Loading...
Loading...
Public registry of approved third-party vendors, foundation model APIs, and cloud infrastructure partners handling customer data under Amaris Brand Creation.
Last Reviewed: September 2026 • In Compliance with GDPR Art. 28
To deliver our high-speed Next.js web applications, AWI crawler engines, and autonomous AI Workforce, Amaris engages third-party specialized service providers ("Subprocessors"). Every subprocessor undergoes stringent security and privacy vetting, contractual binding under Standard Contractual Clauses (SCCs), and continuous compliance audits.
Edge serverless hosting, frontend Next.js routing, and static asset distribution
Standard Contractual Clauses (SCCs), SOC2 Type II
Managed PostgreSQL database, Row-Level Security, authentication, and encrypted storage
SCCs, SOC2 Type II, AES-256 Encryption at Rest
Serverless branching PostgreSQL clusters and read-replicas for analytical workloads
SOC2 Type II, ISO27001
Authoritative DNS, DDoS mitigation, Web Application Firewall (WAF), and CDN caching
ISO 27001, SOC2 Type II, PCI-DSS Level 1
Serverless Redis for distributed rate-limiting and temporary background task queues
SOC2 Type II, TLS In-Transit Encryption
Large language model inference (GPT-4o), multi-modal brand analysis, and vector embeddings
Zero-Data Retention Enterprise Agreement, SCCs
Deep reasoning, Claude 3.5 Sonnet analysis, code synthesis, and strategic planning
Zero-Model-Training Terms, SOC2 Type II
Cost-optimized agent coding tasks, specialized open-weights model inference
Enterprise API Agreement, Zero Training Retention
Ultra-low-latency LPU inference for real-time conversational streaming and telecaller prompts
SOC2 Type II, Ephemeral In-Memory Processing
Programmable SMS dispatch, phone number provisioning, and SIP voice carrier trunks
Binding Corporate Rules (BCRs), ISO 27001
Real-time automated speech recognition (ASR) and live audio transcription
SOC2 Type II, In-Memory Audio Processing
Transactional email delivery, invoice notifications, and password reset dispatches
SCCs, SOC2 Type II, DKIM/DMARC Pre-configured
International credit/debit card processing, recurring subscriptions, and invoicing
PCI-DSS Level 1 Service Provider, SCCs
Indian domestic payment gateway (UPI, Netbanking, Rupay, Corporate Wallets)
RBI Licensed Payment Aggregator, PCI-DSS Level 1
Domestic payment fallback, automated vendor payouts, and banking reconciliations
RBI Licensed Aggregator, PCI-DSS Level 1
Digital wallet processing for international clients and agency milestone disbursements
PCI-DSS Level 1, Global Banking Licenses
Cross-border multi-currency bank wire settlements (USD, EUR, GBP, AUD to INR)
FCA Authorized Electronic Money Institution
Product usage analytics, feature flag management, and aggregate session telemetry
SOC2 Type II, Anonymized IP Tracking
Application crash reporting, error monitoring, and frontend performance tracing
SOC2 Type II, Sensitive Field Masking
In accordance with our enterprise Data Processing Addendum (DPA), Amaris notifies enterprise subscribers at least thirty (30) days in advance before onboarding any new subprocessor that handles customer personal data. Enterprise subscribers maintain the right to object to new subprocessors on legitimate data protection grounds by contacting privacy@amarisbrand.com.
AMARIS BRAND CREATION OPC PVT LTD • Reg.No 117885
Vendor Privacy & Data Protection • Visakhapatnam, India • privacy@amarisbrand.com