Security and trust

Subprocessors

The companies that process data on Kiste's behalf, and how changes are announced.

Last updated: 6 October 2026

The binding, current list is at kiste.run/subprocessors and in Annex 3 of the data processing agreement. This page summarises it.

CompanyWhat forWhat it can see
Cloudflare, Inc. (USA)The kiste.run edge and control plane (Workers), the account database (D1), downloads and encrypted backups (R2), the tunnel to the compute server, access control, DNS, DDoS protection, rate limiting, TURN relayAccount data, request metadata including IP addresses, encrypted backup objects (no key), encrypted traffic in transit
Stripe (Stripe Payments Europe, Ltd., Ireland, with Stripe, Inc., USA)Payments, checkout, customer portal, invoicesE-mail address, account id, payment method, invoices. Never the contents of Kisten. Stripe acts as an independent controller for payment processing and its own legal duties, so it is named separately.

Changes

A new subprocessor is announced 30 days before it first receives personal data, as set out in the data processing agreement.

Providers that receive no customer data

Kiste also uses tools to build and operate the service: GitHub for source code and CI, a password manager for operator secrets, and AI coding agents that help the operator with engineering work. None of them is given customer personal data. Review evidence in repositories is redacted, and logs identify accounts only by a random id. If that ever changes, the provider is added to the list above under the 30-day rule first.

On this page