1. Scope
IRIS Systems LLC uses service providers to operate ForgeSystems. Not every provider receives every customer’s data. Processing depends on enabled widgets, integrations, customer instructions, deployment configuration, and the type of data involved.
2. Core Platform Providers
- Netlify: application hosting, content delivery, request handling, and serverless execution.
- Supabase: database, authentication, storage, and related platform infrastructure.
- Amazon Web Services: infrastructure or email-delivery services where configured.
3. Communications Providers
- SendGrid: transactional and campaign email delivery, status events, and suppression handling where enabled.
- Twilio: SMS, phone-number, delivery, consent, and messaging-compliance services where enabled.
- Google: Gmail, OAuth, calendar, identity, and related Google Workspace integration processing when a customer connects those services.
4. Payments and Commerce
- Stripe: payment processing, billing, connected-account, and transaction services where enabled.
- Shopify: ShopForge installation, merchant authorization, product, inventory, storefront, selling-plan, checkout, and shipping-related processing where enabled.
5. AI Providers
OpenAI, Anthropic, Google, or another disclosed model provider may process prompts and content only when an AI-enabled workflow is invoked and configured to use that provider. Customers should not submit regulated or unusually sensitive data to an AI workflow unless the feature and applicable agreement expressly support it.
6. Changes and Questions
We may add or replace providers as services evolve. Material changes affecting customer personal data will be handled under the applicable agreement and Data Processing Addendum. Questions may be sent to support@forgesystems.io.
Operational publication prepared for licensed-attorney review. Provider contracts, regions, and transfer mechanisms require final counsel and vendor review.