Centre de confiance
Qui traite des données pour nous.
12 prestataires utilisés aujourd'hui. Chaque ligne indique ce qui parvient au prestataire et le code qui l'envoie, pour que l'affirmation puisse être vérifiée.
Netlify, Inc.
Hosts this site and its serverless functions; Netlify Blobs is the primary key-value store for accounts, subscriptions, seat-report ledgers, audits, policies and vault documents.
Reçoit: Everything the app persists outside Convex. The store-by-store inventory is in lib/data-stores.ts.
source:
lib/blobs.ts, netlify.tomlConvex, Inc.
System of record for user accounts, password resets, and the org backend v2 tables (orgs, memberships, invites, seats, subscriptions, policies, reports, audit, budgets).
Reçoit: Account email + password hash; org membership rows keyed by email; hashed seat/actor identifiers; invite tokens (hashed, never plaintext).
source:
lib/convex.ts, convex/schema.tsStripe, Inc.
Payment processing and subscription billing. Hosted checkout; card data never reaches our servers.
Reçoit: Email, name, billing address, plan/price selection. Card details go directly to Stripe.
source:
lib/stripe.ts, docs/PAYMENTS.mdOpenRouter, Inc.
Routes AI requests (public audit reasoning, dashboard concierge, and the extension's AI vision-escalation tier) to the underlying model provider.
Reçoit: The prompt/context for the feature in use. For the extension's vision tier: page URL, page title, and a downscaled screenshot (longest edge capped at 1024px, sent only when the URL is not on the safe-domain list and a heuristic or content signal already fired).
source:
lib/audit/reasoning-agent.ts, syba-agent-extension/lib/api.js (callOpenRouter), syba-agent-extension/lib/heuristics.js (fitDimensions, shouldEscalateToVision)Anthropic, PBC
Claude models behind the public audit reasoning agent and the dashboard concierge, called via @anthropic-ai/sdk with tool_use (never a raw fetch).
Reçoit: The audit or concierge conversation context for the request in progress.
source:
lib/audit/reasoning-agent.tsGoogle LLC
Optional Google sign-in, and Google Web Risk as one provider behind /api/extension/url-reputation.
Reçoit: OAuth profile (email, name) for sign-in. For Web Risk, when GOOGLE_WEB_RISK_API_KEY is set: the full page URL a signed-in user's extension submitted, never page content. Hash-prefix lookups replace full URLs in plan U5 (not shipped).
source:
app/api/auth/google/route.ts, lib/auth.ts (googleOAuthEnabled), app/api/extension/url-reputation/route.ts (checkGoogleWebRisk)IPQualityScore LLC (IPQS)
URL reputation provider behind /api/extension/url-reputation, called when IPQS_API_KEY is set.
Reçoit: The full page URL a signed-in user's extension submitted. Stripping before send is planned (U5), not shipped.
source:
app/api/extension/url-reputation/route.ts (checkIpqs)AgentMail, Inc.
Transactional email: the password reset link to a customer, and internal alerts to SYBA staff. SYBA sends no onboarding, invite, verification or marketing mail.
Reçoit: For a password reset, the account email address, first name and a single-use reset link. For a staff alert, what the person submitted on the contact, quote, claim or incident form (name, email address, message and incident details), addressed to SYBA staff.
source:
lib/transactional-email.ts (sendViaAgentMail), lib/auth.ts (emailResetLink), lib/concierge-notify.ts (attemptNotification)Have I Been Pwned (Troy Hunt)
Breach-exposure lookups for the account email you ask us to check, and (v3, when HIBP_API_KEY is configured) for named-breach detail; falls back to a k-anonymity Pwned Passwords presence check.
Reçoit: The email address being checked (HIBP v3), or a truncated SHA-1 prefix only (k-anonymity fallback: the full hash and the email never leave this server).
source:
lib/breach-monitor.tsVirusTotal (Google)
URL reputation read behind /api/extension/url-reputation when VIRUSTOTAL_API_KEY is set. Removal approved (O9); it stops at the next production deploy.
Reçoit: The full page URL, base64url-encoded in the lookup path (a read of an existing report; the URL is never submitted for scanning).
source:
app/api/extension/url-reputation/route.ts (checkVirusTotal)urlscan.io
Search of existing scans behind /api/extension/url-reputation when URLSCAN_API_KEY is set. Removal approved (O9); it stops at the next production deploy.
Reçoit: The page URL as a search query; the URL is never submitted for a new scan.
source:
app/api/extension/url-reputation/route.ts (checkUrlscan)AbuseIPDB
IP reputation behind /api/extension/url-reputation when ABUSEIPDB_API_KEY is set.
Reçoit: The IP address the page host resolves to; no URL path.
source:
app/api/extension/url-reputation/route.ts (checkAbuseIpdb)
Prévu pour la version 2.0
Aucune version actuelle n'envoie quoi que ce soit à ces prestataires. Ils sont listés avant d'être utilisés.
Cloudflare, Inc.
Planned (U6, U8): URL Scanner in unlisted mode and certificate-transparency lookalike-domain intelligence for the reputation tier. No current build calls Cloudflare.
Reçoit: Planned: a stripped URL or domain, never a customer identity.
source:
docs/plans/2026-09-14-1330-feat-syba-shield-2-enterprise-plan.md (U8, E42)abuse.ch
Planned (U4, U6): licence-clean community malware and phishing data for the bundled blocklist and the consensus tier.
Reçoit: Planned: a stripped URL or domain.
source:
docs/plans/2026-09-14-1330-feat-syba-shield-2-enterprise-plan.md (U4, U6)