Aextra Legal
Back to aextra.ai
Legal

Sub-processors

Last updated: 25 September 2026

These are the service providers each Aextra product uses. Each table is copied word for word from that product's Privacy Policy (VibeKit, Section 8; ReMail, Section 6). When a policy's provider list changes, this page is updated in the same change.

VibeKit

Provider Purpose
Cloudflare Hosting, edge compute, caching, databases, file storage, session infrastructure, usage analytics, sending of sign-in and alert emails (Email Sending), AI models (Workers AI), AI request routing (AI Gateway), and website screenshots (Browser Rendering)
Supabase Customer account sign-in and project records
Google Google sign-in (only where used); Gemini model for describing design-reference websites
Resend Our product-update list and onboarding emails; backup delivery of transactional email
Airtable The Customer's own data source, connected under credentials the Customer supplies and controls

Customers may also connect their own email provider (such as Resend, Postmark, SendGrid, or Cloudflare) to send sign-in emails for their application and, with Resend, to add form submitters to their own mailing lists, and their own hosting provider for deployments. Those providers act under the Customer's own account and terms.

ReMail

Provider Purpose
Cloudflare Hosting, edge compute, caching of images, encrypted credential storage, usage analytics, rate limiting, and sending of sign-in emails (Email Sending)
Supabase Account sign-in, project and template records, the send log, and logo storage
Google Google sign-in (only where used); Google Fonts
Resend Our product-update list and onboarding emails; backup delivery of sign-in emails
Airtable The Customer's own data source, connected under credentials the Customer supplies and controls

Customers' emails are delivered by Resend under the Customer's own Resend account, not ours. Resend's storage and handling of those emails is governed by the Customer's agreement with Resend.