Skip to main content
LaneSync uses the following subprocessors to deliver the hosted SaaS product. Enterprise customers may request notification of subprocessor changes via their DPA.

Customer-controlled subprocessors

LaneSync does not require customers to use specific CI or deployment providers. Customer CI pipelines (GitHub Actions by default) upload evidence to LaneSync — the customer controls which tools run in their pipelines (Trivy, Semgrep, etc.).

Updates

Material changes to this list will be communicated to enterprise customers with 30 days notice. Contact: security@lanesync.dev