FiorLab Limited
FiorLab is an Irish supplier risk management software company.
Subprocessors (7)
Processed Jul 28, 2026 · source disclosure ↗
| vendor | purpose | evidence |
|---|---|---|
| Cloudflare, Inc EU edge network | DNS resolution, partial DDoS protection (transit-only; no data at rest) | “Cloudflare (in some service chains via partners) DNS resolution, partial DDoS protection (transit-only; no data at rest) Network metadata only; no application data EU edge network” source |
| Google LLC Frankfurt | Database, authentication, storage, App Check | “Google Cloud / Firebase Database, authentication, storage, App Check Core data persistence, auth, App Check abuse prevention SOC 1 / 2 / 3 ISO 27001 / 27017 / 27018 / 27701 PCI DSS HIPAA EU Code of Conduct BSI C5 (Germany) ENS High (Spain) cloud.google.com/security/compliance” source |
| reCAPTCHA Enterprise (Google) Frankfurt | Bot prevention on registration and password reset | “reCAPTCHA Enterprise (Google) Bot prevention on registration and password reset Abuse prevention on identity flows Inherits Google Cloud certifications cloud.google.com/recaptcha” source |
| Resend eu-west-1 | Transactional email delivery (invites, notifications, signature requests) | “Resend Transactional email (invites, notifications, signature requests) Outbound transactional email only SOC 2 Type 2 GDPR compliant resend.com/security” source |
| Sentry Frankfurt | Application error monitoring, performance telemetry, CSP violation reporting | “Sentry (EU region) Error monitoring, performance traces, CSP reports Error and performance telemetry; EU data residency SOC 2 Type 2 ISO 27001 EU region (ingest.de.sentry.io) sentry.io/security” source |
| Stripe Ireland | Subscription billing for FiorLab subscriptions | “Stripe Subscription billing, payment processing Customer subscription payments only; no customer-supplier data PCI DSS Level 1 SOC 1 SOC 2 ISO 27001 stripe.com/security” source |
| Application hosting, edge compute, CDN | “Vercel Application hosting, edge compute, CDN Web application platform and edge delivery SOC 2 Type 2 ISO 27001 GDPR compliant vercel.com/security” source |
- Cloudflare, IncEU edge network
DNS resolution, partial DDoS protection (transit-only; no data at rest)
“Cloudflare (in some service chains via partners) DNS resolution, partial DDoS protection (transit-only; no data at rest) Network metadata only; no application data EU edge network” source
- Google LLCFrankfurt
Database, authentication, storage, App Check
“Google Cloud / Firebase Database, authentication, storage, App Check Core data persistence, auth, App Check abuse prevention SOC 1 / 2 / 3 ISO 27001 / 27017 / 27018 / 27701 PCI DSS HIPAA EU Code of Conduct BSI C5 (Germany) ENS High (Spain) cloud.google.com/security/compliance” source
- reCAPTCHA Enterprise (Google)Frankfurt
Bot prevention on registration and password reset
“reCAPTCHA Enterprise (Google) Bot prevention on registration and password reset Abuse prevention on identity flows Inherits Google Cloud certifications cloud.google.com/recaptcha” source
- Resendeu-west-1
Transactional email delivery (invites, notifications, signature requests)
“Resend Transactional email (invites, notifications, signature requests) Outbound transactional email only SOC 2 Type 2 GDPR compliant resend.com/security” source
- SentryFrankfurt
Application error monitoring, performance telemetry, CSP violation reporting
“Sentry (EU region) Error monitoring, performance traces, CSP reports Error and performance telemetry; EU data residency SOC 2 Type 2 ISO 27001 EU region (ingest.de.sentry.io) sentry.io/security” source
- StripeIreland
Subscription billing for FiorLab subscriptions
“Stripe Subscription billing, payment processing Customer subscription payments only; no customer-supplier data PCI DSS Level 1 SOC 1 SOC 2 ISO 27001 stripe.com/security” source
-
Application hosting, edge compute, CDN
“Vercel Application hosting, edge compute, CDN Web application platform and edge delivery SOC 2 Type 2 ISO 27001 GDPR compliant vercel.com/security” source