Subprocessors
To run Sanaf we use other companies, and this is all of them. Each row says what we use them for, what of your data reaches them, and where that processing happens.
Last updated 2026-09-04.
Two things are worth reading carefully. Your connected apps are not on this list, because they are yours: you authorise each one, you can revoke it on its own, and we hold the authorisation rather than the account. And the channels are yours too: Slack, Microsoft Teams and Discord are installed by you into workspaces you already run.
This list is built from what the product actually depends on rather than from a template, which is why it is shorter than most. If a company is not on it, we do not send it your data.
Hosting and storage
Vercel
Runs the application and the console, holds files your AI employee produces, and provides the isolated environment it works in when a job needs a desk or a browser.
- What reaches them
- Everything the application handles in the course of running: requests, the work your employee does, and any files it produces or is given.
- Where
- United States, primary region in Northern Virginia
Supabase
The database behind the console, and the sign-in for your account. Every tenant table is isolated at the database level and the runtime connects with a role that cannot read across tenants.
- What reaches them
- Your workspace records: members, jobs, connections, approvals, the work log, memory and credit ledger. Passwords are held by the auth service, never by us.
- Where
- United States
Model providers
AI model providers, through the Vercel AI Gateway
The models that do the reasoning. Requests are routed through a gateway rather than to a provider directly, so which model runs a turn can change without your data going anywhere new.
- What reaches them
- The content of a turn: what was asked, the job description, the relevant memory, and whatever the tools returned. Only what a given turn needs, not your whole workspace.
- Where
- United States, provider dependent
Voyage AI
Turns text into the numeric form used to find relevant memory and documents, so your employee can recall the right thing rather than everything.
- What reaches them
- The text being indexed or searched, and nothing else about your workspace.
- Where
- United States
Connecting your apps
Pipedream
Holds the connections to the apps you authorise and brokers the calls your employee makes into them, so a token for one app is never a token for all of them.
- What reaches them
- The authorisation you granted for each connected app, and the requests and responses that pass through it while a job is running.
- Where
- United States
Where your team talks to it
Slack
One of the two places your team talks to its AI employee. The app is installed by you into your own workspace and can be removed by you at any time.
- What reaches them
- The messages in threads where your employee is involved, and the identities of the people in them.
- Where
- Determined by your own Slack workspace
Microsoft
The other place your team talks to its AI employee, through Microsoft Teams. Installed by you into your own tenant.
- What reaches them
- The messages in conversations where your employee is involved, and the identities of the people in them.
- Where
- Determined by your own Microsoft tenant
Discord
An additional place a team can talk to its AI employee, used only if you install it into your own server.
- What reaches them
- The messages in channels where your employee is involved, and the identities of the people in them.
- Where
- Determined by your own Discord server
Payments
Stripe
Takes payment for credit packs. Card details go to Stripe directly and never reach us.
- What reaches them
- Your billing contact, the packs bought and the amounts. We never see or store a card number.
- Where
- United States
Errors and monitoring
Sentry
Records errors so a fault can be found and fixed rather than guessed at. It exists to make the product reliable, not to watch what you do with it.
- What reaches them
- Technical detail about an error: the request, the code path and the identifiers needed to trace it. Not the content of your work.
- Where
- United States
When this list changes
This list changes when the product does. We update it in the same change that adds or removes a dependency, and the date below moves with it. If you need advance notice of additions in writing, ask us and we will put it in the agreement.
For what Sanaf can reach inside your own business, see security, and for what it may not be used for, the acceptable use policy.