← Trust Center

Service providers and data flow

MessyFile uses a small set of providers to operate the service. The provider involved depends on the feature a customer chooses. This inventory describes current production roles; it is not a certification or a promise that a provider will never change.

Netlify

Role: Website hosting, server-side functions, and private file/job storage.

Data: Submitted files, generated results, request details, customer contact information, and operational records needed to run the service.

Stripe

Role: Hosted checkout and payment processing.

Data: Payment and checkout information, customer email, purchased service, amount, and transaction identifiers. MessyFile does not receive full card numbers from Stripe-hosted checkout.

CloudConvert

Role: Professional file-format conversion when that conversion path is selected.

Data: The source document and converted result needed for that job.

OpenAI

Role: AI-assisted extraction or organization for requests that require it.

Data: Relevant document content and task instructions needed to produce structured output. Direct format conversions are not replaced with AI summarization.

Resend

Role: Transactional email for confirmations, tracking, support, and delivery notices.

Data: Recipient email address and the contents and delivery metadata of the service message.

Jotform

Role: Intake for the Free File Check.

Data: Information and sample files submitted through that form.

PostHog

Role: Limited website measurement.

Data: Page views, referral/campaign information, and selected action events. Session replay, automatic form-content capture, uploaded-document capture, and payment-card capture are disabled.

File retention

Native uploads receive a deletion deadline when accepted. Source and result files are scheduled for deletion 30 days after receipt; for a human-reviewed service, the file deadline is reset to 30 days after approval. A daily cleanup removes stored file blobs. Limited transaction, security, and audit records may remain when needed for legitimate business or legal purposes.

Before sending sensitive material

Do not submit medical records, government identification numbers, Social Security numbers, full payment-card numbers, passwords, authentication secrets, or unrelated sensitive information without express written acceptance. Redact unnecessary information first.

Questions from customers or institutional reviewers may be sent to support@messyfile.com.