Subprocessors
Last updated September 23, 2026
These are the services that process data on behalf of the firms that use Cyggie. “What it receives” is what can leave Cyggie to that service; the privacy policy explains how access is authorized before anything is sent. Some rows depend on what your firm configures: a firm that brings its own model keys sends prompts under its own provider account, and a firm that does not install the Slack app sends nothing to Slack.
Infrastructure
| Provider | Purpose | What it receives |
|---|---|---|
| Neon | Primary database (PostgreSQL) | Synchronized records, transcripts and summaries, extracted document text and embeddings, encrypted credentials, audit and usage data — scoped per firm and per owner at the database level. |
| Fly.io | Application servers (Cyggie Cloud) | Requests in transit and the temporary files a request needs; no long-term copy of your data. |
| Tigris, with Cloudflare R2 as fallback | File storage | Original bytes of uploaded documents and attachments, under keys tied to your firm. |
| Vercel and Netlify | Web pages: cyggie.com, share pages and the download page | What a shared page shows to the person you shared it with, and ordinary web-server logs. |
| Sentry | Error reports | Errors, app version and operating system. Prompts, transcripts, documents, keys and email addresses are stripped before sending. On by default for new installations; off in Settings. |
AI and research providers
| Provider | Purpose | What it receives |
|---|---|---|
| Anthropic | Text generation (chat, summaries, memos, enrichment, agents) | The system prompt and the records the requesting person may read for that feature, the question, attachments where supported, and tool results. |
| OpenAI | Text generation and embeddings, where configured | The same authorized text context; for embeddings, profile text, document chunks or the query. |
| OpenAI-compatible endpoints (OpenRouter, a local runtime) | Text generation, only if a firm configures one | Authorized prompt context sent to the endpoint the firm chose; that endpoint's own terms apply. |
| Deepgram, with AssemblyAI as fallback | Meeting transcription | The audio of a meeting you record, and vocabulary hints. |
| Voyage AI | Embeddings, where configured | Entity and document text selected for indexing, and query text. |
| Exa | Web research for enrichment and memos | Research queries derived from the task and the company in question, and the URLs to fetch. |
| Webshare | Proxy for fetching public web pages during enrichment | The public URL being fetched. Never your CRM. |
Services you connect
| Provider | Purpose | What it receives |
|---|---|---|
| Google (Gmail, Calendar, Drive) | The mailbox, calendar and files you connect | Cyggie reads from Google on your behalf; where you export a memo to Google Docs or upload to a shared Drive folder, that file is sent to your Google account. Your data at Google stays under Google's terms. |
| Slack | The Cyggie Slack app, if your firm installs it | The commands and messages you send the app, and its replies, under your workspace's retention. |
We update this page when a provider is added or replaced, and note the date above. To ask about a provider, or for a data-processing agreement, write to support@cyggie.com.