Subprocessors
Last updated: August 31, 2026
Eudaimonic Inc. (“DeepSpace”, “we”) uses third-party subprocessors to operate the DeepSpace platform. Our Vendor Management Policy categorizes a subprocessor as a vendor who handles customer data on behalf of Eudaimonic Inc. — acting as a subprocessor, the vendor will have or potentially will get access to the personal data of our customers’ (the data controller’s) personnel members and/or customers. In DeepSpace terms: our customers are developers who build and deploy apps on the platform, and a vendor appears on this list when data belonging to those developers or their apps’ end users can reach it. Vendors that handle only Eudaimonic Inc.’s own business data are not subprocessors and are not listed here.
Core platform subprocessors
Engaged for every customer — the platform itself runs on these.
| Name | Purpose | Data categories | Storage | Location |
|---|---|---|---|---|
| Cloudflare, Inc. | All platform infrastructure: compute (Workers for Platforms), app data (Durable Objects, D1), file and repository storage (R2, KV), usage analytics (Analytics Engine, Workers Logs), browser rendering for screenshots, AI Search knowledge bases (including Workers AI models), and domain registration (Cloudflare Registrar). | All data processed or stored on the platform: developer account data, app content and app databases, end-user account data (name, email, profile image, hashed credentials), files, git repositories, logs, and usage metadata. | Stored | Global (Cloudflare network) |
| Stripe, Inc. | Payment processing: developer subscription and credit billing, one-time purchases (e.g. custom domains), and — when an app enables commerce features — end-user checkout, subscriptions, one-time charges, refunds, and developer payouts via Stripe Connect. Payment card details are entered directly with Stripe; the platform stores only opaque Stripe identifiers. | Name, email address, payment method details (collected by Stripe directly), transaction amounts and history. | Stored | — |
Optional subprocessors
Engaged only when a developer’s app uses the named feature or calls the named integration through the DeepSpace integration proxy. Unless a row says otherwise, calls are made with Eudaimonic-held credentials.
| Name | Purpose | Data categories | Storage | Location |
|---|---|---|---|---|
| Anthropic, PBC | Claude model APIs (chat completions and Anthropic-run web search) when an app routes AI traffic through the Anthropic proxy. | Prompts and completions, including any end-user content an app includes in them. | Transit | — |
| OpenAI, L.L.C. | GPT chat completions, image generation, text-to-speech, and Whisper speech-to-text through the OpenAI and speech proxies; realtime voice sessions; and summarization inside the web-search integration, which sends the search query and retrieved page content to OpenAI to produce the cited summary. For realtime voice, audio streams directly between the end user’s browser and OpenAI under a short-lived token minted by the platform. | Prompts and completions, text submitted for synthesis, audio submitted for transcription, and voice-session audio. | Transit | — |
| Google LLC | Gemini model API when an app routes AI traffic through the Gemini proxy. Separately, the Google integration (Gmail, Calendar, Contacts, and other Workspace APIs) runs on the end user’s own OAuth grant; the resulting tokens are stored encrypted on our infrastructure, not with a third party. | Prompts and completions sent to Gemini; for the Workspace APIs, requests the app makes against the end user’s connected Google account. | Transit | — |
| Cerebras Systems, Inc. | Inference API when an app routes AI traffic through the Cerebras proxy. | Prompts and completions. | Transit | — |
| ElevenLabs, Inc. | Text-to-speech and conversational voice agents when an app enables voice features. | Text submitted for synthesis; voice-agent conversation audio. | Transit | — |
| LiveKit, Inc. | Real-time audio/video rooms when an app enables AV features. Media streams flow directly between participants and LiveKit; the platform mints access tokens. | Audio/video streams and participant identifiers. | Transit | — |
| Resend, Inc. | Transactional email delivery for email an app sends through the email integration (and for our own platform email). | Recipient email addresses, subject lines, and message content. | Transit | — |
| Composio | End-user connections to third-party apps (Gmail, Slack, Notion, and other toolkits) for AI-agent tool use. Composio hosts the OAuth consent flow and holds each end user’s connection tokens, keyed by their DeepSpace user identifier; the platform stores no tokens. | End-user identifier, OAuth tokens for accounts the end user connects (held by Composio), and tool-call inputs and outputs. | Stored | — |
| SerpAPI, LLC | Search-engine results. Backs the general web-search, scholar search, Amazon product search, and LinkedIn lookup endpoints. | Search queries an app submits. | Transit | — |
| Exa | Neural web search. | Search queries an app submits. | Transit | — |
| Firecrawl | Web scraping and content extraction. | URLs an app submits for crawling; extracted page content returned through the platform. | Transit | — |
| Apify | Web scraping and automation actors. | Actor inputs an app supplies (URLs, queries, and similar parameters). | Transit | — |
| DataForSEO | SEO and SERP data. | Keywords, domains, and query parameters an app submits. | Transit | — |
| Prospeo | Contact enrichment lookups. | Names, company domains, and email addresses an app submits for lookup. | Transit | — |
| Anymail Finder | Email-address finding. | Names and company domains an app submits for lookup. | Transit | — |
| CloudConvert | File format conversion. | Files an app submits for conversion. | Transit | — |
| fal.ai | AI image, video, and audio model runs. | Generation prompts and input media an app submits. | Transit | — |
| Freepik | Image editing (background removal, upscaling, relighting, style transfer, expand) and stock asset downloads. | Images an app submits for editing, and edit instructions. | Transit | — |
| Shotstack | Video editing and rendering. | Media assets and edit timelines an app submits for rendering. | Transit | — |
| Slack Technologies, LLC | Slack API calls an app makes through the Slack integration. The access token is supplied by the app (it is not a Eudaimonic credential); requests transit the platform’s integration proxy. | Channel, message, and workspace data the app reads or writes. | Transit | — |
| Porkbun LLC | Domain registration for top-level domains that Cloudflare Registrar does not handle, when a developer purchases a custom domain. | Registrant contact details required for domain registration. | Stored | — |
Query-only reference-data APIs
These services are reachable through the integration proxy and receive only the request parameters an app sends (a search term, a city, a ticker symbol, a public username); no data is stored with them on our behalf. They are listed because an app controls what goes into a request, so customer or end-user data can appear in those parameters. Each is engaged only when an app calls that integration.
| Service | Data provided |
|---|---|
| NewsAPI | News search |
| OpenWeatherMap | Weather data |
| API-Sports | Sports data (football, basketball, baseball, American football) |
| Jolpica (Ergast) | Formula 1 data (public API) |
| Finnhub | Stock market data |
| Alpha Vantage | Financial market data |
| Coinbase | Cryptocurrency market data (public API) |
| Polymarket | Prediction-market data (public API) |
| NASA | Public space imagery and data |
| Wikipedia | Public article content |
| MTA (New York City) / NY State Open Data | Public transit feeds and stop data |
| GitHub, Inc. | Public repository, commit, pull-request, and user metadata |
| YouTube (Google LLC) | Video search and video metadata |
Changes
Dated additions and removals, newest first. Future changes are appended here in the same format.
- August 31, 2026·NoticeInitial publication of this list.
- August 18, 2026·RemovedTavus (conversational video / AI avatar integration) — removed from the DeepSpace integration proxy.
Staying informed of changes
Changes to this list are recorded in the Changes section above as they happen — this page is the authoritative record, and each addition or removal is dated. Where a customer agreement with Eudaimonic Inc. specifies an advance-notice period for new subprocessors, we provide notice in accordance with that agreement.
“Transit” means Eudaimonic Inc. does not store data with that provider as part of the feature; each provider’s own retention is governed by its terms. Processing locations are stated only where we have verified them; “—” means not verified. Sign-in identity providers (GitHub, Google) supply your account identity to us at your direction and are described in Privacy Policy §4, along with the rest of our data-sharing practices.