Subprocessors
Effective date: August 26, 2026 · Last updated: August 26, 2026
About this page
7 Degrees Co. uses the third parties listed below to help deliver our warehousing and fulfillment services. Each acts on our instructions, receives only the data its function requires, and is bound to use it solely for that purpose.
This page supplements our Privacy Policy and Terms of Service. We maintain it as our current register and update it when providers change.
1. Platform infrastructure
Used for every Client and every workflow.
| Provider | Purpose | Data received | Location |
|---|---|---|---|
| Supabase | Database hosting and user authentication | All platform data, including account records and shipment recipient details | United States |
| Vercel | Application hosting and delivery | Data in transit through the application; request logs | United States |
| Amazon Web Services (SES) | Transactional email delivery | Recipient email address and message contents for invitations, password resets, order alerts, and stock notifications | United States |
| Upstash | Caching and rate limiting | Short-lived operational keys; no shipment recipient data | United States |
2. Shipping carriers
Which carriers receive shipment data depends on the workflow. We operate two distinct fulfillment paths, and they route to different recipients.
Alcohol and licensed products
Alcohol and other age-restricted or licensed shipments are handled exclusively on the 7 Degrees FedEx account, which holds the alcohol shipping license required for this service. These shipments are not rate-shopped across carriers.
| Provider | Purpose | Data received | Location |
|---|---|---|---|
| FedEx | Sole carrier for alcohol and other licensed or age-restricted shipments, using the 7 Degrees alcohol shipping license | Recipient name, address, phone, email; package weight and dimensions; adult-signature requirement | United States |
Standard (non-alcohol) products
Non-alcohol parcel shipments are rate-shopped at label time across the carriers available on our account. The carrier that ultimately receives the shipment data is the one selected for that shipment.
| Provider | Purpose | Data received | Location |
|---|---|---|---|
| ShipStation | Multi-carrier rate shopping and label generation for non-alcohol parcel shipments | Recipient name, address, phone, email; package weight and dimensions | United States |
| FedEx | Direct carrier services for non-alcohol shipments routed to FedEx | Recipient name, address, phone, email; package weight and dimensions | United States |
| Carriers selected at label time | Where rate shopping selects a carrier other than FedEx, that carrier receives the shipment details needed to deliver and to provide tracking | Recipient name, address, phone, email; package weight and dimensions | United States |
3. Client-enabled integrations
These are active only where an individual Client authorizes the connection. A Client that does not connect a given service does not have data shared with it.
| Provider | Purpose | Data received | Location |
|---|---|---|---|
| Shopify | Sales channel integration. Active only where a Client connects a Shopify store | Order, product, inventory, and fulfillment data for that Client's store, including recipient details on synced orders | United States / Canada |
| Intuit QuickBooks | Accounting integration. Active only where a Client enables it | Invoice, billing, and expense records; billing contact details. No shipment recipient data | United States |
4. Other third-party resources
One internal warehouse screen loads a barcode-rendering library from the public jsDelivr CDN when staff generate sublocation labels. The CDN receives the request metadata inherent to loading a file, including the staff device IP address. No Client data, order data, or shipment recipient data is sent to it.
We use no analytics, advertising, or user-tracking services, and we set no advertising cookies.
5. Changes to this list
We update this page when a provider is added, removed, or replaced. Clients entitled to advance notice of subprocessor changes should refer to their data processing agreement with us.
Change history
| Date | Change |
|---|---|
| August 26, 2026 | Initial published register. |
6. Questions
Questions about this list, or requests for advance notice of changes: info@ship7degrees.com