Subprocessors

Version 1.0 · Effective 2026-08-08

What this page is. Reply Engine (a product of Ellis Intelligence LLC) engages the third parties below ("Subprocessors") to process Customer Data on our behalf in delivering the Service. This list is the public disclosure required by our Data Processing Addendum ("DPA") §5.1, and is kept current as our stack changes.

Ellis Intelligence LLC, a Colorado limited liability company, operates Reply Engine as a d/b/a; Reply Engine is not a separate legal entity. This page describes the Subprocessors used specifically by the Reply Engine Service. Ellis Intelligence LLC has no subsidiaries or affiliated entities, and no entity other than Ellis Intelligence LLC processes Customer Data as part of the Service.

Update cadence & your objection right

We review this list quarterly. Before we engage a new Subprocessor, we specifically inform affected customers in writing — by email to the account's designated contacts, or by in-product notice — with notice deemed given when sent, and we post the change here in addition to (not instead of) that written notice. Customers have 30 days from the date notice is given to object on reasonable data-protection grounds; a timely objection suspends our use of the new Subprocessor for that customer pending resolution, per DPA §5.3.

Current Subprocessors

Reply Engine — current Subprocessor list

Infrastructure and hosting

SubprocessorPurposeData accessedRegionNotes
Fly.io, Inc.Production application hosting + database (Fly Volume holds the SQLite file)Tenant data: questionnaires uploaded, answers generated, user accounts, organization membership — in transit and at restUS (`iad` / Ashburn, VA)Production host; US-domiciled Delaware C-corp; per-tenant row-level isolation.
Cloudflare, Inc.Edge/DNS, DDoS protection, WAF, tunnelsNetwork metadata, request logsUS (global edge POPs)

Artificial intelligence

SubprocessorPurposeData accessedRegionNotes
Anthropic, PBCLLM inference for answer generationQuestionnaire content + tenant security-posture documents passed to the API; not currently covered by a written Zero Data Retention ("ZDR") agreement or a code-level enforcement gate — not represented as a current safeguardUSPosture documents are tenant-scoped, sent per-request only.

Billing and communications

SubprocessorPurposeData accessedRegionNotes
Stripe, Inc.Subscription billingBilling contact, tokenized payment method, invoice metadataUS
Resend Inc.Transactional email (signups, password resets, billing receipts, approval-workflow notifications)Email recipient + message contentUS
Google LLC (Workspace)Our internal business emailOur internal email only — not customer-product dataUS

Customer-configured integrations

SubprocessorPurposeData accessedRegionNotes
Slack Technologies, LLC (customer-provided)Notifications pushed to the customer's own Slack workspaceOnly the notification content the customer configuredUSCustomer's own Slack DPA governs Slack-side handling.

A category with no entries is omitted from the published page rather than shown empty. A vendor we have not engaged is never listed here — planned or candidate vendors are disclosed, if at all, through the notice mechanics above, at the time we engage them.

Subprocessors NOT used. Reply Engine does not use any social-media tracking pixel, third-party analytics that retains identifying data, any LLM provider outside Anthropic, or any third-party vector store / database provider — per-tenant corpus retrieval runs on SQLite FTS5 within the Fly.io-hosted application, not a separate subprocessor.

Data Residency

All Subprocessors above maintain Customer Data at rest in the United States under our current configuration. Cloudflare and Anthropic operate global edge infrastructure for delivery, but data at rest stays U.S.-only under our contracts. Production hosting is Fly.io, Inc. (a U.S./Delaware company), deployed to its U.S. region (`iad` / Ashburn, VA); continuous backups stream to Cloudflare R2 (also a U.S. vendor).

Customers Outside the United States

We do not currently market to or onboard customers in jurisdictions that prohibit U.S. data processing under their data-protection law. Customers in the EU/EEA, UK, or Switzerland may onboard subject to the Standard Contractual Clauses ("SCCs") incorporated by reference into our DPA (together with the UK Addendum, for UK transfers).

Audit Rights

You may request a summary of our subprocessor-management practices by emailing [email protected]. SOC 2 Type I is planned; an auditor has not yet been engaged; our report will be available under NDA once complete. We do not permit direct audit of our Subprocessors; we share their relevant audit reports under NDA.

For a customer whose personal data is transferred under the SCCs or the UK Addendum incorporated into our DPA, nothing in this section limits that customer's audit and inspection rights under Clause 8.9 of the SCCs. For that customer, an audit request is satisfied first by our security-posture documentation (or SOC 2 report, once one exists) together with the relevant Subprocessors' audit reports under NDA; any further Clause 8.9 inspection is conducted on reasonable notice, during business hours, subject to confidentiality obligations, and at the customer's expense except where the audit reveals material non-compliance.

Contact Us

Ellis Intelligence LLC
Attn: Privacy & Security — Reply Engine
Email: [email protected]

Related: Privacy Policy · Terms · Cookies · Acceptable Use. This list is referenced by, and generated in accordance with, our Data Processing Addendum.