BeautyReply beta
Subprocessor List
Effective 28 August 2026
This page lists third-party providers BeautyReply may use to host, operate, or support the platform. The list is maintained in a central registry in the codebase and should be kept aligned with actual integrations.
1. How to use this list
Business customers reviewing BeautyReply for GDPR purposes should use this list together with the Data Processing Agreement (DPA) template and their own privacy notices. Verify each provider's current privacy policy, DPA availability, and processing location before launch.
2. Active subprocessors
| Provider | Purpose | Data categories | Location | Links | Updated |
|---|---|---|---|---|---|
| BeautyReply Cloud Database | Authentication, PostgreSQL database, file storage, and row-level security for tenant data. |
| EU region when configured (verify project region) | 2026-08-28 | |
| Vercel | Application hosting, serverless functions, edge delivery, and operational logs. |
| Global (verify project region settings) | 2026-08-28 | |
| Groq | Optional natural-language generation and structured understanding for assistant replies. |
| United States (verify current Groq data processing terms) | 2026-08-28 | |
| Serper | Optional public web search snippets for limited research questions (not salon pricing or hours). |
| Verify with Serper documentation | 2026-08-28 | |
| hCaptcha | Bot protection on signup, lead forms, and support feedback. |
| Verify with hCaptcha documentation | 2026-08-28 | |
| Resend | Transactional email for lead notifications, handoff alerts, and support messages when configured. |
| Verify with Resend documentation | 2026-08-28 | |
| Shopify (merchant storefront) | When a salon enables add-to-cart beta, the visitor browser interacts with the merchant Shopify storefront cart API on the merchant domain. |
| Merchant Shopify store region | 2026-08-28 | |
| Google Fonts (via Next.js) | Dashboard typography delivery. |
| Google global infrastructure | 2026-08-28 |
3. Changes
BeautyReply may update subprocessors as the product evolves. Material changes should be communicated to business customers in accordance with contractual notice periods once final commercial terms are in place. This beta list is provided for transparency during review and is not a contractual notification.
4. Merchant-controlled services
When a salon connects its own Shopify storefront or links its own website, visitors may also interact with services controlled by the salon (for example Shopify cart APIs on the merchant domain). Those providers are chosen by the salon and are not BeautyReply subprocessors for salon-controlled processing.
