Legal
Subprocessors
Last updated: August 7, 2026
Current subprocessors
| Provider | Purpose | Data processed | Location |
|---|---|---|---|
| OVH | Hosting, infrastructure, and database | App data, logs, workspace and client data | Canada |
| Cloudflare R2 | Object storage for uploads, photos, and attachments | Uploaded files (progress photos, attachments) | Western Europe |
| Resend | Transactional email | Names, emails, email metadata | US |
| Polar | Straton subscription billing | Billing and subscription metadata | EU / US |
| Stripe | Coach-connected payments (when enabled by coach) | Payment metadata | EU / US |
| PostHog | Product analytics, feature flags, and crash/error reporting | Usage events, crash/error diagnostics, device data, IP address, distinct user ID | EU Cloud |
| OpenAI / Anthropic | AI-assisted features | Selected content needed for AI features (no-training policy) | US |
Analytics requests from your browser are sent to s.straton.fit, an address on our own domain that PostHog operates and forwards to its EU Cloud. Traffic to that address is PostHog analytics, not a separate service.
Notification of changes
When Straton adds or replaces a subprocessor, the change will be reflected on this page with at least 30 days' notice. Customers on subscriber lists will be notified by email.
To receive subprocessor change notifications, subscribe at privacy@straton.fit.
If a customer objects to a new subprocessor for legitimate reasons, contact privacy@straton.fit to discuss.