DealWise AI – Sub-processors
DealWise AI relies on a small number of service providers to run the platform. This is the current list, what each one receives, and what it is for.
Each provider below is described by the function it performs rather than by its name. That is a deliberate choice, not a gap: everything a vendor review needs in order to assess the risk — what leaves DealWise, what the provider may do with it, and what it may not — is on this page, and the names themselves go to anyone who asks for them.
Write to support@dealwiseai.com for the current named list, identifying each provider and where it processes your data. It is answered by a person, and there is no form to fill in first.
The current list
Six providers. Nothing else receives the deals or documents you put into the Platform.
Application hosting
- What it receives
- Every request you make to the Platform, together with your IP address and the server-side logs of what that request did. Document bytes pass through it in transit on their way to and from storage.
- What it is for
- Runs the application. It holds no copy of your deals or documents of its own — it is the code that reads and writes them.
Authentication, database and file storage
- What it receives
- Your email address and sign-in credentials; every deal record in your account; and every document you upload.
- What it is for
- Signs you in, stores the database behind the Platform, and holds uploaded files in a private bucket with no public or shareable URL.
Artificial intelligence provider
- What it receives
- The text of a document you ask the Platform to read — and, for a scanned file, the file itself — together with any third-party information that document contains. When you run a deal analysis or a listing price opinion, the figures derived from your rent roll and deal inputs — which include tenant and guarantor names, any credit rating or internal grade you have recorded against them, and lease dates. Running a tenant risk analysis sends that tenant's details on their own, from your records rather than from any document.
- What it is for
- Reads documents so their terms can be proposed to you, and writes the analysis. Contractually barred from training its models on your content.
Payment processor
- What it receives
- Your email address and your billing details. DealWise does not store full card numbers.
- What it is for
- Takes subscription payments and tells the Platform whether a subscription is currently active.
Email delivery
- What it receives
- Your email address and the contents of the messages DealWise sends to it.
- What it is for
- Sends sign-in and password-reset mail, the onboarding sequence, and account notices such as a change to this list.
Error monitoring
- What it receives
- Technical diagnostics from a failed request: the page, the browser, the error and its stack. Cookies are dropped, and session tokens, signed URLs and email addresses are replaced with placeholders before the report is sent.
- What it is for
- Tells DealWise that something broke, and where, without carrying a credential out with it.
When this list changes
DealWise will give at least thirty days' notice before a new sub-processor begins processing customer content — by email to your account address, and by updating this page and the date on it. If you object within that period on reasonable data protection grounds, tell us; clause 7 of the Data Processing Addendum sets out what happens next, including your right to terminate and take a pro-rata refund if no alternative can be found.
A provider that is dropped comes off this page at the same time. The date at the top is the last time any entry here changed, not the last time the page was rebuilt.
See also the Security page for how documents are stored and delivered, the Data Processing Addendum for the terms that govern these providers, and the Privacy Policy for what DealWise collects and why.