Customer Personal Data
Subprocessors
These providers may process personal data contained in a customer's project submission on our behalf. Their access is limited to the stated purpose.
| Provider | Purpose and data | Primary location | Safeguards |
|---|---|---|---|
| Hetzner Online GmbH | EU object storage for uploaded database copies, filestores, addons, and job metadata; infrastructure used for project processing where applicable | European Union; selected EU region | Provider DPA, restricted access, HTTPS transfer, protected storage |
| Netlify, Inc. | Website hosting, serverless intake, upload orchestration, form submissions, and technical/security logs. Large project files upload directly to object storage and do not pass through the function. | United States and global delivery network | Provider DPA and applicable transfer mechanism, including Standard Contractual Clauses where required; data minimisation |
| Sinch Email / Mailgun Technologies, Inc. | Transactional email carrying project contact details, job metadata, and notifications; no database or addons attachment | EU message region when configured; limited account data may be processed globally | Provider DPA, EU regional processing for message data, and Standard Contractual Clauses or other lawful transfer mechanism where required |
Service providers that are not Customer Content subprocessors
Stripe processes checkout, payment, fraud-prevention, and transaction data. It ordinarily acts under its own privacy terms for those purposes and does not receive the uploaded Odoo database or addons.
Google Analytics receives website analytics data only after the visitor opts in. It does not receive Customer Content through the analytics integration. Google Fonts receives technical request data when delivering font files.
Authorisation and changes
The DPA gives general written authorisation to use the listed subprocessors. We will post an intended addition or replacement here and, for an active Order, give the Customer contact at least 30 days' prior email notice where reasonably possible. Customer may object on reasonable data-protection grounds during that period. The parties will work in good faith on an alternative; if none is reasonably available, either party may terminate the affected unperformed service without penalty.
Questions and transfer documents
Customers may ask about a provider, regional configuration, or a relevant transfer safeguard at support@odooupgradedone.com. Commercially sensitive material may be provided subject to confidentiality and redaction.