Skip to main content

Sub-processors

Effective 2026-07-30

These are the third parties currently used to deliver StudySite. We limit each provider to the data and purpose described below. Services that are configured in code but not active are not represented as current subprocessors.

Sub-processorPurposeData sharedUser choice
RenderApplication hosting and managed PostgreSQLAccount, course, authoring, learning, and service-log dataRequired to provide StudySite
CloudflareDNS, TLS termination, and network protectionIP address, request metadata, and security signalsRequired to provide StudySite
ClerkAuthentication, sessions, invitations, and identity managementName, email, profile image, authentication factors, session and sign-in dataRequired for an account
OpenAITutor, file search, retrieval, and selected generation workflowsThe prompt, chat, code/context, and instructor-approved source content needed for the requested AI featureRequired only when the applicable AI feature is used
GoogleGemini AI generation and voice, YouTube search, and user-authorized Docs/Drive integrationFeature prompts and responses; source files or transcripts when required; search queries; user-authorized Google contentAI and connected-account features can be avoided or disconnected
E2BIsolated student code and notebook executionCode, selected files, execution input, and resulting outputRequired only when code execution is used
InngestBackground-job orchestrationJob identifiers, status, timing, and bounded workflow metadataRequired for scheduled and asynchronous workflows
GitHubUser-authorized repository, assignment, commit, and autograder workflowsGitHub identity, repository metadata, selected files, commits, and workflow statusOptional; users can disconnect GitHub
MicrosoftUser-authorized OneNote import and exportOAuth identity and selected OneNote contentOptional; users can disconnect Microsoft
SentryError reporting and performance monitoringErrors, stack traces, request paths, timing, and device metadata; default PII capture is disabledRequired for platform security and reliability
PostHogOptional product analyticsPseudonymous account identifier plus page and feature events; never name/email, student code, terminal output, uploads, or free-text responsesOff by default; opt in or out in Settings
FeaturebaseHelp center, support, and feedbackAccount identity and content a user deliberately submits to support or feedbackOptional unless the user opens or submits to the service
StripePayment processing, receipts, refunds, and entitlement evidenceBilling contact, payment transaction, product, and entitlement metadata; StudySite does not receive full card numbersRequired only for direct purchases
Better StackExternal uptime and scheduled-job heartbeat monitoringService availability and job-health signals; no learning contentRequired for reliability monitoring

Our processor agreements or applicable service terms restrict providers to delivering their contracted service and require appropriate data protection. We will give account holders and institutional contacts at least 30 days' notice before a new subprocessor begins receiving personal or student data, except when an urgent security replacement is required. Questions or objections may be sent to admin@studysite.ai.