Skip to content
xenXDRby FluenceSecurity
PricingDocs
EN·PL
Sign inBook a demo
  1. XenXDR
  2. Legal
  3. Subprocessors

Subprocessors

Third parties that may process personal data for FluenceSecurity for this website, hosted tenants and the managed service, with location and transfer safeguard.

Version 1.0Last updated 2026-09-15

On this page

  1. 1How to read this list
  2. 2This website
  3. 3Hosted tenants and the managed service
  4. 4Threat intelligence and enrichment
  5. 5Changes

How to read this list

A subprocessor is a company we use to process personal data on behalf of our customers or website visitors. Every subprocessor is bound by a written agreement that imposes data protection obligations no less protective than ours. We inform customers with a data processing agreement at least 30 days before adding or replacing a subprocessor that processes their data.

This website

SubprocessorPurposeLocationTransfer safeguard
Cloudflare, Inc.Content delivery, hosting of the static site, relay of contact form submissions, protection from abuse, delivery of contact form submissions to our inboxGlobal edge; EU points of presence for EU visitorsEU-US Data Privacy Framework certification; standard contractual clauses

No analytics provider is in use at the time of this version. If one is added, it will appear here before it is enabled.

Hosted tenants and the managed service

SubprocessorPurposeLocationTransfer safeguard
cyber_Folks S.A.Infrastructure for hosted XenXDR tenantsEuropean UnionNot applicable, data stays in the EU
Cloudflare, Inc.DNS and TLS termination for tenant hostnamesGlobal edgeEU-US Data Privacy Framework certification; standard contractual clauses
Hosted model provider, only if configured by the customerAdvisory AI verdicts and summariesAs chosen by the customerAgreed with the customer when configured; none by default

By default a hosted tenant sends alert evidence to no external model provider. If a customer asks FluenceSecurity to configure a hosted model endpoint, the provider and its safeguards are added to the customer's DPA.

Threat intelligence and enrichment

When a customer enables enrichment, the Platform sends indicators such as IP addresses, domains and file hashes to the configured services. These indicators may in some cases be personal data. The services in the current release are VirusTotal (Google LLC, USA) and AbuseIPDB (Marathon Studios Inc., USA), both used under their published terms with standard contractual clauses where applicable. Enrichment is off until the customer configures it.

Changes

This page is updated whenever the list changes. The version and date at the top identify the current text.

Questions about this document?

Write to legal@fluencesecurity.com or privacy@fluencesecurity.com for privacy matters.

xenXDRby FluenceSecurity

A FluenceSecurity product
Made in Gdańsk, Poland

  • GitHub
  • LinkedIn
  • X

Platform

  • Platform overview
  • SIEM and search
  • Endpoint agent
  • Detections
  • AI triage
  • Playbooks and response
  • Alerts, cases and reports
  • Multi-tenancy and access
  • Customer portal
  • Integrations

Solutions

  • For security teams
  • For MSSPs
  • Managed SOC by FluenceSecurity

Resources

  • Documentation
  • Why XenXDR
  • Security and trust
  • Changelog
  • Pricing

Company

  • fluencesecurity.com
  • About FluenceSecurity
  • MDR service
  • Blog
  • Contact

Legal

  • Privacy policy
  • Cookie policy
  • Website terms
  • Software licence terms
  • Data processing
  • Service levels
  • Company details
  • Accessibility
  • Vulnerability disclosure
  • Subprocessors
© 2026 FluenceSecurity. All rights reserved.Sigma, Splunk, Okta, Microsoft, Fortinet and other marks belong to their respective owners.
EN·PL