Subprocessors

Last updated September 23, 2026

These are the services that process data on behalf of the firms that use Cyggie. “What it receives” is what can leave Cyggie to that service; the privacy policy explains how access is authorized before anything is sent. Some rows depend on what your firm configures: a firm that brings its own model keys sends prompts under its own provider account, and a firm that does not install the Slack app sends nothing to Slack.

Infrastructure

ProviderPurposeWhat it receives
NeonPrimary database (PostgreSQL)Synchronized records, transcripts and summaries, extracted document text and embeddings, encrypted credentials, audit and usage data — scoped per firm and per owner at the database level.
Fly.ioApplication servers (Cyggie Cloud)Requests in transit and the temporary files a request needs; no long-term copy of your data.
Tigris, with Cloudflare R2 as fallbackFile storageOriginal bytes of uploaded documents and attachments, under keys tied to your firm.
Vercel and NetlifyWeb pages: cyggie.com, share pages and the download pageWhat a shared page shows to the person you shared it with, and ordinary web-server logs.
SentryError reportsErrors, app version and operating system. Prompts, transcripts, documents, keys and email addresses are stripped before sending. On by default for new installations; off in Settings.

AI and research providers

ProviderPurposeWhat it receives
AnthropicText generation (chat, summaries, memos, enrichment, agents)The system prompt and the records the requesting person may read for that feature, the question, attachments where supported, and tool results.
OpenAIText generation and embeddings, where configuredThe same authorized text context; for embeddings, profile text, document chunks or the query.
OpenAI-compatible endpoints (OpenRouter, a local runtime)Text generation, only if a firm configures oneAuthorized prompt context sent to the endpoint the firm chose; that endpoint's own terms apply.
Deepgram, with AssemblyAI as fallbackMeeting transcriptionThe audio of a meeting you record, and vocabulary hints.
Voyage AIEmbeddings, where configuredEntity and document text selected for indexing, and query text.
ExaWeb research for enrichment and memosResearch queries derived from the task and the company in question, and the URLs to fetch.
WebshareProxy for fetching public web pages during enrichmentThe public URL being fetched. Never your CRM.

Services you connect

ProviderPurposeWhat it receives
Google (Gmail, Calendar, Drive)The mailbox, calendar and files you connectCyggie reads from Google on your behalf; where you export a memo to Google Docs or upload to a shared Drive folder, that file is sent to your Google account. Your data at Google stays under Google's terms.
SlackThe Cyggie Slack app, if your firm installs itThe commands and messages you send the app, and its replies, under your workspace's retention.

We update this page when a provider is added or replaced, and note the date above. To ask about a provider, or for a data-processing agreement, write to support@cyggie.com.