Public Value Open processor list
These providers process limited account, product, file, delivery, security, and diagnostic data required to operate the live beta.
Version 2026-08-10.2 · Effective August 10, 2026
Supabase
Purpose: authentication, session management, the primary PostgreSQL database, file storage, and supporting data services. Primary PVO project region: Canada (Central). Data: account identifiers, verified email, policy receipts, product and application records, evidence files and metadata, safety and operations records, and database logs.
Vercel
Purpose: application build, hosting, content delivery, runtime execution, scheduled and background entry points, and operational diagnostics. Data: requests, technical identifiers, deployment data, and application logs needed to operate, route, recover, and secure the service.
Resend
Purpose: transactional email delivery for verification, recovery, invitations, reminders, and service notifications when enabled. Data: recipient email address, reviewed message content required for the action, and delivery metadata used to send, troubleshoot, and protect those messages.
Cloudflare Turnstile
Purpose: bot and abuse protection on authentication and other protected forms. Data: network address, browser and device signals, challenge outcome, hostname, and timing metadata needed to validate a short-lived, single-use challenge token. Turnstile is not used to decide Public Value, eligibility, standing, or reputation.
Sentry
Purpose: bounded application error and performance monitoring. Data: error traces, affected route, release and environment identifiers, timing, and limited technical request or device context. Session replay is disabled. Account form values, email addresses, activity terms, evidence, applications, ballots, confidential reports, and access credentials are excluded.
OpenAI
Purpose: pinned language-model inference for a participant-authorized governed-assistance request routed through Vercel AI Gateway. Data: redacted request text, the bounded task instruction, generated response, token counts, and technical metadata needed to provide and troubleshoot that request. OpenAI receives no platform authority to publish, vote, score, rank, select, moderate, or decide.
Not enabled in this release
No payment processor is enabled. An OAuth provider, payment provider, different AI provider, or other additional processor must be added to a successor list before the corresponding processing is enabled.