Every third-party service in Sippy's stack, the role it plays, and the agreement it operates under. This page closes the M2 requirement that 100% of third-party integrations are contractually scoped and documented. User data handling across these services is governed by the Privacy Policy at sippy.lat/privacy. Updated 2026-07-10.
| Provider | Role in Sippy | Agreement basis |
|---|---|---|
| Coinbase CDP | Non-custodial embedded wallets on Arbitrum One; users own their keys | Coinbase Developer Platform terms of service |
| Pimlico | ERC-4337 bundler and verifying paymaster sponsoring gas for sends, onboarding, and savings | Pimlico commercial terms; paid plan with per-policy spend caps |
| Colurs.io | COP fiat onramp for Colombia; KYC is performed and held by Colurs | Signed partner agreement |
| Coinbase Onramp | Fiat onramp for countries outside Colombia and Europe | Coinbase Onramp terms of service |
| Mt Pelerin | SEPA EUR onramp for Europe via the /topup rail gate | Mt Pelerin partner API terms |
| LI.FI | Cross-chain bridge and swap routing for /fund top-ups, auto-routing to USDC on Arbitrum | LI.FI widget and API terms |
| Meta (WhatsApp Business Platform) | Primary user channel; approved Business API production number | WhatsApp Business Platform terms |
| Twilio | SMS OTP delivery, dual-channel with WhatsApp templates | Twilio terms of service |
| Groq | LLM inference for the trilingual natural-language parser | Groq API terms |
| Alchemy | Onchain indexer and RPC for Arbitrum One | Alchemy terms of service |
| Railway | Backend and database hosting, production and staging environments | Railway terms of service |
| Vercel | Web app hosting (sippy.lat, fund.sippy.lat) | Vercel terms of service |
| PostHog | Product analytics and error tracking, keyed to hashed identifiers | PostHog terms of service |
| Resend | Transactional email (OTP codes, account notifications) | Resend terms of service |
| Zoho | User support ticketing | Zoho terms of service |