← Back to OrchestriX PMO

Sub-processors

Last updated: 3 October 2026 · OrchestriX PMO Pty Ltd · Melbourne, Australia

These third-party providers process customer data on our behalf to deliver OrchestriX PMO. “Configured but disabled” means the integration exists in the product but is switched off in production and no customer data is sent to it. We will update this page when providers change.

ProviderPurposeData involvedLocationStatus
SupabaseManaged PostgreSQL databaseAll account, organisation and project dataSeoul, South Korea (ap-northeast-2)Active
VercelApplication hosting, serverless compute and edge networkRequest metadata, application logsProvider-managed; serverless functions may run outside AustraliaActive
GroqAI inference for KEN (primary provider)User messages and the project context sent with them (for example RAID items, budget and milestone data)Provider-managed; may be outside AustraliaActive
ResendTransactional email (invitations, password reset, review notifications)Recipient email addresses and message contentProvider-managedActive
SentryApplication error monitoringError traces and request metadata; may include user and organisation identifiersProvider-managedActive
GoogleOptional “Sign in with Google”Name and email address, only for users who choose Google sign-inProvider-managedActive, optional
Cloudflare Workers AIAI inference (optional fallback)Same as Groq, if enabledProvider-managedConfigured but disabled

Questions and data processing agreements

Enterprise customers who need a data processing agreement, or more detail on any provider, can contact privacy@orchestrixpmo.com. See also our Privacy Policy and Security page.