SaaS Ranking

Notice before subprocessors change in SIEM and security operations

A list is a snapshot. Art. 28(2) GDPR gives you a right to object, and that needs advance notice.

3 of 17 vendors we measured here publish it, that is 18%. Last checked 2026-09-03.

18% here against 10% across every category we measure. SIEM and security operations sits above the overall share for this criterion.

Back to Notice before subprocessors change across all categories, or to SIEM and security operations.

Published

The vendor commits publicly to giving notice before the list changes.

VendorWhat we found
Corelight https://corelight.com/legal/subprocessors
Huntress https://trust.huntress.com/?itemUid=e3fae2ca-94a9-416b-b577-5c90e382df57&source=click
Stellar Cyber https://stellarcyber.ai/dpa/

No commitment to give notice before subprocessors change found.

We reached at least one address for each of these vendors and none of them carried it. That is what we found at the addresses we checked, on the date we checked them, and not a statement about what the vendor has.

VendorWhat we found
Anvilogic 8 addresses checked
Arctic Wolf 8 addresses checked
Blumira 8 addresses checked
Cybereason 8 addresses checked
Devo 8 addresses checked
Exabeam 8 addresses checked
Filigran 8 addresses checked
Gigamon 8 addresses checked
Hunters 8 addresses checked
Panther 8 addresses checked
Red Canary 8 addresses checked
Todyl 8 addresses checked
Trend Micro 8 addresses checked
Vectra AI 8 addresses checked

Not measured

We could not look at these, or their robots.txt asks us not to. That says something about our measurement, not about them, and they are left out of the percentage above.

VendorWhat we found
ExtraHop The vendor’s robots.txt excludes us from at least one of these addresses, so this was not measured.

Found something we missed? Tell us and the next run picks it up.