Notice
How this list changes
Material subprocessor changes are emailed to active paid users at least 30 days before they take effect. Removed vendors are reflected here after production traffic has stopped flowing to that vendor.
A DPA review path is available on request for institutional buyers. This page should not be read as a promise that every buyer-specific DPA, MSA, insurance request, or security questionnaire has already been completed.
Active vendors
Current subprocessor list
| Provider | Purpose | Data | Region/status |
|---|---|---|---|
| Supabase | Authentication and primary database | Account identity, profile, preferences, sessions, MFA factors, passkeys, saved account records, and saved Marco conversations | Project region us-east-1, subject to the notice process if changedService-role use is server-side and allow-listed. |
| Vercel | Application hosting, serverless runtime, and edge delivery | Request metadata, IP address, user agent, URL, response status, and runtime logs | Global edge with primary functions in us-east-1Sensitive values are not intentionally attached to logs; structured redaction is applied on guarded paths while the remaining console-callsite migration is completed. |
| Amazon Web Services (AWS) | Hosted Macro Lab job queue, worker compute, and private artifact storage | Lab run identifiers and job metadata, user-provided input bundles, execution logs and results, and generated artifacts for hosted Macro Lab runs | Primary Macro Lab resources in us-east-2Private S3 objects and queue payloads use the production encryption and retention controls documented in the Macro Lab operations runbook. |
| Upstash Redis | Distributed rate limiting and cache storage when configured | Rate-limit keys, IP-derived buckets, counters, reset timestamps, public macro cache payloads, and cached query-derived embedding vectors | USA/global depending on the configured databaseNo request bodies are intentionally stored for rate limiting. Query-derived embedding vectors may be cached for up to 24 hours where supported; cache keys hash the normalized query text. |
| Anthropic | Marco assistant model provider | Assistant messages, page path, source context, tier/model metadata, limited profile context, and explicit saved-object summaries when the user asks for them | USA/global under the API processing pathCommercial API and DPA status must be reviewed before regulated or institutional promises are made. |
| OpenAI | Semantic search and content-retrieval embeddings | Normalized user search or assistant query text, public indicator and content chunk text, and generated embedding vectors | USA/global under the API processing pathUsed for embedding generation; Anthropic remains the model provider for Marco assistant responses. |
| Stripe | Payments, subscriptions, invoicing, and customer portal | Email, name, billing address, payment-method tokens, invoice records, and subscription metadata | Global, with primary controls in the USAStripe tokenizes card details; Macro by Mark does not store full card numbers. |
| Resend | Transactional email | Email address, delivery metadata, and the message content needed for sign-in alerts, password flows, and notifications | USAPer-recipient throttles are used for sign-in alerts. |
| Cloudflare | Turnstile bot challenge and DNS | IP address, browser context, and challenge solve evidence | GlobalTurnstile handles bot-mitigation metadata, not product content. |
| OAuth identity provider and account-profile entity search | Email, name, profile picture URL, Google subject claim, and employer or organization, school, city, and selected country text typed into live profile search | GlobalOAuth scopes are limited to openid, email, and profile. Places queries use POST through an authenticated server proxy and are not logged, persisted, or cached by the proxy. School and city search remain feature-gated pending the applicable notice review. | |
| Trigger.dev | Background job runtime for ingestion and lab pipelines | Indicator catalog data, user UUIDs and lab/job metadata, lab run results, queue metadata, and job state | USA/global under the configured Trigger.dev workspaceUser identifiers and results are limited to the active job workflows that require them. |
| Tiger Cloud / Timescale | Time-series storage for the macroeconomic indicator discovery catalog | Public macroeconomic catalog metadata and observation rows | USA/global under the configured databaseUsed for public macro data, not platform-user PII. |
Review path
Vendor and privacy questions
Vendor-security and institutional procurement questions can be sent to security@macrobymark.com. Privacy and subprocessor questions can be sent to privacy@macrobymark.com.
主要参考
这些来源用于形成当前政策立场,列出它们是为了透明度;本页不因此构成法律意见。
相关政策
补充说明 Macro by Mark 信任与合规立场的其他页面。
隐私政策
说明浏览器存储、账户同步、关注列表、看板和运营遥测的处理方式。
Cookie 政策
必要 Cookie、可选分析、同意刷新和 Global Privacy Control 的处理。
隐私选择
导出、更正、删除、Cookie 控制、GPC 处理和人工请求路径。
使用条款
网站使用规则、非建议边界、知识产权范围和服务保护。
可接受使用政策
安全边界、自动化限制、制裁立场、来源使用规则和执行路径。
退款政策
订阅取消、默认不退款、试用转换审查和支持请求路径。
合同
DPA、MSA、订单表、安全审查、保险和机构买方请求路径。
版权
版权、署名、来源标注、下架、供应商权利和 DMCA 代理状态。
SOC 2 路径
当前未认证状态、已映射的运行手册、证据缺口和买方审查路径。
公开状态
人工事故沟通立场、跟踪的服务区域以及支持和安全渠道。
法律变更记录
法律、隐私、安全和信任政策更新的当前公开索引。
伦理与合规
来源透明、无背书立场、模型克制和研究诚信规则。
无障碍声明
无障碍立场、当前限制以及报告障碍或请求便利的方式。