Loading Lithora...
Please wait
Loading Lithora...
Please wait
Last reviewed 12 August 2026
Every third party that processes customer data on Lithora's behalf, what each one receives, why, and where it runs. Published so a security reviewer can read it without an account.
This page — lithora.app/subprocessors— is the public, authoritative copy of the register, reconciled against the services the running system actually calls. If any other listing of Lithora’s sub-processors differs from it, this page governs.
When you use Lithora, you are the controller of the content in your workspace and we are your processor. A sub-processoris a company we engage to help us provide the Service, which necessarily handles some of that data. Everyone below is bound by a written data processing agreement, and transfers out of the EEA or UK rely on the European Commission’s Standard Contractual Clauses.
Each entry says where the service is configured to run. That is a statement of fact about our deployment, not a contractual residency guarantee — see section 7.
Engaged for every customer. Lithora cannot run without these.
MongoDB, Inc.
Amazon Web Services, Inc.
There is no background or automatic transcription: a job starts only from an explicit request naming one file, and the request is refused unless that file sits under your own team or user prefix in our bucket, so it can never be pointed at anyone else’s material. The resulting transcript is then summarised by Amazon Bedrock — the row below. Lithora captures no audio by itself, but it is not true that the product cannot record: the chat voice note does, when you press record. That audio is stored here under its own prefix, which is outside the prefixes transcription will accept, so it is never sent to Amazon Transcribe.
Amazon Web Services, Inc.
Engaged only when you or a teammate uses the feature named.
Amazon Web Services, Inc.
AWS states that Bedrock does not store inference inputs or outputs once the request is served, does not use them to train any model, and does not share them with the model provider. Lithora does not train models on your content either.
8x8, Inc. — meet.jit.si
Lithora does not record calls: nothing in the product starts, stores or exposes a recording of one, and where the server mints a join token it sets recording, livestreaming and transcription to false. The row is kept rather than deleted because the fallback is one unset environment variable away. Separately, if you record a call by your own means and put the file in your Lithora storage, you can ask us to transcribe it — that is the Amazon Transcribe path in the AWS row above, and it is the only way audio of a meeting reaches a sub-processor.
Zoho Corporation
Dodo Payments
Card details are entered on Dodo’s own checkout and never reach Lithora’s servers. We store a subscription reference, its status and the seat count — never a card number.
No workspace content — no work items, documents, notes or files — is sent to any of these. Identifiers that appear in a page address are: read the Google Analytics row, which is the one people assume is narrower than it is.
Functional Software, Inc.
PostHog, Inc.
Google LLC
The two mounts do not behave alike, and the difference matters to you. On this marketing site the tag is not downloaded until you accept analytics cookies — decline and no request is made to Google and no analytics cookie is set. Inside the product app there is no consent gate at all: the tag loads for every signed-in user on every route outside /admin. We would rather state that here than let you find it in a cookie scan.
Integrations you connect yourself. Lithora talks to GitHub, GitLab, Bitbucket, Jira, Linear, Slack, Discord, Notion, Figma, Google Drive, Microsoft Teams, Vercel, Cloudflareand other platforms only because you authorised the connection, and only within the scopes you granted. We do not engage them on your behalf, so they are not sub-processors — they are independent controllers under their own terms. Revoking a connection from Settings → Integrations stops future sync, but does not delete data already exchanged with that provider.
Components we run ourselves. These look like third parties in an architecture diagram and are not:
Enterprise SSO.Where a workspace signs in through its own identity provider, that provider is the customer’s, not ours. Lithora receives the assertion; it does not add a processor of our choosing.
We would rather you learn this here than in a questionnaire response:
What we do have is described on the Security page, and what we do with data is in the Privacy Policy.
This page is the authoritative copy of the register and is re-reconciled with what the running system actually calls, not with what we intended it to call. When we add or replace a sub-processor we update this page and the review date at the top. To be emailed before a change takes effect, or to request our Data Processing Addendum, write to security@lithora.io and ask to be added to the sub-processor notification list.
Security and compliance questions, including objections to a sub-processor:
Everything else: support@lithora.io. We respond within 30 days.