LedgerMCP: Subprocessors
LedgerMCP, LLC
Effective date: July 9, 2026
Last updated: August 17, 2026
LedgerMCP uses a small number of third-party service providers ("subprocessors")
to operate the Service. Each processes customer data only as needed to provide
its function, under its own security and privacy commitments. We keep this list
deliberately short.
Current subprocessors
Infrastructure vendors are listed by function rather than by name. The three
that are named below are named because you interact with them directly, or
because their terms require us to identify them. If you need the full vendor
list for a security review or a data processing agreement, email us and we will
provide it under NDA.
| Provider | Function | Data involved | Location |
|---|---|---|---|
| Managed cloud database & storage provider | Database, authentication, and file storage (receipts, W-9s) | Account data, books and transaction data, attachments | United States |
| Managed cloud hosting provider | Application hosting | All Service traffic and application data in transit and in memory | United States |
| Network security & content-delivery provider | DDoS protection, rate limiting, and content delivery; all traffic to the Service passes through it | Request metadata (IP address, user agent, path) | United States |
| Error-monitoring provider | Application error and performance diagnostics | Error messages and technical diagnostics; configured not to receive personal information | United States |
| Transactional email provider | Sign-in codes, weekly digests if enabled, support correspondence | Email address and email content | United States |
| Plaid Inc. | Bank connectivity for live feeds | Bank account and transaction data you authorize; we never see bank login credentials | United States |
| Stripe, Inc. | Payment processing for paid plans | Email address and an account identifier; Stripe processes card data, and we never receive or store card numbers | United States |
| Google LLC | Google Analytics 4 on the public website only | Page views and coarse traffic source. No bookkeeping data, and no signed-in account data, is sent to Google | United States |
| AI model provider | Powers the optional built-in assistant on paid plans that include it: chat, statement and receipt reading, and transaction categorization, only when you use those features | The book data and file content you submit to the assistant, processed to answer your request; not used to train models | United States |
When you connect your own AI to LedgerMCP over MCP, that AI is your vendor
under your own agreement with it, not a subprocessor of the Service. This row
covers only the built-in assistant we operate.
Changes to this list
When we add or replace a subprocessor that processes customer data, we will
update this page in advance of the change. If you want to be notified directly,
email support@ledgermcp.com with the subject
"Subprocessor updates".