Collect, Store, Analyze, and Act
Subprocessors
Hyperparam Corporation uses the providers below to run HypAware Cloud and this website. “Cloud” rows handle data your organization syncs. “Website” rows handle data about visitors to hypaware.ai.
| Provider | Applies to | Purpose | Data it receives | Location |
|---|---|---|---|---|
| Amazon Web Services | Cloud | Hosting (EC2, EBS volume and snapshots), content delivery and TLS (CloudFront) | All synced data, reports, audit records, and report generation transcripts, on the server’s volume. CloudFront sees your IP address | United States (Oregon, us-west-2) |
| Anthropic | Cloud | Report generation | Query results over your organization’s synced sessions, unredacted. Can include prompts, responses, tool arguments, paths, git remotes, and account identifiers | United States |
| Cloud | Sign-in (OpenID Connect) | Your sign-in at Google. Google returns your verified email and account identifier to us | Global | |
| GitHub | Cloud | Repository activity backfill, run by a Hyperparam operator for configured repositories | The names of the repositories requested. Data flows from GitHub to us: issues, pull requests, reviews, commits, file paths, actor logins | United States |
| Amazon Web Services | Website | Hosting (S3, CloudFront) | Your IP address and the pages you request | United States (us-east-1) |
| PostHog | Website | Analytics and, after you accept, session replay | Page views and seven named events. After Accept: cookie IDs and replay with typed input masked | United States (US Cloud) |
| Clarify | Website | CRM for contact forms | Name, email, company, company size, message, page address, time | United States |
| Website | Font delivery (Google Fonts) | Your IP address and browser user agent on each page load | Global |
The HypAware CLI is not on this list because it sends your recordings to no one unless you connect it to an organization. It does contact the npm registry about once a day to check for updates, and it forwards your AI client’s traffic to the AI provider that client already uses.
We give organization admins 30 days’ notice by email before adding a provider that handles synced data. If you object on data protection grounds, tell us within that window and we will work it through with you; if we cannot, you can end your use of HypAware Cloud.
Updated October 1, 2026.