MomentumStorm
Trust and privacy

Subprocessor Notice

Last updated July 11, 2026. Momentum Support Co-operation LTD uses the subprocessors below to operate Momentum OS or to deliver features a customer chooses to enable. Each provider receives only the data reasonably required for its role. This notice supports our Data Processing Addendum at /dpa and Privacy Policy at /privacy-policy.

Effective date
July 11, 2026
Return homeOpen workspace

Core platform infrastructure

Provider and rolePurpose and dataPrimary data location
Application hosting and delivery (Vercel)Application hosting, deployment, content delivery, and serverless runtime.Global edge network, primary compute in EU/US regions
Managed database (Neon)Managed PostgreSQL storage of customer service data, account records, and configuration.EU or US region as provisioned
Cache and rate limiting (Upstash)Distributed Redis, counters, and rate-limiting for platform integrity, when enabled.EU or US region as provisioned

Feature-dependent and customer-enabled providers

Provider and rolePurpose and dataPrimary data location
Payment processing (Stripe)Subscription, billing, and payment processing. Full card details are handled by the provider, not stored in Momentum OS.US and EU
Telephony and messaging (Twilio, Telnyx)Voice, SMS, call metadata, recordings, and speech-to-text routing when telephony is configured.US/EU with global call routing
Realtime media (LiveKit)Meeting, media, and recording infrastructure, including participant identifiers and connection telemetry.Global, regional media servers
Email delivery (SendGrid)Transactional and notification email: sender/recipient addresses, content, and delivery events.US
AI and LLM providers (OpenAI, Groq)Prompt, selected CRM/communication context, and generated output when an AI workflow is enabled.US
Productivity integrations (Google, Microsoft)Customer-enabled identity, email, calendar, maps, or AI connections processing the data the customer selects.Global provider regions
Optional business integrations (Slack, Xero)Optional workspace messaging and accounting sync of the records the customer configures.US, plus provider regions (Xero: AU/US/EU)

How to read this notice

Core platform infrastructure processes data for every workspace. Feature-dependent providers receive customer data only when the related feature is configured and used; an optional integration that a customer has not connected receives no customer data.

Primary data location is indicative. Some providers operate globally and processing may occur in additional regions, in which case the transfer safeguards described in our Privacy Policy at /privacy-policy and Data Processing Addendum at /dpa apply. We do not publish confidential vendor contract terms here.

Changes and questions

We will publish material subprocessor changes through this notice with a reasonable opportunity to object. A customer with a reasonable, documented data-protection objection to a material change can contact leon@momentumos.co.uk.

The operator is Momentum Support Co-operation LTD, company 17078117, at 5 Brayford Square, London, E1 0SG, United Kingdom. Formal notices may be sent to leon@momentumos.co.uk, and general questions to info@momentumos.co.uk or by phone on +44 1263 808887.