Who helps run the service
Firmdesk relies on a few other companies. Each one is bound by contract to protect what it handles and to use it only to provide its service to us. Firms are told by email 30 days before one is added that handles their data.
Today
| Company | What it does for us | What it handles | Where |
|---|---|---|---|
| OVHcloud | The servers the app, its database and the documents are on | Everything a firm keeps in Firmdesk | Beauharnois, Québec, Canada |
| Cloudflare | The domain's DNS, backup storage (R2), the check that a person is signing in, and the connection to a client portal on an address of the firm's (its name on firmdesk.ca, or its own domain) | Backup copies of the database and the documents, encrypted at rest; the address a sign-in comes from; a portal's pages and documents on their way to the client, without keeping them | Canada and other countries: Cloudflare doesn't keep backups in one country, and its network may carry a connection through another |
| Resend | Delivering the emails the app sends | The email address, the name and the text of each email (invites, reminders, sign-in codes) | United States |
| Better Stack | Checking every few minutes that the service answers, and the status page | None of a firm's data | European Union and United States |
| Tally | Our forms: applications to the pilot program, and the feedback people send from the app | What a person types in those forms, and a screenshot if they add one; nothing a firm keeps in Firmdesk | European Union (Belgium); its emails about new responses go through the United States |
| Cal.com | Booking calls with us: demos, onboarding calls, pilot check-ins | The name, email and answers of the person booking; nothing a firm keeps in Firmdesk | United States |
| GitHub | Keeping the app's source code and running its tests | None of a firm's data | United States |
Planned
Not in use yet. They're listed so nothing comes as a surprise.
| Company | What it will do | What it will handle | Where |
|---|---|---|---|
| Stripe | Taking payment for Firmdesk plans, and the firm's invoices and receipts for them | The firm's billing name, email, address and GST/HST number, and its card (the card never reaches Firmdesk) | Canada and United States |
| Sentry | Collecting error reports from the app, once it's turned on | Technical details of an error; personal information is left out of reports | United States |