Effective date: August 15, 2026
This list supplements the Privacy Policy. It identifies core providers that process Personal Data for Haplotype, the services they provide, the categories of data they may handle, and their principal processing location.
Providers are contractually limited to performing services for Haplotype and must protect Personal Data under applicable contractual and legal obligations. Not every provider receives every category listed, and a provider receives data only when its function requires it.
Chatwoot Community Edition is open-source support software that we run on our own Google Cloud infrastructure. Support conversations are stored there, not with Chatwoot Inc., and using this software does not itself make Chatwoot Inc. a recipient of support conversations. Live customer support and support model processing remain disabled until retention, deletion and provider launch checks are complete.
Haplotype-controlled processing
HaploHub
- Function
- Haplotype-controlled platform for secured upload links, genetic and biomarker file validation, processing, storage, queries, algorithms, and derived results.
- Data
- Genetic Data; Biomarker and Health Data; coded member, upload, and Sample identifiers; file and processing metadata; derived results.
- Location
- United States.
Cloud infrastructure
Google Cloud
- Function
- Cloud computing, storage, databases, networking, security, logging, backups, and deployment infrastructure. Self-hosted Chatwoot support and, when enabled, Google Vertex AI retrieval and support replies.
- Data
- Account and authentication identifiers; service, upload, and transaction metadata; security and diagnostic records; encrypted Genetic Data and Biomarker and Health Data where Haplotype-controlled systems store or process them. Support conversations, opaque support identifiers, reviewed help articles and support query text when support is enabled. Customer model processing remains disabled pending launch checks.
- Location
- United States for Genetic Data and Biomarker and Health Data.
Identity and authentication
WorkOS
- Function
- Account authentication, session management, sign-in, and identity administration.
- Data
- Name, email address, profile information, authentication identifier, session and device information, IP address, and security events. WorkOS does not receive uploaded Genetic Data or Biomarker and Health Data to provide authentication.
- Location
- United States, subject to WorkOS's documented service-provider infrastructure.
Reliability and security monitoring
Sentry
- Function
- Application error reporting, performance monitoring, diagnostics, and incident investigation.
- Data
- Opaque account identifier; IP address; device, browser, page, and application information; error details; performance and diagnostic events. Haplotype does not send account email addresses to Sentry and configures monitoring to exclude uploaded genetic or biomarker contents, biomarker query contents, credentials, cookies, and authorization headers.
- Location
- United States, subject to Sentry's documented service-provider infrastructure.
Product analytics (optional)
PostHog
- Function
- Optional product analytics: page views and product-usage events, only after you accept optional measurement in the cookie banner.
- Data
- Opaque account identifier; environment; page paths; product-usage events (for example that an upload finished or that a connected AI tool ran, with the tool's name and timing); browser and device information; IP address processed in delivering the request. Haplotype disables session recording, autocapture, surveys, and heatmaps, and never sends account email addresses, page contents, or uploaded genetic or biomarker contents. Deleting an account deletes the PostHog record and its events.
- Location
- United States (PostHog Cloud US), subject to PostHog's documented service-provider infrastructure.
Communications
Resend
- Function
- Delivery of transactional and service-related email.
- Data
- Name, email address, message content, delivery status, and communications metadata. Haplotype does not use Resend to transmit raw Genetic Data or Biomarker and Health Data.
- Location
- United States, subject to Resend's documented service-provider infrastructure.
Operations tooling
Slack
- Function
- Internal incident notifications. When live support is enabled, every support conversation is copied in full into a private Slack channel, where our team reads it and replies.
- Data
- Incident alert contents and opaque account identifiers. For support: every message in a conversation, including what customers type, support bot replies, and our team's replies; the contact label our support system assigns (a generated visitor name or "Wallet user"); and opaque conversation identifiers. Customer messages may include personal, genetic or health information despite our request not to share it. Wallet does not automatically forward uploaded files, genetic results, account names or email addresses to support. Support threads in Slack follow the support retention and deletion terms in our Privacy Policy.
- Location
- United States, subject to Slack's documented service-provider infrastructure.
Linear
- Function
- Engineering issue tracking for investigating and resolving errors and incidents surfaced by reliability monitoring.
- Data
- Issue contents derived from error and incident alerts: opaque account identifiers, error details, and application diagnostic summaries. Linear does not receive uploaded Genetic Data or Biomarker and Health Data.
- Location
- United States, subject to Linear's documented service-provider infrastructure.
Testing, orders, and delivery
When Haplotype offers direct-to-consumer testing or paid ordering, additional providers may include a testing laboratory, payment processor, kit-fulfillment provider, and shipping carrier. The applicable provider will receive only the information reasonably necessary for its function.
The testing laboratory will be identified here, at checkout, or in kit materials before it receives a Sample or related Personal Data. Payment and shipping providers may vary by location and order and will be identified in the transaction where appropriate.
Testing providers may handle coded Sample and order identifiers, test instructions, the Sample, required demographic or identity information, laboratory output, and quality records. Payment providers may handle billing and payment information. Fulfillment providers and carriers may handle name, contact details, shipping address, order contents, and shipment status.
Changes to this list
We update this list when a core provider begins or stops processing Personal Data or its function materially changes. An update to this operational list does not authorize a new use of Genetic Data, Biomarker and Health Data, or a Sample that requires separate consent.
Questions about a provider or its role may be sent to privacy@haplotype-labs.com.