Sub-processors
Last updated: July 2026
We use the following third parties to run Facticy. Each receives only the data needed for its function, under a data-processing agreement, and — where outside the EEA — Standard Contractual Clauses. In Confidential mode, no web search or slide-image processing takes place, so only the verification providers receive text.
| Provider | Purpose | Region / data |
|---|---|---|
| Anthropic (Claude) | Claim verification — text of extracted claims | US · API not used for training |
| OpenAI (GPT) | Claim extraction, verification, web-evidence research, chart/slide vision, embeddings | US · store disabled, not used for training |
| Google (Gemini) | Claim verification — text of extracted claims | US · developer API |
| Cloudflare R2 | Document & backup storage | EU jurisdiction |
| netcup GmbH | Application hosting (compute) | Germany (EU) |
| Resend | Transactional email | US |
1.How we manage changes
We keep this list current. Material additions will be announced before they take effect so you can object if needed.