What Are Subprocessors?

Subprocessors are third-party companies that process data on behalf of Cocovox to provide specific services. We carefully vet all subprocessors to ensure they meet our strict privacy and security standards, especially for children's data under COPPA and FERPA.

Processor Registry

This table is generated from the repo-managed processor registry used for diligence and public disclosures.

ProcessorPurposeData sentRetentionDPA status
AnthropicPrimary conversational AI for tutoring, explanations, and adaptive responsesLearner prompts, model instructions, and structured learning context. Direct identifiers are reduced where the application flow allows, but message content can still contain learner-provided information.API processing via Cocovox backend; investor-facing DPA status tracked in repo metadata, not in this public page.Tracked outside the repo
OpenAIFallback transcription and alternative model processingFallback transcription can temporarily handle raw audio server-side before submission. Some flows also send conversation text and structured context.Temporary server-side files may exist during fallback processing; derived transcripts can persist in Cocovox records after raw audio is removed.Tracked outside the repo
ElevenLabsSpeech-to-text and text-to-speech processingVoice flows can send raw audio for speech processing and text for voice synthesis. Cocovox may persist transcripts and derived note artifacts even when raw audio is not intentionally retained.Raw audio is intended to be ephemeral in Cocovox processing paths, but transcript and note artifacts can persist under the account retention rules.Tracked outside the repo
DigitalOceanApplication, database, and storage hostingPrimary platform hosting for stored learner and parent data.Data persists according to Cocovox retention rules until deleted or aged out.Tracked outside the repo
SendGridTransactional email delivery for verification and parent noticesParent, teacher, and account-holder contact details plus message content needed to deliver notices.Delivery logs retained under provider settings and Cocovox operational needs.Tracked outside the repo
StripeCredit-card verification for verifiable parental consentParent verification requests use Stripe payment method details for low-value authorization and identity verification.Verification artifacts retained according to Cocovox audit needs and Stripe account settings.Tracked outside the repo
Google OAuthOptional sign-in and identity federationOnly account identity fields needed for optional OAuth login.Identity data persists with the Cocovox account until deleted.Tracked outside the repo

AI Service Providers

These companies power our AI tutoring features:

Anthropic (Claude AI)

Primary AI
PurposePrimary conversational AI for tutoring interactions
Data SharedUser messages, prompts, and chat context
Data RetentionZero data retention - processed and immediately deleted
LocationUnited States
Designed for COPPAYes (with parental consent for under 13)
Privacy Policyanthropic.com/privacy

OpenAI

Alternative AI
PurposeAlternative AI model and speech-to-text transcription (Whisper API)
Data SharedUser messages, audio recordings (when voice features are used)
Data RetentionZero data retention - API calls opted out of training
LocationUnited States
Designed for COPPAYes (with parental consent for under 13)
Privacy Policyopenai.com/privacy

ElevenLabs

Audio
PurposeText-to-speech voice synthesis for audio responses
Data SharedText responses to be converted to audio
Data RetentionProcessed in real-time, no persistent storage
LocationUnited States
Children's DataNot used for children under 13 without explicit parental consent
Privacy Policyelevenlabs.io/privacy

Infrastructure and Hosting

Services that host and secure our platform:

DigitalOcean

Hosting
PurposeCloud infrastructure hosting for application servers and database
Data StoredAll user data, including accounts, messages, and learning progress
LocationUnited States (configurable by region)
SecuritySOC 2 Type II certified, encrypted at rest and in transit
Privacy Policydigitalocean.com/legal/privacy-policy

Authentication Services

Optional third-party login providers:

Google OAuth

Optional
PurposeOptional "Sign in with Google" authentication
Data SharedEmail address, name, profile picture (if you choose to use Google sign-in)
LocationUnited States
NoteThis is entirely optional - users can create accounts with email/password instead
Privacy Policypolicies.google.com/privacy

Email Services

Services used for transactional email delivery:

SendGrid (Twilio)

Email Delivery
PurposeTransactional email delivery for account verification, parental consent requests, and notifications
Data SharedEmail addresses, recipient names (within email content)
Data RetentionEmail logs retained for 30 days per Twilio's data retention policy
LocationUnited States
Designed for COPPAYes - processes parent email addresses for COPPA consent verification only
Privacy Policytwilio.com/legal/privacy

What We DON'T Use

For transparency, here are common third-party services we explicitly do not use:

  • ❌ Advertising networks (Google Ads, Facebook Pixel, etc.)
  • ❌ Data brokers or marketing companies
  • ❌ Analytics trackers for children under 13
  • ❌ Social media tracking pixels
  • ❌ Email marketing platforms (we send operational emails only)
  • ❌ Cross-site tracking or behavioral advertising tools

Updates to This List

We will update this page whenever we add, remove, or change subprocessors. Significant changes will be communicated via email to account holders.

If you have questions about our subprocessors or data processing, please contact us at support@cocovox.ai