Subprocessors and Third-Party Services

Approved launch providers, separated by how and when they may process data.

This provider list distinguishes core services, route-specific payments, consent-gated analytics, conditional AI providers, customer-selected destinations, and deferred TikTok access.

Policy ID
VOCALIS-SUBPROCESSORS
Version
Version 1.0
Effective date
Effective 2026-09-12
Last updated
Last updated 2026-09-12

Publication rule

The providers below form the current service allowlist. A provider processes customer data only when the corresponding service is enabled, configured, selected, or requested; inclusion does not mean every provider is active for every customer or task.

Core providers, optional AI processing, and customer-selected destinations are separated so conditional integrations are not represented as always-active subprocessors.

Core Infrastructure

These providers are approved for hosting, application delivery, backend operation, authentication, database, and object-storage functions when configured for the service.

  • Vercel — approved core infrastructure; actual processing depends on the deployed configuration.
  • Render — approved core infrastructure; actual processing depends on the deployed configuration.
  • Supabase — approved core infrastructure; actual processing depends on the deployed configuration.

Payments

Razorpay is approved for India/INR payments and the certified international USD fallback when routing selects it. Paddle is approved for international/USD payments where enabled and approved.

Paddle acts as merchant of record where applicable. Razorpay processes payment on behalf of OXEFY FITNESS SERVICES (OPC) PRIVATE LIMITED. Neither provider handles every transaction.

  • Razorpay — conditional on the payment route presented at checkout.
  • Paddle — conditional on the payment route presented at checkout.

Communications / Analytics

Resend is approved for transactional communications when configured. PostHog is approved for analytics only when enabled and after the stored analytics consent is granted.

  • Resend — transactional communications when enabled.
  • PostHog — Consent-gated when enabled.

AI Processing

The following AI services are approved for conditional Production use. Only the provider selected by configured routing for a requested task receives the relevant prompt, content, file, or structured context; they are not all used simultaneously.

  • OpenAI — optional/conditional; used only when enabled and selected for the requested task.
  • Anthropic — optional/conditional; used only when enabled and selected for the requested task.
  • Mistral — optional/conditional; used only when enabled and selected for the requested task.
  • Cohere — optional/conditional; used only when enabled and selected for the requested task.
  • Google Gemini — optional/conditional; used only when enabled and selected for the requested task.
  • Groq — optional/conditional; used only when enabled and selected for the requested task.
  • Together AI — optional/conditional; used only when enabled and selected for the requested task.
  • OpenRouter — optional/conditional; used only when enabled and selected for the requested task.
  • xAI — optional/conditional; used only when enabled and selected for the requested task.
  • DeepSeek — optional/conditional; used only when enabled and selected for the requested task.

Customer-selected Integrations / Destinations

Customer-selected destinations are separate from mandatory core infrastructure. Data is sent to a platform only when a customer connects or selects that service and requests the relevant workflow.

The approved launch destinations are listed below. TikTok is excluded from launch-ready claims until its credentials and platform approval are complete.

  • LinkedIn — optional; data is sent only after customer connection or selection and a relevant request.
  • Meta / Facebook / Instagram / Threads — optional; data is sent only after customer connection or selection and a relevant request.
  • Pinterest — optional; data is sent only after customer connection or selection and a relevant request.
  • X — optional; data is sent only after customer connection or selection and a relevant request.
  • YouTube / Google — optional; data is sent only after customer connection or selection and a relevant request.
  • Mastodon — optional; data is sent only after customer connection or selection and a relevant request.
  • Telegram — optional; data is sent only after customer connection or selection and a relevant request.
  • WhatsApp — optional; data is sent only after customer connection or selection and a relevant request.
  • Framer — optional; data is sent only after customer connection or selection and a relevant request.
  • TikTok — deferred/not launch-ready: Credentials and platform approval are incomplete.

Changes and questions

Questions about provider use or this allowlist can be sent to [email protected]. Material provider changes will be reflected in the versioned policy; no fixed advance-notice period is promised.

Operator and contact

Vocalis is a product and service operated by OXEFY FITNESS SERVICES (OPC) PRIVATE LIMITED.

Company registration number: U93110PN2023OPC225431. General corporate and legal enquiries use [email protected].

Operating and legal-notices address: Floor No. 6, Ruia Chambers, In front of Amanora Gold Towers, Amanora Park Town, Hadapsar, Pune – 411028, Maharashtra, India.