Put plainly
Each provider is limited to the information needed for its service. BonaBot uses the optional AI provider described below.
The list
Current as of the date shown at the foot of this page.
- Clerk — accounts and sign-in. Holds your email address and authentication data. United States.
- Supabase — database and file storage for records, enquiries and translations. United States.
- Amazon Web Services — compute, encryption keys and backups. United States.
- Stripe — payment processing. Holds billing details; we never see your card number. United States.
Optional AI assistant
Google Gemini API — generates BonaBot answers from questions you choose to submit, recent conversation context and public BonaFile information. Its free-tier terms allow content to be used to improve Google's products. This optional chat is for general questions, not private documents or case details; see the BonaBot section of our privacy notice. Processing location and retention follow Google's service terms.
Model providers
Translation sends the messages you select to a model provider under a zero-retention agreement: not stored by them, not used to train anything. Identifiers we detect are removed first.
We cannot promise no human at a provider ever sees a message. Nobody using a third-party model can honestly promise that. You can decline translation and still use everything else.
Changes
We will give thirty days' notice before adding or replacing a sub-processor. Write to privacy@bonafiles.com to be told when this page changes.
If you object on reasonable data-protection grounds and we cannot resolve it, you may terminate for that reason without penalty.
Questions about this document? Write to legal@bonafiles.com and a person will answer.
Contact us