Subprocessors

Every company that receives data from KANJIN, what each one gets, and where it runs. If a company is not on this list, it does not receive anything.

Last updated 1 September 2026

The list

CompanyWhat it doesWhat reaches itWhere
SupabaseThe database and the sign-in behind the shared customer card.Everything the shared card holds: a customer’s phone number, and their name, email address and birthday when they gave one, plus their visits and rewards.The region chosen for the project. See the note under this table.
VercelRuns the website and the back office.Whatever a browser sends to load a page: the address requested, an IP address, and the request headers. Customer records pass through in transit and are not stored there.Edge locations worldwide, with the application in a chosen region.
ResendDelivers the shop’s emails.The recipient’s email address and first name, and the message itself, for every promotional email and review request a shop sends.United States.
AnthropicDrafts replies to reviews, and the creator invitation, when a shop asks it to.The text of the review being replied to, and the shop’s own words. The reviewer’s name is included only because it is part of the review. No customer list is ever sent.United States.
Brave SearchFinds local Instagram creators.A city and a kind of business. No customer data of any kind.United States.
Google (YouTube Data API)Finds local YouTube creators.A city, a radius and a search term. No customer data of any kind.United States and worldwide.
Google (Business Profile)Reads a shop’s reviews and posts its replies, when a shop connects it.The shop’s own Google account authorisation, and the reply it chose to publish.United States and worldwide.
MET NorwayThe weather forecast behind the rainy-day email.A latitude and longitude for the shop. Nothing about any customer.Norway.
Open-MeteoTurns a place name into coordinates, and reads last year’s weather.A place name, or a latitude and longitude. Nothing about any customer.Germany.

Where the database lives

The shared customer card is stored in one Supabase region, chosen when the project was created. A shop whose own rules require its customers' data to stay inside a particular country or area should write to us before switching the shared card on, so we can tell you which region this project uses and whether it suits you.

Payments

No payment provider is listed because nothing is charged yet. When billing opens, the provider is added to this list before the first payment is taken, and this page keeps its history.

Changes

If a company that receives customer data is added to this list, shops are told before it starts. Removing one needs no notice, because a supplier that no longer receives anything is not a change a shop needs to act on.

The agreement these suppliers sit under is the data processing agreement, and what we collect at all is in the privacy policy.