Legal & Trust Center
Subprocessors
Version 1.0 describes how Ethen works today. It has not yet taken effect: passages shown in italics are still being decided, and the document will show an effective date once it is final. Earlier text is listed in the version history.
This page lists the third-party companies that process personal data to provide Ethen: hosting, database and file storage, sign-in, AI models, web search, media generation, caching and website analytics. For each one it shows what the company does, which Ethen products use it, what kinds of data it receives and where processing happens when we have confirmed the location. The list includes only companies that process data for Ethen in production today. It does not include companies whose services Ethen is built to support but has not switched on. Read it with the Privacy Policy, which explains when each provider receives data.
On this page
How to read this list
- Products are the Ethen products that send data to the company.
- Data categories describe the kinds of information the company receives. Not every request sends every category; the Privacy Policy explains which actions send what.
- Processing context explains the company's role in Ethen. Model Providers process the requests Ethen sends them under their own API terms, which may differ from a typical hosting relationship.
- Location is listed where Upcube has confirmed the region in which Ethen's data is processed. Where it says "Provider-determined", the company decides where processing occurs under its own terms.
- Selected by you? shows whether the company processes data only when you choose a particular model, mode or feature.
Infrastructure and platform
| Provider | Purpose | Ethen products | Data categories | Processing context | Location | Selected by you? |
|---|---|---|---|---|---|---|
| Vercel Inc. | Application hosting for Ethen's web apps | Ethen Chat, Ethen Studio, Ethen Platform | All data sent to and from the apps, including Prompts, Outputs, account identifiers and request metadata | Hosts and runs Ethen's application code for Upcube | United States (application servers) | No |
| Supabase Inc. (on Amazon Web Services) | Database, file storage and secrets vault | Ethen Chat, Ethen Studio, Ethen Platform | Account and profile records, conversations, artifacts, attachments, generated media, settings, usage records, connected-app credentials (encrypted) | Stores data for Upcube | United States (AWS us-west-2) | No |
| Clerk Inc. | Sign-in and session management | Ethen Chat, Ethen Studio, Ethen Platform | Email address, password credentials, profile information from Google sign-in, session and device information | Authenticates users for Upcube | Provider-determined | No |
| Cloudflare Inc. | Website hosting, DNS and bot protection | upcube.ai website; sign-in on all apps | IP addresses, request metadata, bot-protection signals | Delivers the website and screens automated sign-up attempts | Global network | No |
| Upstash Inc. | Short-lived caching and request coordination | Ethen Chat | Technical request keys and coordination state | Stores short-lived data for Upcube | Provider-determined | No |
AI models, search and media
| Provider | Purpose | Ethen products | Data categories | Processing context | Location | Selected by you? |
|---|---|---|---|---|---|---|
| Meta Platforms, Inc. | Default conversational model (Muse) for Ethen Chat's Faros experience | Ethen Chat | Prompts, conversation context, Outputs | Model Provider; processes requests Ethen sends under Meta's API terms | Provider-determined | No. This is the default model. |
| Vercel Inc. (AI Gateway) | Routes requests to the model you choose, and carries realtime voice sessions | Ethen Chat | Prompts, conversation context, Outputs; microphone audio during voice sessions | Routing service between Ethen and Model Providers | Provider-determined | Yes, when you choose a non-default mode or model, use voice, or turn on fallback |
| OpenAI | Models for faster and deeper Chat modes and the realtime voice model (through the Vercel AI Gateway); image generation in Ethen Studio | Ethen Chat, Ethen Studio | Prompts, conversation context, microphone audio during voice sessions, image prompts and settings | Model Provider | Provider-determined | Yes, by mode, model or feature |
| Tavily | Web search for research features | Ethen Chat | Search queries derived from your request, page addresses | Search provider | Provider-determined | Yes, when you turn on web search or deep research |
| Firecrawl | Reading web pages for research features | Ethen Chat | Page addresses and a short query | Page-extraction provider | Provider-determined | Yes, when research needs to read a page |
| fal | Image, video and audio generation | Ethen Studio | Prompts, generation settings, reference media | Media-generation provider | Provider-determined | Yes, by the model you choose in Studio |
| Requesty | Alternative routing service for some models you can select | Ethen Chat | Prompts, conversation context, Outputs | Routing service between Ethen and Model Providers. Ethen Chat's production configuration holds Requesty credentials, but whether this route is switched on has not yet been confirmed. This row will be updated once it is. | Provider-determined | Yes, only for models Ethen routes through Requesty, and only if the route is on |
Models you choose through the Vercel AI Gateway
When you select a specific model in Ethen Chat, your request goes through the Vercel AI Gateway to that model's provider. The models Ethen offers this way include models from Anthropic, Google (Gemini), DeepSeek and Meta (Llama), in addition to OpenAI. These providers receive your Prompt and conversation context only when you choose one of their models, or when you have turned on fallback and the default model is temporarily unavailable.
Website analytics
| Provider | Purpose | Ethen products | Data categories | Processing context | Location | Selected by you? |
|---|---|---|---|---|---|---|
| Google LLC (Google Analytics 4) | Understanding how visitors use upcube.ai | upcube.ai website | Analytics identifier cookie, pages viewed, referrer, device and approximate location derived from the connection | Analytics service operating under Google's terms | Provider-determined | No. See the Cookie Policy for how to block it. |
Services you connect
When connected apps become available, services you connect, such as Gmail, Google Drive and Google Calendar, will receive requests from Ethen to carry out actions you request. They are not subprocessors: you authorize Ethen to access your own account with them, and they act under your agreement with them. See Connected Apps & Integrations.
What is not on this list
Ethen's code includes support for other providers that are not used in production today, such as additional search, voice, compute, payment and code-execution services. Those companies receive no Ethen data and are not listed.
Whether Upcube will give advance notice of new subprocessors, and how customers can receive it, will be stated here before this page takes effect.
Last reviewed
This list was last reviewed on the "Last updated" date shown at the top of this page.
Contact
Dedicated contact channels for privacy, security, legal, support and abuse reports are being set up and will be listed here before Ethen's policies take effect.
Version history
| Version | Date | Status | Summary of changes |
|---|---|---|---|
| 1.0 | October 5, 2026 | Not yet in effect | First version. Lists only providers verified in production. |