Skip to main content

Open to W2 & 1099 Consulting

Legal & Compliance

Third-Party Subprocessor Manifest

In accordance with GDPR Art. 28 and enterprise risk management standards, this manifest provides real-time transparency into the third-party entities that process data on behalf of TSmithCode.ai.

Quarterly Audit: Passed

Vercel Inc.

United States

GDPRSOC2 Type IIISO 27001

Service Purpose

Hosting, Global CDN, and Performance Telemetry

Data Categories

Request metadata, IP addresses (temporary), edge logs

Stripe, Inc.

United States

PCI-DSS Level 1SOC1SOC2

Service Purpose

Payment Processing and Fraud Prevention

Data Categories

Billing details, transactional data, payment tokens

Upstash, Inc.

United States / EU

GDPR CompliantSOC2

Service Purpose

Global Rate Limiting and API Security

Data Categories

Rate-limit keys, anonymized request hashes

Supabase (PostgREST)

United States (AWS Region)

SOC2GDPR Compliant

Service Purpose

Database Storage and Authentication Services

Data Categories

User profiles, proof receipts, engagement telemetry

Privacy-by-Design Commitment

TSmithCode.ai maintains a "Least Privilege" integration model. We do not sell data to subprocessors, and we enforce encrypted transit (TLS 1.3) and encrypted rest (AES-256) standards across all service boundaries.

tsmithcode.ai

Four-path digital twin platform for workflow systems, Autodesk proof, and product-oriented engineering judgment. Built for evaluating Thomas Smith across W-2, 1099, Creative, and Industrial engagement models.

Stay Updated

By submitting, you agree to our Privacy Policy and Terms.

Built in Next.js 16 and React 19. Architectural discipline by design.