Ciele
Open app
Log in
Get a demo
Open app
Get a demo
Log in
Ciele

Product

  • Features
  • Pricing
  • Download
  • Log in

Enterprise

  • Governance
  • Security
  • Talk to sales

Resources

  • Docs
  • Getting started
  • Self-hosting

Legal

  • Privacy Policy
  • Terms of Service
  • Cookie Notice
© 2026 Ciele. AI you can trust.Rome, , :,

Newsletter

Legal

Subprocessors

Last updated 5 August 2026

The third parties that process data on our instructions to deliver the managed platform, grouped by what they are for. The list is short on purpose, and it is published rather than sent on request so a review can start without waiting on us.

On this page

  1. 01Infrastructure
  2. 02Model providers
  3. 03Knowledge ingestion
  4. 04Business operations
  5. 05Integrations you connect yourself
  6. 06Changes and notice
  7. 07Self-hosting removes most of this list

01Infrastructure

These providers run the platform itself. Every one of them can, in the course of hosting it, hold customer content at rest or in transit.

Engaged for the managed platform on ciele.app.
ProviderPurposeDataRegion
VercelApplication hosting, edge delivery and scheduled jobsAccount data, request metadata, content in transitEU
SupabaseManaged Postgres, authentication and file storageAll customer content at rest: knowledge, conversations, membersEU
ResendTransactional email (invitations, notifications, escalation email, sales enquiries) and the newsletter list, which holds the addresses that confirmed a double opt-inRecipient address and message content; newsletter subscriber addresses and their subscription stateEU / US (SCCs)

02Model providers

A model provider receives the prompt for a turn and returns the answer. The prompt carries the visitor's question, the knowledge retrieved to answer it, and the assistant's instructions. Which providers are engaged depends on the Provider Connections an organization configures: an organization that connects only one provider is only ever routed to that one, and an organization on its own keys or a federated cloud account contracts with the provider directly.

Engaged per turn, according to the model each assistant is configured to use.
ProviderPurposeDataRegion
AnthropicAnswer generation, intent classification, embeddings pipeline supportPrompt content: question, retrieved knowledge, assistant instructionsUS (SCCs)
OpenAIAnswer generation and text embeddings for retrievalPrompt content and the text of indexed knowledgeUS (SCCs)
GoogleAnswer generation via Gemini and Vertex AIPrompt content: question, retrieved knowledge, assistant instructionsEU / US (SCCs)

None of these providers is permitted to use your content to train their models. That is a contractual term on our side and a configuration setting on theirs, and it applies to every turn the platform runs.

03Knowledge ingestion

Crawling providers fetch the pages an organization asks us to index. They see the URLs configured for the crawl and the public content returned; they do not see conversations. A self-hosted crawler is available for organizations that would rather not involve a third party at all.

Engaged only when a website source is configured to use them.
ProviderPurposeDataRegion
ApifyManaged website crawling at scaleTarget URLs and fetched page contentEU / US (SCCs)
Crawl4AICrawling worker, run on our own infrastructureTarget URLs and fetched page contentEU

04Business operations

These providers support the commercial and support side of the service. They do not process the content flowing through your assistants.

ProviderPurposeDataRegion
Payment processorSubscription billing and invoicing for paid plansBilling contact and payment details, held by the processorEU / US (SCCs)

We do not ask you to enter card numbers into the product, and we do not store them.

05Integrations you connect yourself

When an organization connects a help desk, a ticketing system, an identity provider or an external content source, data moves between Ciele and that system on that organization's instruction. Those systems are the customer's own processors, not ours, so they are not listed above. The organization chooses them, contracts with them and can disconnect them at any time.

06Changes and notice

This page is the notice. When we add or replace a subprocessor we update it, and the date at the top changes with it. Customers with a signed Data Processing Addendum can also ask to be notified by email before a change takes effect and may object on reasonable data-protection grounds.

Questions about a specific provider, or a request for the current list in a format your procurement process needs, go to privacy@ciele.app.

07Self-hosting removes most of this list

The platform is open source and ships with a self-host stack. An institution that runs it inside its own perimeter keeps the database, the file storage and the application itself in-house, and engages a model provider directly rather than through us. In that setup Ciele processes nothing on your behalf and this page does not apply to you.

The fine print

Even our cloud nods off here

Short where it can be, precise where it must be. If anything in these pages is unclear, write to us and a human will answer.

Contact us