NestMarks · Aman-INC
Subprocessors
The third-party services that process personal data so NestMarks can run, and when each one is involved.
Last updated October 2, 2026
Current list
| Provider | Purpose | Data involved | When |
|---|---|---|---|
| Oracle Cloud Infrastructure | Hosts the NestMarks servers, database and uploaded images. | All account and library data. | Always |
| Cloudflare | DNS, TLS and network protection; R2 storage for encrypted nightly backups. | Request metadata (IP address, URL path); backup copies of the database and uploads. | Always |
| Resend | Sends verification, password-reset and service emails. | Email address and the message content. | When an email is sent |
| “Continue with Google” sign-in. | Your Google account email and a sign-in identifier. | Only if you sign in with Google | |
| Paddle | Merchant of record for Pro: checkout, tax, invoices, refunds. | Email, billing country and payment details (entered with Paddle, never stored by NestMarks). | Only if you buy Pro |
| OpenAI or Anthropic | AI-assisted organization suggestions (Pro). | Titles, URLs, descriptions and tags of the bookmarks you ask it to organize. Not used to train their models under their API terms. | Only when you run AI organize |
| Sentry | Error tracking. | Error reports with technical context (route, browser, account id). No bookmark contents by design. | When error tracking is enabled |
Not on the list
NestMarks has no advertising, analytics-tracking or data-broker providers. Saving a link makes the NestMarks server, not a third party, fetch that public page for its title and image.
Connecting GoalZen (also operated by Aman-INC) shares only what you send there, such as a bookmark you attach to a task.
Changes
We update this page before a new subprocessor starts handling personal data. Questions: support@nestmarks.com.