Skip to main content

Sub-processors

InfraSage relies on the third-party services below to operate the platform. In BYOC and self-hosted deployments, most of these are not applicable: the customer owns the AWS/Anthropic contract directly.

Data-plane sub-processors (touch customer telemetry)

Sub-processorPurposeData touchedBYOCSelf-hostedSaaS
AWS (customer account)Bedrock LLM inference, S3 backupsPrompt + tool responses sent to Claude Sonnet/Haiku; RCA outputs✅ Customer contract✅ Customer contractUnder InfraSage AWS agreement
Anthropic (via Bedrock)Claude Sonnet/Haiku model inferencePrompts (with PII redacted) + completions✅ Customer contract✅ Customer contract✅ Under InfraSage BAA

BYOC/self-hosted: you own the AWS + Anthropic-via-Bedrock relationship directly. InfraSage never sees your telemetry.

SaaS: InfraSage acts as sub-processor of your data to Anthropic-via-Bedrock, per AWS Bedrock Data Privacy terms.

Control-plane sub-processors (do NOT touch customer telemetry)

Sub-processorPurposeData touched
CloudflareDNS, CDN for infrasage.dev, console.infrasage.dev, api.infrasage.dev, docs.infrasage.devPublic HTTPS traffic metadata (IP, User-Agent). No customer telemetry passes through Cloudflare; telemetry ingest is direct-to-gateway
GitHubSource code, container registry (ghcr.io) for engine + UI imagesNo customer data. Images are cosign-signed
AWS SES + SMTP fallbackEmail notifications (invites, incidents, RCA digests)Email addresses + notification content (which references service names)
Vanta / Drata (planned)SOC-2 attestation workflowAccess-review metadata and vendor evidence; no customer telemetry

Integrations you may enable (opt-in per tenant)

InfraSage does not integrate with any of these automatically. Each one requires an explicit per-tenant credential and only touches data you route through it.

IntegrationPurposeDirection
Slack, Microsoft TeamsAlert + RCA delivery, chat-opsOutbound (webhook)
PagerDuty, OpsGenieAlert escalationOutbound (API)
Jira, LinearTicket creation from alertsOutbound (API)
GitHubRCA cross-reference to deploys, source-code contextRead-only
ArgoCD, Kubernetes APILive-infra investigation (kubectl-equivalent reads)Read-only
Datadog, Grafana, Prometheus, Loki, TempoAdditional telemetry sourcesRead-only ingest

Change notification

We commit to notifying customers 30 days in advance of adding any new data-plane sub-processor or expanding the scope of an existing one. Subscribe at [email protected] with subject subprocessor-updates to receive advance notice.

Last updated

This list is reviewed quarterly. Last update: 2026-08-23.