Field Wizard — Subprocessors
Last reviewed: 2026-08-09 Next review: 2026-11-09 (quarterly, and on any addition)
This page lists every third party that stores or processes customer data on behalf of Field Wizard (gofieldwizard.com).
How to read the "Enabled" column:
- Always — part of the core service. Every account's data touches it.
- Optional — only processes data if you turn the feature on or connect the
integration. If you never enable it, it never sees your data.
- Planned — not in use yet. Listed so this page stays honest as we migrate.
We do not sell customer data. We do not share it with anyone outside this list, except where we are legally compelled to.
Core subprocessors (always in use)
| Provider | Purpose | Data categories processed | Region | Security / compliance page |
|---|---|---|---|---|
| Railway | Application hosting. Runs the API and the web frontend, and holds the persistent volume where uploaded files currently live. | All application data in transit through the app; uploaded files (job photos, signatures, attached documents) at rest on the volume; application logs. | United States | https://railway.com/legal/dpa · https://railway.com/security |
| MongoDB Atlas (MongoDB, Inc.) | Primary database. Everything the product stores. | Account and user records (name, email, bcrypt password hash, role), company records, customers/accounts, jobs, form templates and submissions, invoices, estimates, employee records, inventory, timesheets, audit logs, upload metadata, GPS coordinates attached to captured photos. | United States (cluster region chosen at provisioning; currently US East) | https://www.mongodb.com/cloud/trust · SOC 2 Type II available under NDA |
| Cloudflare | DNS, TLS termination, CDN, DDoS protection. Traffic passes through the edge; Cloudflare does not store application data. R2 object storage additionally holds uploaded files (see the note below this table). | Request metadata in transit: IP addresses, user agents, requested URLs. Cached static assets. In R2: job photos, captured signatures, attached PDFs and documents. | Global edge network; R2 objects in the United States | https://www.cloudflare.com/trust-hub/ |
| Resend | Transactional email: verification, password reset, portal magic links, invoice and estimate delivery, notifications. | Recipient email address, recipient name, and the content of the message — which can include job details, invoice amounts, and links to customer-facing documents. | United States | https://resend.com/legal/dpa · https://resend.com/security |
| GitHub (Microsoft) | Source code hosting and CI. Holds application source, not customer data. | Source code and CI logs. No production customer data. Test runs use a throwaway database. | United States | https://github.com/security · SOC 2 Type II available |
(GitHub is listed for completeness even though it does not process customer data, because enterprise reviewers ask where the code lives.)
Note on Cloudflare R2 (object storage), live since 2026-08-13. Uploaded files — job photos, signatures, attached documents — are written to a private R2 bucket rather than to the hosting volume. Objects are private by default, reachable only through the application, which checks that the file belongs to your company before serving a byte. The credential used is scoped to that one bucket with read/write access and nothing else.
R2 was chosen over Amazon S3 deliberately: Cloudflare already handles our DNS, TLS and CDN, so using their object storage adds no new company to this page — one fewer party with access to customer data, not one more.
Two things are still in progress and are stated here rather than glossed: files uploaded before this date remain on the hosting volume until a one-time migration runs (both locations are private and access-controlled; the application serves each file from wherever it actually lives), and object versioning is not yet enabled, so an accidental deletion is not yet recoverable from a prior version. our security overview §12 tracks both.
Optional subprocessors (only if you enable the feature)
| Provider | Purpose | Data categories processed | Region | Security / compliance page | Enabled |
|---|---|---|---|---|---|
| Stripe | Subscription billing and payment processing for your Field Wizard subscription, and customer-facing payment links. | Billing contact name and email, company name, subscription and plan state, payment method details. Card numbers go directly to Stripe and never touch Field Wizard servers. We store only Stripe's identifiers and subscription status. | United States (global processing) | https://stripe.com/docs/security · PCI DSS Level 1, SOC 1 & SOC 2 | Optional — only when billing is configured. Until then the billing UI states plainly that payments are not enabled. |
| Twilio | Outbound SMS to technicians and customers (job notifications, appointment reminders). | Recipient phone number and message body, which can include customer name, address, and appointment time. | United States | https://www.twilio.com/en-us/legal/security-overview · SOC 2 Type II, ISO 27001 | Optional — only when SMS credentials are configured. |
| Anthropic | The in-app AI assistant. Powers natural-language help and form/data assistance (model: Claude Haiku). | Only the content of the conversation you have with the assistant, plus whatever business context that specific request requires. Not your whole database. Anthropic's commercial terms state that API inputs and outputs are not used to train models. | United States | https://trust.anthropic.com · https://www.anthropic.com/legal/commercial-terms | Optional — only when an Anthropic API key is configured. Per-company AI spend budgets are enforced. |
| Intuit (QuickBooks Online) | Accounting integration. Pushes invoices and estimates to QuickBooks and pulls payment status back so invoices settled there close in Field Wizard. | Customer name and contact details, invoice and estimate line items and totals, payment status. Only for records you sync. | United States | https://security.intuit.com/ · SOC 2 | Optional — only after you connect your own QuickBooks account via OAuth. You can disconnect at any time. |
| Google (Gmail SMTP) | Fallback transactional email path, used only if Resend is not configured. | Same as Resend: recipient address and message content. | United States | https://cloud.google.com/security/compliance | Optional / fallback — Resend is the primary provider. |
| Sentry (Functional Software, Inc.) | Application error tracking. | Stack traces, request paths, and error context. May incidentally include a user id or email present in an error. Not business records. | United States | https://sentry.io/security/ · SOC 2 Type II | Optional — only when a Sentry DSN is configured. |
| Web Push (browser vendors) | Delivering push notifications to browsers and devices that opted in. | Notification title and body, delivered via the push endpoint your browser vendor provides (Google, Apple, or Mozilla). | Varies by vendor | Vendor-specific | Optional — only for users who grant notification permission. |
Planned subprocessors (supported in the product, not yet switched on)
| Provider | Purpose | Data categories that will be processed | Region | Security / compliance page | Status |
|---|
(This section is empty: everything the product supports is now either in use above or listed as optional. It stays here so a future addition has an honest place to be declared before it goes live.)
Notice of changes
We will update this page before a new subprocessor begins processing customer data, and we will give 30 days' advance notice by email to account holders before adding a subprocessor that handles customer-confidential data.
If you object to a new subprocessor within that window, contact privacy@gofieldwizard.com. Your practical remedy is to export your data (a one-click, no-fee, full export is built into the product) and terminate, with a prorated refund of any prepaid unused period.
Questions
- Security questions: security@gofieldwizard.com
- Privacy and DPA requests: privacy@gofieldwizard.com
Related: our security overview · our data-retention schedule · our Privacy Policy
Questions about this document
Email Support@gofieldwizard.com and a person will answer. Our security controls and subprocessor list are published at the Trust Center.