Legal & Trust
Last updated: June 2026
Benchside uses a small set of vetted infrastructure providers to deliver the service. Each is bound by a data processing agreement. We will update this list before adding a new subprocessor that handles customer data.
Supabase
Vercel
Anthropic
Stripe
Resend
Upstash
Sentry
| Provider | Purpose | Data processed | Region |
|---|---|---|---|
| Supabase | Database, authentication, and file storage | Account, project, and generated content | US / EU |
| Vercel | Application hosting and edge delivery | Request metadata and logs | Global |
| Anthropic | AI processing for output generation | Project inputs sent for generation | US |
| Stripe | Payment processing and billing | Billing contact and payment metadata | Global |
| Resend | Transactional email delivery | Recipient address and message content | US / EU |
| Upstash | Rate limiting and ephemeral caching | Rate-limit keys (no personal data) | Global |
| Sentry | Error monitoring and diagnostics | Scrubbed error diagnostics | US / EU |
We post every change to this list above, in advance of adding a new subprocessor that handles customer data, and update the “Last updated” date.
Customers can turn on email notice for subprocessor changes (and policy and security updates) in Settings → Notifications.
Enterprise agreements can also include a contractual advance-notice clause. Not a customer yet? Email privacy@benchside.ai to be added to the notice list.
Questions about this page? Email privacy@benchside.ai. For security disclosures, email security@benchside.ai.
No changes to this list yet. When we add or change a subprocessor that handles customer data, we post it here in advance and the entry is dated.