Legal
Sub-processors
Third parties that may process customer personal data on our behalf. We give 30 days' notice of changes to this list.
Last updated 6 October 2026 · Questions: [email protected]
| Sub-processor | Purpose | Location | Applies to |
|---|---|---|---|
| Google Cloud (Google LLC / Google Asia Pacific Pte. Ltd.) | Hosting: Cloud Run, Cloud SQL, Cloud Storage, Pub/Sub, Secret Manager; Vertex AI inference when GCP-resident routing is selected | Customer-selected region (default asia-east1 / us-central1); US for Vertex AI unless regional endpoint selected | All |
| Anthropic, PBC | Large-language-model inference (counterpart lines, debriefs, Studio drafts) via managed channel or Vertex AI | United States | Practice, Arena, Studio |
| OpenAI, LLC | Fallback large-language-model inference when primary channels are unavailable | United States | Practice, Arena, Studio (fallback only) |
| Amazon Web Services, Inc. | Bedrock inference when AWS-resident routing is selected | Customer-selected AWS region | Enterprise/Platform with AWS-resident policy |
| Cloudflare, Inc. | DNS, TLS termination, DDoS protection for public endpoints | Global edge | All |
| Email delivery provider (SMTP relay) | Transactional email: invitations, background debrief delivery | Per provider (disclosed in Order) | Organizations with email delivery enabled |
Model providers are bound by terms prohibiting training on customer content and limiting retention to abuse-monitoring windows (≤30 days) or zero retention where available. Our own managed inference channel is operated under enterprise terms with the same guarantees; ask us for the current provider statement under NDA.
To receive notifications of changes, administrators are subscribed automatically; others may email [email protected].