Subprocessors and processing boundaries, without secret-content access.
Your secrets are not read, profiled, trained on, indexed, or retained beyond configured expiry. Support can help with billing cancellation, but cannot restore lost secrets or lost access.
01
Current subprocessors
Cloudflare provides the application infrastructure and security edge. Paddle acts as merchant of record for checkout, invoicing, taxes, customer billing references, and subscription portal flows. Resend is used for transactional email delivery when email OTP or system email delivery is enabled.
Cloudflare Workers, D1, R2, Access, Turnstile, API Shield
Paddle checkout and billing
Resend transactional email when configured
02
Secret-content boundary
Subprocessors are not used by Shhhs to read, profile, train on, index, sell, or recover plaintext secret content. Operational providers may process metadata needed to route requests, deliver email, protect the service, or process billing.
No AI processing on secrets
No plaintext secret support access
Retention follows TTL, views, burn, and cleanup
03
Optional Enterprise providers
Microsoft and Google integrations are only involved when an Enterprise customer connects its workspace. Those providers receive connector metadata and delivery targets required for the configured workflow, not secret plaintext from Shhhs.
Microsoft connector only when enabled
Google connector only when enabled
Connector tokens stored encrypted
04
Not currently used
Shhhs does not use MercadoPago for billing and does not use AI vendors to process customer secret content.
No MercadoPago
No AI subprocessors for secrets
No secret-content analytics provider
FAQ
Does Shhhs process secrets with AI?
No. There is no AI processing on secret content.
Can Shhhs recover a secret?
No. Secret recovery would weaken the privacy model.
What can support recover?
Support can help cancel billing after billing validation, but cannot restore account access or secret content.