Last Updated: September 16, 2026
KickoffLabs uses the third-party service providers below to Process Customer Personal Data on behalf of customers as described in the Data Processing Addendum (“DPA”). A provider only receives the data reasonably necessary for the applicable service or feature. Some providers are used only when a customer enables a particular feature.
Capitalized terms not defined on this page have the meanings in the DPA.
| Provider | Purpose | Customer Personal Data involved |
|---|---|---|
| Amazon Web Services (AWS) | Cloud infrastructure, asset storage, backups, content delivery, and email delivery | Service data, uploaded assets, message content and recipient details, logs, and backups |
| Heroku (Salesforce) | Application hosting, managed databases, and related infrastructure | Account configuration, campaign data, lead and entrant data, application logs, and service metadata |
| Elastic | Search and analytics within the Services | Lead and entrant records, campaign identifiers, and searchable custom fields |
| Twilio, including SendGrid | Email delivery, message events, and optional SMS verification or messaging | Names, email addresses, telephone numbers when enabled, message content, delivery events, and campaign identifiers |
| Postmark (ActiveCampaign) | Transactional email delivery | Email addresses, message content, and delivery metadata |
| Sentry (Functional Software) | Error monitoring, diagnostics, and incident response | Application errors, request and device metadata, IP addresses, and limited identifiers that may appear in diagnostic context |
| Help Scout | Customer support and support-request management | Contact information, support communications, and Customer Personal Data included in a support request |
| Bunny.net (BunnyWay) | Content delivery and delivery of published campaign assets | Published campaign assets, IP addresses, and request metadata |
| IP-API.com (Artia International) | Approximate IP geolocation, fraud prevention, and campaign analytics | IP addresses and derived approximate location and network information |
| OpenAI | Optional AI-assisted campaign and content generation | Prompts, campaign descriptions, page content, and other information a customer submits to an AI feature |
| Anthropic | Optional AI-assisted campaign and content generation | Prompts, campaign descriptions, page content, and other information a customer submits to an AI feature |
Customer-directed integrations
When Customer connects the Services to a third-party integration—such as an email platform, ecommerce platform, CRM, webhook destination, or Customer’s own Twilio or SendGrid account—Customer instructs KickoffLabs to send data to that third party. Those third parties are not KickoffLabs Subprocessors when they Process the data under Customer’s direct agreement and instructions. Customer is responsible for evaluating and authorizing those integrations.
Providers that process KickoffLabs account data
KickoffLabs also uses providers for billing, business communications, website analytics, advertising, and similar business operations. When those providers Process account, billing, or website data for KickoffLabs’ own purposes rather than Customer Personal Data on Customer’s behalf, they are governed by the Privacy Policy and are not Subprocessors under the DPA.
Changes and objections
KickoffLabs will provide notice of a new Subprocessor and an opportunity to object as described in Section 7 of the DPA. Questions or objections may be sent to support@kickofflabs.com.