DJG Media Limited (trading as MedPro AI), CRO No. 762838 engages the following third-party sub-processors to deliver the Brigid product family. Ask Brigid is the staff-facing product, Meet Brigid is the patient product, Brigid Dictate is the dictation product, and Brigid is also the name of the AI assistant available within those products. These are product names, not legal entities. This register is maintained under GDPR Article 28(2) and forms part of the Data Processing Agreement you sign at sign-up. It is aligned with our deployed code and reviewed on every release.
We will give you at least 14 days' written notice before adding or replacing any sub-processor. You may object in writing; if we cannot accommodate your objection, you may terminate your subscription without penalty.
AI & inference
| Sub-processor | Purpose | Data processed | Location | Transfer mechanism |
|---|
| Google Vertex AI (Gemini) | Primary clinical text inference, Brigid AI assistant, document analysis | Clinical text, patient-context snippets (special-category health data) | EU — Vertex AI EU multi-region (“eu”; embeddings in europe-west4) | EEA — no Art. 46 transfer |
| Google Cloud Speech-to-Text v2 | EU fallback for voice transcription (preferred first path for telehealth). An optional specialised medical dictation model runs in the US (us-central1) — used only with explicit per-practice US-audio consent | Audio recordings (special-category health data) | EU — Netherlands (europe-west4); us-central1 for the opt-in medical model only | EEA — no Art. 46 transfer (opt-in US model: Art. 28 DPA + SCCs + explicit consent) |
| Google Cloud Document AI | PDF / scanned-document OCR and parsing | Document content (may include PHI) | EU | EEA — no Art. 46 transfer |
| Google Vertex AI (Claude via Vertex) | Brigid reasoning (selected clinical tasks), document scanning | Clinical text, conversation context | EU — Germany (europe-west3) | EEA — no Art. 46 transfer |
| Google Cloud Platform — supporting services | Cloud Healthcare API (FHIR), Healthcare Natural Language, Translation, DLP de-identification, Vision OCR, Text-to-Speech, BigQuery analytics, Contact Center AI Insights, Maps & Places (address lookup), reCAPTCHA Enterprise (sign-in protection) | Clinical documents and text for the healthcare services; addresses and technical signals for the utility services | EU — “eu” multi-region / europe-west4 | EEA — no Art. 46 transfer |
| ElevenLabs | Primary voice-transcription engine (dictation, push-to-talk & clinical session transcription) and voice-agent calls | Audio recordings (special-category health data) | United States | Art. 28 DPA + Standard Contractual Clauses (SCCs 2021/914 Module 3) |
| Google AI Studio (Gemini — Live Voice) | Real-time voice AI for “Live with Brigid” (pending migration to EU Vertex); also an opt-in fallback transport for text inference when EU Vertex is unavailable | Real-time audio (special-category health data) | United States (global) | Art. 28 DPA + SCCs + EU-US Data Privacy Framework. Per-session explicit consent required for EU-only tenants. |
Telehealth, recording & meeting capture
| Sub-processor | Purpose | Data processed | Location | Transfer mechanism |
|---|
| Daily.co | Telehealth video consultations, cloud recordings and transcription | Live video/audio of consultations, recordings and transcripts (special-category health data) | EU media routing; recordings are stored in the United States (us-west-2) unless an EU storage bucket is configured for your practice | Art. 28 DPA + SCCs |
| Recall.ai | Meeting recording bots and real-time meeting transcripts | Meeting audio, recordings and transcripts (may include PHI) | EU — Germany (eu-central-1) | Art. 28 DPA; EU region — no Art. 46 transfer for media at rest |
Infrastructure & data storage
| Sub-processor | Purpose | Data processed | Location | Transfer mechanism |
|---|
| Supabase | PostgreSQL database, authentication, file storage, edge functions hosting | All PHI/PII — patient records, clinical notes, voice recordings, audit logs | EU — Ireland (eu-west-1) | EEA — no Art. 46 transfer |
Communications & messaging
| Sub-processor | Purpose | Data processed | Location | Transfer mechanism |
|---|
| Twilio | Outbound SMS (appointment reminders, campaigns, notifications) | Phone numbers, SMS content, delivery metadata | EU + US routing | Art. 28 DPA + SCCs + EU-US Data Privacy Framework |
| Vonage (formerly Nexmo) | Inbound SMS/voice webhooks & WhatsApp messaging | Phone numbers, message content, call metadata | EU + US routing | Art. 28 DPA + SCCs |
| Resend | Transactional email (appointment reminders, exports, notifications) | Recipient email address, email content (may include clinical summaries) | EU + US | Art. 28 DPA + SCCs |
| Healthmail (HSE) | Secure clinical email to the HSE Healthmail network (referrals, clinical letters) — sent only at your direction | Clinical correspondence (special-category health data) | Ireland — HSE secure network | EEA — no Art. 46 transfer; controller-directed transmission |
| Microsoft (Graph / Outlook) | Practice-connected Microsoft 365 mailbox & calendar sync — enabled only if your practice connects an account | Email and calendar content of the connected account (may include PHI) | EU datacenters (depends on your Microsoft tenant) | Art. 28 DPA + SCCs where applicable |
| Google Workspace APIs (Gmail / Calendar) | Practice-connected Gmail & Google Calendar sync — enabled only if your practice connects an account | Email and calendar content of the connected account (may include PHI) | EU/Global (depends on your Google account) | Art. 28 DPA + SCCs where applicable |
| Apple | Push notifications for the Meet Brigid iOS app (APNs) and optional iCloud calendar sync (CalDAV) | Device push tokens and notification metadata (payloads kept minimal — no clinical detail); calendar entries where iCloud sync is enabled | Global | Art. 28 DPA + SCCs |
Billing & identity
| Sub-processor | Purpose | Data processed | Location | Transfer mechanism |
|---|
| Stripe | Subscription billing, payment processing & identity verification | Billing identity, payment tokens, ID-verification documents — no patient health data | EU Ireland (Stripe Payments Europe) + global card networks | Art. 28 DPA; adequate country (EU entity for EU transactions) |
Support, monitoring & hosting
| Sub-processor | Purpose | Data processed | Location | Transfer mechanism |
|---|
| Sentry | Application error monitoring | Stack traces and error context — PHI scrubbed before transmission (sendDefaultPii: false, custom scrubber) | United States | Art. 28 DPA + SCCs + EU-US Data Privacy Framework |
| Airtable | Support-ticket tracking sync | Support ticket contents — contact details and issue description; no clinical records | United States | Art. 28 DPA + SCCs |
| Slack | Internal support alerting | Support ticket metadata — no clinical records | US + EU | Art. 28 DPA + SCCs + EU-US Data Privacy Framework |
| Vercel | Marketing website (medproai.com) hosting — no patient data | Page views, anonymised analytics — no PHI | US + EU edge nodes | Art. 28 DPA; no PHI transferred |
Services that receive no personal data
| Provider | Purpose | Data processed |
|---|
| DigiCert (Timestamping Authority) | RFC 3161 trusted timestamps anchoring our tamper-evident audit chain | A cryptographic hash only — no personal data |
| OpenAI | Administrator “AI connection test” diagnostics only — never used for clinical processing | A synthetic test prompt — no patient or user data |
Changes to this register
We maintain an internal version-controlled register aligned with our deployed code. If you are an Ask Brigid customer and would like to object to a sub-processor change, please email dpo@medproai.com within 14 days of the change notice.
Related documents
Data Processing Agreement · Privacy Policy · Compliance Overview · Terms of Service