| Subprocessor | Purpose | Data processed | Location | PHI |
|---|---|---|---|---|
| Amazon Web Services (AWS) | Cloud hosting, database, authentication, and infrastructure | All practice and patient data, account credentials | United States | Yes |
| Retell AI | Voice AI — speech recognition, language processing, and speech synthesis for inbound calls | Call audio, transcripts, caller phone numbers and names | United States | Yes |
| NexHealth | Practice management system integration for real-time scheduling | Appointment details, patient names, provider assignments | United States | Yes |
| Google Workspace | Business email for customer support correspondence | Email content sent to or from Aide support addresses | United States | Yes |
| Stripe | Payment processing for practice subscriptions | Practice billing details — never patient data | United States | No |
| Resend | Transactional and account email — verification codes, password resets, contact form, billing/trial notices, and a daily call-and-appointment recap | Practice owner email address; for the daily recap, call counts, appointment times, and service types — never patient names | United States | No |
| Cloudflare | Bot and fraud protection on login, signup, and password reset forms | None — a pass/fail verification token only | Global | No |
| Google Maps Platform | Address autocomplete while entering practice information during onboarding and in Settings | The practice's own business address as it's typed — never patient data | United States | No |
How subprocessors are added
Aide only engages a new subprocessor for a service that touches Protected Health Information after executing a Business Associate Agreement with that vendor. This page is updated whenever our subprocessor list changes. Questions about a specific subprocessor, or requests to be notified of changes, can be sent to support@useaide.app.