This article lists the third parties that may process data on HueChat's behalf, and shows you where to find the always-current version and HueChat's security documents.
The Trust Center at trust.huechat.ai is the public home for HueChat's security and privacy information. It contains:
Frameworks such as SOC 2 and ISO 27001 are shown with their real status. HueChat does not hold either today, and the Trust Center is updated when that changes.
| Provider | Purpose | Region |
|---|---|---|
| DigitalOcean | Servers, managed PostgreSQL and Valkey, object storage | Germany (FRA1) |
| Cloudflare | DNS, CDN, web application firewall, Zero Trust for operator access | Global edge |
| Brevo | Account, security and billing email | EEA |
| Moyasar | Subscription payments; card data never touches HueChat | Saudi Arabia |
| Sentry | Application error reporting | Per provider |
| 1Password | Production secrets | Per provider |
| Firebase (Google) | Push notifications for the mobile apps | Per Google |
Data flows to these providers only for accounts that enable the integration, and only the data that integration needs.
CookieChimp (consent records), Google Analytics and Tag Manager, Microsoft Clarity and Meta Pixel run on huechat.ai only after you accept the matching cookie category. Mintlify hosts the Developer Hub and Sprinto hosts the Trust Center.
HueChat updates the Trust Center when a provider is added or replaced. Exact options may differ by plan. If your contract requires advance notice of subprocessor changes, email support@huechat.ai so we can arrange it.