8 June 2026Trust · hosted service
/ trust

Where your data goes. Named, not implied.

The facts a security or procurement team asks for: where the hosted service runs, what's encrypted, and every sub-processor that touches data. This page describes the hosted service: the public sandbox and Open mode. In the hybrid and closed self-hosted modes, none of the sub-processors below apply.

§ 01Where data lives

The hosted service runs on infrastructure located in Germany. The databases that hold corpus embeddings, application state, and analytics run on that same infrastructure, within the European Union.

§ 02In transit

All traffic is encrypted in transit with TLS. The origin is not directly reachable from the public internet; requests pass through a content-delivery and edge-protection layer with rate limiting. Operator access requires a separate authentication step.

§ 03At rest

We're direct about this: the hosted service does not yet encrypt data at the disk level. Secrets and certificates are stored with restricted file permissions. Full-disk encryption is on the list, and we'll say so here when it ships rather than before.

§ 04Sub-processors

Every third party that handles data in the hosted service, what it does, and what reaches it. Text you paste into the sandbox reaches the language-model provider below, which is why unpublished work belongs in a self-hosted deployment, not the public sandbox.

Sub-processorPurposeWhat reaches themRegion
Infrastructure hostCompute, storage, and databasesEverything the hosted service stores, at restGermany
CloudflareContent delivery and edge protectionRequest metadata and IP addressGlobal edge
OpenRouterLanguage-model routing for the sandbox and query rewritingYour query, claim, or pasted paragraphUnited States
§ 05Data sources

The service also calls public literature databases to search and fetch papers. These receive identifiers (PMIDs, DOIs) and a contact email, not the text of your query.

  • PubMed / NCBI E-utilities: search and full-text fetch
  • Europe PMC: full-text fetch
§ 06Self-hosted modes

In hybrid mode the language model runs on your hardware, so your prompts never reach a third-party model vendor. In closed mode every component (model, orchestration, retrieval, database) runs on your infrastructure, and nothing on this page applies. The Security page draws the boundary line for each mode.

§ 07Compliance

We are not yet SOC 2 or ISO 27001 certified, and we won't claim a badge we don't hold. A Data Processing Agreement is available on request, and the Enterprise tier includes a BAA path for HIPAA. For a security review or to start procurement, email [email protected].