Vendor Transparency

Our Stack

ThirdProof practices what it preaches. Every vendor we use has been evaluated through our own investigation pipeline.

Vercel

Approved
vercel.com

Application hosting & CDN

Data Access

Application code, build artifacts

SOC 2 Type IIGDPR

Supabase

Approved
supabase.com

Database, authentication & storage

Data Access

All application data, user credentials

SOC 2 Type IIHIPAA eligible

Anthropic

Approved
anthropic.com

AI synthesis engine (Claude)

Data Access

Vendor investigation data (public sources only)

SOC 2 Type II

Calendly

Approved
calendly.com

Demo scheduling

Data Access

Name, email for meeting invites

SOC 2 Type II

Stripe

Approved
stripe.com

Payment processing

Data Access

Billing information, payment methods

SOC 2 Type IIPCI DSS Level 1

Loops

Approved
loops.so

Transactional email

Data Access

Email addresses, notification content

SOC 2 Type II

Google Fonts

Approved
fonts.google.com

Typography (CDN)

Data Access

None — public CDN, no user data

Want this level of transparency
for your vendor program?

ThirdProof investigates your vendors the same way we investigate ours. Evidence-backed, auditor-ready, regularly reviewed.

Start Free Trial →