Jotholm

Jotholm Subprocessors

This list names every third party that may process personal data on Jotholm's behalf, its purpose, the data it touches, and its location. The Stripe contracting entity uses a dual-entity SCC arrangement (see the table below).

Last updated: 21 June 2026
Effective: 21 June 2026

1. Active subprocessors

#SubprocessorPurposePersonal data processedLocationDPA / transfer mechanism
1StripePayment processing, subscription billing & customer portalAccount email; account/workspace identifiers (as metadata); payment/card data collected and held directly by Stripe, not by usStripe, Inc. (US) and/or Stripe Payments Europe, Ltd. (Ireland), dual-entity arrangementStripe standard DPA + SCCs, incorporated by reference into the Stripe Services Agreement; transfer mechanism: Stripe, Inc. (US) and/or Stripe Payments Europe, Ltd. (Ireland), with Stripe's standard SCCs in place.
2ResendSending verification, magic sign-in, and account-notice emailsRecipient email address; email content (sign-in/verification links, notices)United StatesResend standard DPA (incorporating SCCs).
3Self-hosted hosting / infrastructure (on-premises, self-hosted)Running the application servers and storing workspace databases and uploaded imagesAll personal data at rest (account, board content, sessions, billing identifiers)Self-hosted on-premises in Sweden (EU/EEA), privately-operated cluster, not a public cloudOn-premises, within the EEA (Sweden): no third-party hosting processor.
4Backup / cold-archive storage (off-box backup storage)Storing operational backups (hourly snapshots, ~8-week max) and cold-archive tarballsSame as #3 (backup copies)Access-controlled storage, encrypted at rest; the primary backup store is an on-premises NAS in Sweden (EU/EEA)Primary store on-premises, within the EEA (Sweden).

2. Identity provider (special case)

ProviderRoleData flowNotes
Google (Sign in with Google / OIDC)Identity provider, only for users who choose Google sign-inWe send Google nothing about other users; for a user who signs in with Google we receive their verified email, name, and Google subject idIndependent (separate) controller for the authentication, not a Jotholm subprocessor. The user authenticates directly with Google under Google's own terms/privacy policy; Jotholm only receives back verified identity (email, name, subject id) and sends Google no data about other users. No controller-to-processor transfer by Jotholm; Google's own EU–US Data Privacy Framework / SCC safeguards govern its US processing. Listed for transparency.

3. Notes