Vendors
Minitu Vendor And Subprocessor List
Last updated: 2026-09-13
These vendors help Minitu provide the service. They process user data only as needed for hosting, database storage, email delivery, push notifications, media hosting, translation, subscription administration, support, safety, and legal compliance.
Current Vendors
| Vendor | Purpose | Data Categories | Status |
|---|---|---|---|
| Render | Backend hosting and service infrastructure. | Account data, profile data, messages, moderation data, sessions, optional-verification request and result records, operational logs, and API traffic needed to run Minitu. | Active production infrastructure. |
| PostgreSQL / managed database storage | Persistent database for accounts, profiles, chats, social state, reports, and app records. | Account, profile, user content, safety, moderation, notification, optional-verification consent and result records, a temporary reference frame only when human review is required, and operational data. | Active production database provider through the hosting environment. |
| Cloudflare R2 | Private object storage and short-lived delivery for photos and voice messages when enabled. | Uploaded photos, including approved profile photos later used for an optional face comparison, audio, object keys, content type, upload size, storage metadata, and short-lived signed delivery requests. | Preferred conditional media storage. Account deletion schedules deletion of owned R2 objects and retries provider failures. |
| Cloudinary | Photo and voice hosting, including legacy media, when Cloudinary upload settings are configured. | Uploaded images or audio, media URLs, public IDs, upload metadata, and configured folder paths. | Conditional and used for legacy or configured media. Account deletion schedules deletion of owned assets and retries provider failures. |
| AWS Rekognition | Automated profile photo safety checks plus optional Face Liveness and face comparison for profile verification. | Uploaded profile photos, a short video selfie streamed to AWS, a returned reference frame, liveness and face-match results, and request metadata needed to detect unsafe content, confirm liveness, reduce impersonation, and compare the user with approved profile photos. | Conditional for photo moderation and optional profile verification. AWS is the only provider that performs liveness detection, face comparison, or other biometric analysis. Face Liveness runs in AWS US East (N. Virginia). Minitu requests zero audit images and no S3 output. AWS session data becomes unavailable when the three-minute session expires. Minitu privately retains the reference frame only when human review is needed and deletes it after the review is resolved or cancelled, never later than 30 days after submission. An AWS Organizations content-use opt-out policy for Amazon Rekognition has been attached to the organization root since July 19, 2026. |
| Google Cloud Vision | Automated SafeSearch review of profile photos when configured. | Uploaded profile-photo image data, adult/racy/violence/medical likelihood signals, request metadata, and moderation result. | Conditional profile-photo moderation provider. Results may approve or hold content for human review. |
| Google Cloud Natural Language | Automated moderation of profile introductions when configured. | Selected profile text, moderation categories and confidence, language, and request metadata. | Conditional profile-text moderation provider. Local rules are used when this provider is not enabled. |
| Expo Push Notifications | Mobile push token registration and notification delivery. | Expo push token, device name, platform, language, notification payload metadata. | Used when a signed-in user enables notifications on a physical device. |
| Apple Push Notification service (APNs) | iOS push notification delivery through Expo and Apple systems. | Push token and notification payload metadata required for iOS delivery. | Conditional for iOS notifications. |
| Firebase Cloud Messaging (FCM) | Android push notification delivery where Expo uses FCM. | Push token and notification payload metadata required for Android delivery. | Conditional for Android notifications. |
| Apple Core Location / Android location services | Optional location autofill that converts the device's current location to a suggested city and country. | Current coordinates are accessed temporarily by the device and platform geocoder; Minitu receives the resulting city and country, not the coordinates. | Optional and permission-based. Users can enter city and country manually. |
| Resend | Email verification, password reset, and service email delivery. | Email address, verification/reset message metadata, and email delivery metadata. | Used when `RESEND_API_KEY` is configured. |
| Apple App Store | In-app purchase confirmation, billing, subscription management, storefront pricing, refunds, and Apple purchase records. | Apple Account and transaction information controlled by Apple; product, billing period, storefront, currency, price, purchase, renewal, cancellation, refund, billing-issue, and restore status shared as needed for the purchase flow. | Active for optional iOS subscriptions. Apple processes payment; Minitu does not receive full payment-card details. |
| RevenueCat | Subscription product retrieval, entitlement verification, purchase restoration, lifecycle synchronization, fraud prevention, support, and subscription analytics. | Internal Minitu customer identifier, RevenueCat anonymous identifiers or aliases, product and entitlement IDs, receipt or transaction information, purchase and expiration dates, renewal/cancellation/refund/billing status, storefront, currency, price, and limited SDK/device/app metadata. | Active for compatible subscription-enabled clients. Account deletion starts tracked customer-data deletion follow-up; Apple billing and Apple purchase records remain separate. |
| Meta / WhatsApp Business | Optional customer-support messaging initiated by the user. | Phone number, WhatsApp profile information, support messages, attachments voluntarily sent, and message metadata. | Used only when a person chooses the public WhatsApp support channel. Email support remains available. |
| Google Cloud Translation | Requested chat and profile translation, using configured NMT or Translation LLM models. | Selected message or profile text, source language, target language, translation result metadata, character-use counters, and request metadata. | Primary conditional translation provider when Google credentials are configured. |
| OpenAI | Fallback requested translation if OpenAI translation settings are configured. | Selected message or profile text, source language, target language, translation result metadata, and request metadata needed to return a translation. | Conditional fallback; not used when `OPENAI_API_KEY` and model settings are absent. |
| LibreTranslate | Fallback requested translation if a LibreTranslate endpoint and fallback routing are configured. | Selected message or profile text, source language, target language, optional API key, translation result metadata, and request metadata needed to return a translation. | Conditional fallback; not used when `LIBRETRANSLATE_URL` is absent. |
Not Currently Used
- No third-party advertising SDK was found in the current mobile dependency list.
- No analytics SDK such as Firebase Analytics, Mixpanel, Amplitude, or Segment was found in the current mobile dependency list.
- No crash reporting SDK such as Sentry or Firebase Crashlytics was found in the current mobile dependency list.
- Minitu does not directly collect or store full payment card details; Apple processes App Store payments.
Changes To This List
Minitu should update this page before adding any new vendor that receives personal data, user content, device identifiers, safety records, or support data. Privacy questions can be sent to privacy@minitu.app.