These are the vendors that process personal data on behalf of our customers — the ones where a customer is the controller and we are the processor. Each is bound by contract to handle that information only on our instructions.
The list is separated by product, because the products do not share a vendor set: a Minute7 customer's data never reaches PostHog, and a TimerDB customer's data never reaches Sentry. A single combined list would tell every customer they were exposed to vendors they are not.
Vendors we use for our own marketing and sales — where we are the controller rather than the processor — are not sub-processors and are not listed here. They are described in section 3.1 of the privacy policy, together with the opt-out.
TimerDB and Hour Timesheet
The current platform, on either brand. This is the list referenced by section 4 of the privacy policy.
Amazon Web Services
- Purpose
- Hosting, storage, and transactional email (SES)
- Location
- United States
- Data Processed
- All customer data, encrypted at rest
- Safeguards
- SCCs, Data Processing Addendum
Intuit (QuickBooks Online / Desktop)
- Purpose
- Accounting integration, where a customer enables it
- Location
- United States
- Data Processed
- Time, expense and payroll data the customer chooses to sync
- Safeguards
- Data Processing Addendum
Gusto
- Purpose
- Payroll integration, where a customer enables it
- Location
- United States
- Data Processed
- Employee, compensation and tax data the customer chooses to sync
- Safeguards
- Data Processing Addendum
Stripe
- Purpose
- Subscription billing
- Location
- United States
- Data Processed
- Billing contact and payment details. Card numbers go directly to Stripe and are never held by us
- Safeguards
- SCCs, PCI DSS Level 1
Datadog
- Purpose
- Application monitoring and error diagnosis
- Location
- United States
- Data Processed
- Application logs, traces and performance data
- Safeguards
- SCCs, SOC 2 Type II attestation
PostHog
- Purpose
- Feature rollout control
- Location
- United States
- Data Processed
- Which company a feature evaluation is for. Evaluated on our servers
- Safeguards
- Data Processing Addendum
Anthropic
- Purpose
- Reading a receipt submitted for reading (privacy policy §3.4). Off by default; only for companies that enable it
- Location
- United States
- Data Processed
- The receipt image itself — merchant, amount, date, and commonly a cardholder name and the last four digits of a card. Only receipts a person deliberately submits for reading; there is no background scanning, and attaching a receipt to an expense the ordinary way does not send it. Terms do not permit training on the data
- Safeguards
- Data Processing Addendum, no-training terms
Google (Gemini)
- Purpose
- Configured alternative provider for the same receipt reading, under the same conditions
- Location
- United States
- Data Processed
- The same receipt images. Which provider runs is one platform-wide setting; Anthropic is the current default
- Safeguards
- Data Processing Addendum, no-training terms
Zendesk
- Purpose
- Customer support
- Location
- United States
- Data Processed
- Your name, email address, and whatever you describe or attach in a request
- Safeguards
- Data Processing Addendum
Google Calendar / Microsoft 365
- Purpose
- Calendar-derived timekeeping (privacy policy §2)
- Location
- United States
- Data Processed
- Calendar events for employees who connect a calendar. NOT ENABLED in production — listed here in advance rather than after the fact
- Safeguards
- Read-only OAuth scopes, Google API Services User Data Policy (Limited Use)
Hour Timesheet 1.0 (legacy)
The earlier platform, still serving customers who have not migrated. Some customers run on both at once during a migration, in which case both lists apply.
Amazon Web Services
- Purpose
- Hosting and transactional email (SES)
- Location
- United States
- Data Processed
- All customer data
- Safeguards
- SCCs, Data Processing Addendum
MongoDB Atlas
- Purpose
- Primary datastore
- Location
- United States
- Data Processed
- All customer data held by the legacy platform
- Safeguards
- Data Processing Addendum, encryption at rest
Intuit (QuickBooks)
- Purpose
- Accounting integration
- Location
- United States
- Data Processed
- Time and payroll data the customer chooses to sync
- Safeguards
- Data Processing Addendum
Stripe
- Purpose
- Billing
- Location
- United States
- Data Processed
- Billing contact and payment details
- Safeguards
- SCCs, PCI DSS Level 1
Kickbox
- Purpose
- Checking whether an employee email address is deliverable
- Location
- United States
- Data Processed
- Employee email addresses
- Safeguards
- Data Processing Addendum
Zendesk
- Purpose
- Customer support
- Location
- United States
- Data Processed
- Your name, email address, and the content of a support request
- Safeguards
- Data Processing Addendum
Datadog
- Purpose
- Application monitoring
- Location
- United States
- Data Processed
- Application logs and performance data
- Safeguards
- SCCs, SOC 2 Type II attestation
Minute7 (legacy)
The Minute7 product, still serving customers who have not migrated.
Amazon Web Services
- Purpose
- Hosting and transactional email (SES)
- Location
- United States
- Data Processed
- All customer data
- Safeguards
- SCCs, Data Processing Addendum
Intuit (QuickBooks)
- Purpose
- Accounting integration
- Location
- United States
- Data Processed
- Time and expense data the customer chooses to sync
- Safeguards
- Data Processing Addendum
Stripe
- Purpose
- Billing
- Location
- United States
- Data Processed
- Billing contact and payment details
- Safeguards
- SCCs, PCI DSS Level 1
Twilio
- Purpose
- SMS to a newly created user
- Location
- United States
- Data Processed
- Mobile number and the contents of the message sent to it
- Safeguards
- Data Processing Addendum
Sentry
- Purpose
- Error tracking
- Location
- United States
- Data Processed
- Diagnostic data captured at the moment of an error, which on this product is configured to include user identifiers
- Safeguards
- Data Processing Addendum
Zendesk
- Purpose
- Customer support
- Location
- United States
- Data Processed
- Your name, email address, and the content of a support request
- Safeguards
- Data Processing Addendum
GoodHelp
A separate product with its own privacy policy. Listed here so this page covers every LMNTL product rather than only the timekeeping ones.
Google Cloud Platform / Firebase
- Purpose
- Hosting, authentication and datastore
- Location
- United States
- Data Processed
- All customer data
- Safeguards
- SCCs, Data Processing Addendum
OpenAI
- Purpose
- Language and transcription models
- Location
- United States
- Data Processed
- Content you submit for generation or transcription
- Safeguards
- Data Processing Addendum, no-training terms
Anthropic
- Purpose
- Language models
- Location
- United States
- Data Processed
- Content you submit for generation
- Safeguards
- Data Processing Addendum, no-training terms
SendGrid (Twilio)
- Purpose
- Outbound email and inbound email parsing
- Location
- United States
- Data Processed
- Email addresses and message bodies
- Safeguards
- Data Processing Addendum
Connected accounts you authorise
- Purpose
- Google Analytics, Search Console, Business Profile, Calendar, YouTube and Drive, where you connect them
- Location
- United States
- Data Processed
- Only the data covered by the permissions you granted, revocable at any time
- Safeguards
- OAuth, Google API Services User Data Policy (Limited Use)
Media, search and workflow providers
- Purpose
- Image and video generation, web search and retrieval, and workflow orchestration in support of the features you use
- Location
- United States
- Data Processed
- Prompts and generated content. The retrieval providers read public web pages and are not sent customer personal data
- Safeguards
- Data Processing Addendum
Changes, and your right to object
We will give customers at least 30 days' notice by email, to the account's billing and administrative contacts, before a new sub-processor begins processing customer data. Notice goes to those contacts directly — you do not have to subscribe to anything or watch this page to receive it.
You may object to a new sub-processor within that 30-day window by writing to privacy@lmntl.ai. Tell us which sub-processor and what your concern is. We will work with you to resolve it — for example by changing how the vendor is used, or by excluding your data from it where the feature allows. If we cannot resolve it, you may terminate the affected part of the service without penalty for the remainder of your term.
Where your agreement with us includes a data processing agreement, its terms govern if they differ from this page.
Stay in touch
General updates from LMNTL. Contractual notice of a sub-processor change is sent to your account contacts by email — it does not depend on this list.
Stay Updated
Get the latest insights on time tracking and compliance delivered to your inbox.