Squirrel365 logo with a blue squirrel icon to the left of the text.
Home
Product
Components
Spreadsheet
Integrations
AI
Publish & Share
Showcase
Pricing
Resources
Learn
Support
Community
Marketplace
Blog
Enterprise
Log inSign Up

Subprocessors

Stylized blue squirrel logo with a large curled tail and simplified shapes.
Sub-processors & Third-Party Providers | Squirrel365
Trust & Privacy

Sub-processors and third-party providers

To deliver the Squirrel365 platform we rely on a number of third-party providers. This page lists them, what each one is used for, and the categories of personal data involved. It supplements our Privacy Policy.

Last updated: 17 August 2026 Review cycle: Reviewed periodically and on material change Providers listed: 18

How to read this page

Providers are grouped by what they do. Each entry is labelled with the kind of relationship involved, because these are not equivalent — some providers are entrusted with data we hold on your behalf, while others simply serve a file to your browser and never store anything for us.

Sub-processor Processes personal data on our behalf under a data processing agreement.
Content delivery Serves fonts, scripts or video to your browser. Receives your IP address and browser details as a technical consequence of that request, and stores nothing on our behalf.
You configure Only involved if you choose to connect it, using your own account. Listed further down.

Where your data is held

Our platform infrastructure and primary databases are hosted in Amazon Web Services' London region (eu-west-2), and our identity provider uses an EU-hosted tenant. Some providers listed below operate outside the UK and EEA; the safeguards relied on for those transfers are set out in our Privacy Policy.

Categories of recipients

The categories of third party that receive personal data. Most are expanded into named providers in the next section; internal business systems — such as accounting, support and operational tooling — are disclosed at category level only.

CategoryWhat it is used for
Cloud hosting & infrastructureRunning the service; storing your projects, files and account data
Identity & authenticationSigning you in and managing your account credentials
AI service providersPowering AI features that generate queries and content from the input you provide
Payments & financeTaking subscription payments, invoicing, reconciliation and statutory accounting records
Product analytics & onboardingUnderstanding how the product is used and providing in-app guidance
Marketing, marketplace & communityProduct updates, the addon marketplace, and the user community
Support & internal toolingSupport tickets, issue tracking and operational automation
Content delivery & embedded mediaServing fonts, scripts, editors and video to your browser

Named providers

The providers we engage to deliver the service. Where a provider appears more than once, it is because we use two genuinely separate services from them for different purposes.

Core platform

3 providers
ProviderRelationship PurposeData involved
Amazon Web Services Sub-processor Application hosting, databases, file storage, content delivery and outbound email All account and project data, uploaded files, email
Auth0 (Okta) Sub-processor Identity provider — authentication and user account records Email address, name, account roles and metadata
Ably Sub-processor Real-time messaging between the platform and the desktop application Licence key, account events

AI service providers

3 providers
ProviderRelationship PurposeData involved
Anthropic Sub-processor Generates queries and content from natural-language input in AI features The prompt you write, and the structure of the data set it is run against
Google (Gemini) Sub-processor Alternative model for the same AI features The prompt you write, and the structure of the data set it is run against
Supabase Sub-processor Stores AI usage records and feedback ratings Email address of the user submitting feedback, usage counts

Payments

1 provider
ProviderRelationship PurposeData involved
Stripe Sub-processor Subscription billing and payment processing Billing name and contact details, payment card data (entered directly with Stripe)

Product analytics & onboarding

2 providers
ProviderRelationship PurposeData involved
Heap Sub-processor Product analytics — how features are used, to guide development Name, email address, plan, company, industry and job role
Userflow Sub-processor In-app onboarding guides and product tours Name, email address, plan, sign-up date

Website, marketplace & community

2 providers
ProviderRelationship PurposeData involved
Webflow Sub-processor Hosts the squirrel365.io website and the content of the addon marketplace Website and marketplace visitor data (IP address, browser details); addon listing content and the email address of the addon's author. Developer account and licence records are held in our own database.
Circle.so Sub-processor The Squirrel365 user community platform Account identity used to sign in to the community

Content delivery & embedded media

7 providers

These are requested directly by your browser when a page loads. Except where noted, they receive only your IP address and browser details as a technical consequence of serving the file, and store nothing on our behalf.

ProviderRelationship PurposeData involved
Tiny (TinyMCE) Sub-processor Cloud-hosted rich-text editor used in the platform Content you type into the editor, IP address and browser details
Google Fonts Content delivery Serves the typefaces used across the platform and published content IP address, browser details
unpkg (npm CDN) Content delivery Delivers front-end interface and animation libraries to the browser IP address, browser details
Vimeo Content delivery Hosts onboarding and help videos embedded in the platform IP address, browser details, video playback events
YouTube & Loom Content delivery Hosts demonstration videos embedded in marketplace addon listings IP address, browser details, video playback events
jQuery CDN Content delivery Serves a script library used by the PowerPoint viewer IP address, browser details
Microsoft (Office.js) Content delivery Serves the library required by the PowerPoint add-in IP address, browser details

Integrations you configure

Squirrel365 lets you connect your own third-party accounts and add your own tracking to content you publish. Where you do, data flows to those providers because you have chosen and configured them, using your own credentials and under your own agreement with that provider. They are not our sub-processors, and we have no visibility of what they collect.

You configure

Data connectors: Google (Sheets, Drive), Microsoft (OneDrive, Excel, Entra ID), Smartsheet, HubSpot, ThoughtSpot, Power BI, Tableau, Zapier, and your own Okta tenant for authenticated viewers.

Analytics tags: If you add your own Google Tag Manager container to a published project, that tag runs in your audience's browsers under your own Google account. No tag is added unless you configure one.

Custom webhooks: If you configure a REST hook, project data is sent to the endpoint you specify.

You are the controller for these transfers and are responsible for disclosing them to your own users where required.

Changes to this list

We review this list periodically and whenever we add, replace or remove a provider that handles personal data. The Last updated date at the top of this page reflects the most recent review.

If you have a question about a provider listed here, or need a copy of our data processing agreement, contact us at privacy@squirrel365.io.

Squirrel365 logo with a blue squirrel icon to the left of the text.
Circle enclosing a stylized white letter X with a diagonal bar crossing it, on a black background.Facebook icon inside a circular border.Instagram icon inside a circular outline.YouTube play button icon inside a dark circle.LinkedIn logo
© 2026 Infosol Ltd. All rights reserved
Product
AIIntegrationsShowcasePricingDownloadArrange Demo
Help
LearnCommunitySupportMarketplaceTemplatesDesign service
Updates
BlogNewsRelease Notes
Company
Contact UsPrivacy PolicyTerms of use