Data Processing

Sub-processors

Last updated: August 17, 2026

The third-party providers Ross uses to deliver the service, and exactly what each one receives. A provider appears here only if your Firm's use of a feature actually sends it data - most rows depend on an integration your Firm has chosen to turn on.

By default, Ross reads and processes your documents locally, within Ross's own environment, without sending document content to a third-party model provider. Only the optional Document AI capability (row below) sends a document to a remote model, and only after your Firm has enabled it under a signed Business Associate Agreement.

ProviderPurposeData involved
StripePayment processingBilling and card data (entered directly with Stripe; card details are never received or stored by us)
TwilioDelivering and receiving SMS and WhatsApp messagesClient phone numbers and message content
AnthropicDocument AI - reading scanned records (including medical records), only when your Firm enables it under a signed Business Associate AgreementThe specific document sent; retained thirty (30) days under Anthropic's BAA terms (zero data retention is not available for this capability); never used to train Anthropic's models
Google (Gmail / Drive)Optional mailbox drafts and document access, when connectedEmails and documents you authorize
Microsoft (Outlook)Optional mailbox drafts, when connectedEmails you authorize
ClioOptional read-only pilot integration for matter documentsMatter documents are read in memory to prepare a draft and are not stored by Ross
Cloud hosting & infrastructureRunning the service and storing documents (tenant-scoped, isolated per Firm)All service data

We will provide notice of a new sub-processor at least thirty (30) days before it begins processing Firm Data, consistent with our Terms of Service. Questions about this list: mtorre@truth-computing.com.