Lemric Subprocessor List
Release 1 · Published 6 August 2026, 16:23
Status reviewed on: sixth August two thousand twenty six
This list distinguishes providers used in the confirmed production configuration from providers that receive personal data only after a related function is enabled. Questions and objections may be sent to privacy@lemric.com.
1. Active providers
Amazon Web Services
- Service: Simple Email Service
- Purpose: sending service, account and notification messages
- Data: recipient and sender addresses, message content, delivery metadata and technical records
- Location: region eu central 1
- Status: active in the production configuration
Cloudflare
- Service: R2 object storage
- Purpose: storing application encrypted attachments and exports
- Data: encrypted object content, scoped object identifiers and storage metadata
- Location: the exact storage location and contracting entity should be confirmed in the provider agreement
- Status: active in the production configuration
Flero hosting environment
- Service: production hosting infrastructure
- Purpose: running the application and its supporting production services
- Data: Customer content, account data and technical records needed to operate the service
- Location: requires confirmation before publication
- Status: the infrastructure name is confirmed, but the full legal provider name, contracting entity and data centre location require confirmation before publication
2. Conditional providers
Revolut Merchant
- Purpose: production payment processing
- Data: payer and organisation details, amount, currency, transaction reference and payment status
- Activation condition: production payments are enabled and the provider is configured
- Status: conditional
Google Analytics
- Purpose: optional website analytics
- Data: online identifiers, page and interaction data, device and browser information
- Activation condition: a measurement identifier is configured and the user accepts analytics
- Status: conditional and not described as currently active
iFirma
- Purpose: external invoice issuance and accounting exchange
- Data: Customer and buyer identification, billing details, document items, amounts and payment status
- Activation condition: iFirma is selected and configured as the invoice provider
- Status: conditional
3. Customer selected recipients
Jira and webhook destinations are selected and configured by the Customer. They receive only the content and metadata required by that configuration. They are recipients acting under the Customer’s instruction and are not permanent Lemric subprocessors.
4. Changes and objections
Lemric will give electronic notice before adding or replacing a subprocessor that will process entrusted Customer data, except where an urgent change is needed for security or continuity. The Customer may submit a specific objection based on data protection grounds to privacy@lemric.com within the period stated in the notice.
Provider legal names, contracting entities, processing locations and transfer safeguards must be verified against current contracts before this list is treated as final publication information.