Subprocessors
- Effective
- 21 September 2026
- Last updated
- 21 September 2026
- Version
- 1.0
This page lists the third parties that process data in order to deliver the ZeroCredit AI service. It is maintained as changes happen; the effective and last-updated dates above tell you when it was last revised.
1. Platform infrastructure
| Subprocessor | Service | Data categories | Region |
|---|---|---|---|
| Lovable Cloud (managed application hosting, PostgreSQL database, authentication and transactional email) | Hosting, database, sign-in, one-time codes and account email | Account data, workspace and configuration data, usage telemetry, encrypted provider credentials, logs | Managed multi-region cloud infrastructure; processing may occur outside India |
| Razorpay Software Private Limited | Payment gateway — checkout, cards, UPI, netbanking, refunds | Name, email, billing and transaction data. Card details go directly to Razorpay and never reach our systems. | India |
| Google (Google Analytics 4) | Aggregate website usage measurement, only after you accept analytics cookies | Website interaction data, approximate location, device and browser information | Global Google infrastructure |
We do not currently use a separate customer-support desk, marketing-automation, advertising, data- enrichment or session-replay vendor, so none is listed.
2. AI model providers
AI providers are different from ordinary subprocessors, because which of them receives a request depends on your own configuration:
- Your own keys (BYOK). When you connect your provider credentials, the request is executed on your own account with that provider, under the agreement you hold directly with them. Your relationship with that provider governs their handling and retention of the request.
- Managed access. Where your plan includes models we make available, the request is executed under our provider account and that provider acts as our subprocessor for it.
| Provider | Used for | Basis |
|---|---|---|
| Google (Gemini models) | Model execution, including provider-native web search where the model supports it | Managed access, and BYOK where you connect your own Google credential |
| Other supported providers — including OpenAI, Anthropic, xAI, DeepSeek, Moonshot (Kimi), Azure OpenAI, Perplexity, AI/ML API and custom OpenAI-compatible endpoints | Model execution only when you connect that provider's credential | BYOK — executed on your own provider account |
No provider receives your requests unless it is selected by your configuration or is a compatible candidate for the model and capabilities you asked for. We never silently substitute a provider that cannot perform what you requested.
3. Changes to this list
We will update this page when we add or remove a subprocessor. Enterprise customers with an executed agreement that requires advance notice of new subprocessors will be notified as that agreement provides. To be told about changes, write to support@zerocreditai.com.