All policies

Sub-processors

TapBerry · Effective 16 Aug 2026

These are the third parties that can touch data on our behalf. Each is bound to use it only to provide its service to us. The list is short because the stack is deliberately small.

1. Current sub-processors

ProviderWhat it doesData it can touchRegion
VercelHosts and serves the web applicationRequest data in transit, server logsMumbai (bom1), with a global edge network
RailwayRuns the API and the databaseAll application data at restAsia-Pacific
StripeTakes subscription payments from shopsShop owner billing contact and card details. No customer dataGlobal, per Stripe’s own terms
Apple (Wallet / APNs)Stores the pass on the customer’s device and delivers card updatesPass contents and the device push tokenApple’s global infrastructure
Google (Wallet)Stores the pass on the customer’s device and delivers card updatesPass contents and the device push tokenGoogle’s global infrastructure
Google PlacesLooks up shop addresses so nobody types one by handBusiness addresses only. No personal dataGoogle’s global infrastructure

2. What is deliberately absent

No advertising network, no data broker, no third-party analytics on customer-facing pages, and no CRM that ingests your customer list. Every one of those would have to appear on this list, and none of them earns its place.

3. Changes to this list

We add a provider to this page on the day it reaches production, not afterwards. Shop owners get email notice at least thirty days before a new sub-processor starts handling customer data, and can object — in practice that means telling us, and us finding another way or parting company fairly.

To be notified of changes, write to support@tapberry.io. How the underlying data is handled is in the Privacy Policy.

Questions about this policy: support@tapberry.io. Something wrong with your card or your shop: support.