Third Party Index

Campfire

campfire.ai

Transparency

Fair

Breakdown
Subprocessor list30 / 30
Processing locationspartial0 / 8
Purposes7 / 7
Data processing addendumnot found0 / 12
Trust center8 / 8
Privacy policy6 / 6
security.txtnot found0 / 6
Security pagenot found0 / 5
Status page5 / 5
Vulnerability disclosurenot found0 / 5
Pages still reachable8 / 8
Total64 / 100

Only documents we can retrieve count: a page behind a login or a broken link scores nothing.

Badge

Campfire transparency rating

For Campfire's own site; it updates with the rating.

<a href="https://thirdpartyindex.com/vendors/campfire"><img src="https://thirdpartyindex.com/badge/campfire.svg" alt="Campfire transparency rating on Third Party Index" height="20"></a>
[![Campfire transparency rating on Third Party Index](https://thirdpartyindex.com/badge/campfire.svg)](https://thirdpartyindex.com/vendors/campfire)

Documents

DocumentVerifiedChangedEvidence
Trust center snapshot
Subprocessor list snapshot
Privacy policy snapshot
Terms snapshot
Status page snapshot

Subprocessors

17 third parties. CSV · Atom

NamePurposeLocationListed since
Amazon Web Services Primary cloud infrastructure provider. All Campfire production systems — application servers, databases, file storage, caching, and search — run in AWS (us-west-2). All customer data is encrypted in transit and at rest.
Anthropic LLM provider powering Ember, Campfire's AI accounting assistant. Receives the prompts and context needed to answer a request; API data is not used to train Anthropic's models.
Cloudflare DNS, content delivery, and web application firewall. Terminates and proxies HTTPS traffic to the Campfire application; does not store customer data at rest.
Finch Payroll connectivity provider. When a customer connects their payroll system, payroll and employee compensation data flows through Finch's API to generate payroll journal entries in Campfire.
Fivetran Managed data pipeline. Replicates production data into Snowflake.
GitHub Source code hosting and CI/CD. Stores Campfire's application code; no customer data is processed.
Google Workspace Business productivity and identity provider. Used for company email, SSO into internal systems, and email delivery for select workflows.
Langchain LLM observability platform. Stores traces of Ember chat sessions (prompts, responses, and tool calls) for debugging and quality evaluation.
Mailgun Transactional email delivery. Sends outbound email from the Campfire platform (notifications, invoices, reports) and receives inbound email for email-based workflows.
OpenAI LLM and embeddings provider used for select Ember features and document understanding. API data is not used to train OpenAI's models.
Plaid Bank connectivity provider. When a customer links a bank account, Plaid retrieves account balances and transactions used for bank feeds and reconciliation. Campfire never sees or stores bank credentials.
PostHog Product analytics. Collects in-app usage events (pages viewed, features used) tied to user IDs to improve the product; no accounting data is sent.
Pylon Customer support platform. Processes support conversations and contact information.
Sentry Application error monitoring. Captures error reports and stack traces from the Campfire application, which may include request context and user identifiers.
Snowflake data warehouse. Holds a replicated copy of production data for reporting, and high volume data aggregations
Sprig In-app survey and user research tool. Collects voluntary survey responses linked to user IDs; no accounting data is sent.
TurboPuffer Vector database supporting AI search and retrieval. Stores embeddings of documentation and customer content used to give Ember relevant context.

Changes

None since tracking began.