert notification contentSOC2 Type II ✓

Billing

SubprocessorPurposeLocationData ProcessedSOC2 Status
StripePayment processing and subscription managementUSAPayment card data, billing contact informationSOC2 Type II ✓, PCI DSS Level 1 ✓

Note: Pavri does not store payment card data. All payment data is handled exclusively by Stripe.


Monitoring and Observability

SubprocessorPurposeLocationData ProcessedSOC2 Status
Grafana Cloud (optional)Metrics dashboards and alertingEU or USA (configurable)Prometheus metrics (no PII)SOC2 Type II ✓
PagerDutyIncident management and on-call rotationUSAIncident metadata, contact infoSOC2 Type II ✓

Data Processing Agreements

Pavri has executed Data Processing Agreements (DPAs) with all subprocessors that handle personal data. Enterprise customers can request a summary of applicable DPAs from privacy@pavri.ai.


Changes to This List

We will notify customers at least 30 days before adding a new subprocessor that handles personal data. Customers with data processing agreements that include change notification rights may object to new subprocessors in writing within 30 days of notification.

Contact: privacy@pavri.ai