Providers we use to run the service
These apply to everyone using Nyza Solutions. Each is bound by its own agreement with us and processes data only to provide its service.
| Provider | What it does for us | What it receives | Where |
|---|---|---|---|
| OVH US | Hosting. The application, database and agent sandboxes run on servers we operate. | Everything stored by the service. | United States |
| Cloudflare | DNS, TLS and inbound email routing for our domains. | Network metadata; inbound email addressed to us. | Global edge |
| Google Cloud | Secret Manager for platform secrets, and the function that relays our outbound email. | Platform credentials; the contents of email we send you. | United States |
| Amazon Web Services (SES) | Delivery of transactional email — sign-in, notifications, reports. | Your email address and the contents of that email. | United States |
| Stripe | Payments and subscription billing. | Name, email, billing details. Card data goes to Stripe directly and never reaches us. | United States |
| Google (Sign-in) | Optional "Sign in with Google". Only openid, email and profile are requested. | Your email address, name and profile picture URL. | United States |
| Google Analytics | Usage measurement on the public marketing site only. Not used inside your office. | Page views, approximate location, device, referrer. | United States |
| OpenRouter | Routes two of our own AI features: the website chatbot and the conversation that helps you design an agent. | The messages you type into those two features. | United States |
| ElevenLabs | The voice agent on our phone line and the in-browser voice demo. | Call audio and transcript. | United States |
| Twilio | Telephony for our business phone and SMS line. | Phone number, call and message metadata, message contents. | United States |
Providers you connect yourself
These are not our subprocessors. They are services you choose to connect to your office, using your credentials, under your agreement with them. None of them receive anything unless you add the connection and grant an agent access to it — and an agent can only write through one if you granted write access separately.
| Provider | When it is involved | What it receives |
|---|---|---|
| Anthropic | Claude models, when you connect an Anthropic key and an agent uses it. | The instructions you wrote and the content the agent is working on. |
| OpenAI | GPT models, when you connect an OpenAI key and an agent uses it. | The instructions you wrote and the content the agent is working on. |
| Google AI (Gemini) | Gemini models, when you connect a Google AI key and an agent uses it. | The instructions you wrote and the content the agent is working on. |
| GitHub | Only if you connect GitHub and grant an agent access to it. | Whatever your token can reach, limited to what the agent is granted. |
| Slack | Only if you connect Slack and grant an agent access to it. | Whatever your token can reach, limited to what the agent is granted. |
| Your email host (IMAP/SMTP) | Only if you connect a mailbox and grant an agent access to it. | The messages the agent is asked to read, and any it is granted permission to send. |
| Any HTTP API or webhook you add | Only if you configure it and grant an agent access to it. | Whatever you send to it. |
Why this distinction matters: your model provider bill is yours, your agreement with them is yours, and if you connect nothing, nothing here is used. We do not insert ourselves between you and a provider you chose.
Changes to this list
We update this page when a provider is added or removed. Customers with a signed Data Processing Addendum can ask to be notified in advance of a new subprocessor, and may object on reasonable data-protection grounds. Email hardiktrehan@nyza.us to be added to that notification list.
Questions
Security or procurement review? Email hardiktrehan@nyza.us and a human will answer. See also our Privacy Policy and Terms of Service.