ExeFast Sub-processors
Last Updated: August 1, 2026 Referenced by the ExeFast Privacy Policy and the ExeFast Data Processing Addendum
This page lists the sub-processors EXEFAST INC engages to process personal data in providing the ExeFast Platform. It is the current list referred to in Section 3 of our Privacy Policy and Section 6 and Annex III of our Data Processing Addendum.
1. Sub-processors we engage directly
| Sub-processor | Purpose | Processing location |
|---|---|---|
| Stripe, Inc. | Subscription payments, checkout, tax calculation, and merchant-of-record services where enabled | United States; global |
| Thunes | Payouts and payments in regions Stripe does not serve | Singapore; global |
| Google Cloud | Hosting, storage, runtime environments, and infrastructure for any ExeFast-operated model | United States (us-central1 or equivalent U.S. regions) |
| OpenRouter, Inc. | Inference routing to model endpoints | United States |
| Google LLC | Inference routing and model endpoints reached directly | United States |
| WhatsApp (Meta Platforms), Telegram, and telephony providers | Delivery of integrated messaging and voice channels, where you use them | Varies by provider |
2. Providers reached through a routing partner
Inference is delivered through the routing partners named above. Those partners in turn route each request to a cloud inference provider — among them Amazon Web Services and Microsoft Azure — which operates the endpoint serving the model, and to the model developers whose models are served from it.
We do not contract directly with every provider in this chain, and the provider serving a particular request is selected automatically for availability and capacity rather than fixed in advance. For that reason this page describes those providers by category rather than as a fixed list. Two commitments apply to all of them:
- We make a model available only where a zero-data-retention configuration for it is available to us, with data collection disabled.
- We require each routing partner to impose data-protection terms on the providers it engages that are no less protective than those in our Data Processing Addendum, including the retention and training restrictions in Section 2 of our Privacy Policy.
Our routing partners publish their own current lists of the providers they engage:
- OpenRouter: https://openrouter.ai/privacy
- Google: https://cloud.google.com/terms/subprocessors
3. Web search provider
Where answering you requires current information from the web, we send a search query to:
| Provider | Purpose | Processing location |
|---|---|---|
| Brave Software, Inc. (Brave Search API) | Web search and retrieval used to compose agent responses | United States |
This provider is listed separately from the table in Section 1, and the description is deliberately different, because the arrangement is different:
- We send the query text only. No account identifier, no email address, no subscription details, and no conversation history accompany a search request. Brave states that it receives no identifier capable of linking a query to an individual or a device.
- Brave retains a log of the queries our systems send it for up to 90 days, for its own billing, troubleshooting, and abuse-prevention purposes, under its own privacy notice. That is a shorter and narrower arrangement than the model-endpoint arrangement described in Section 2, but it is not zero retention, and we do not describe it as such.
- Brave does not accept query text as customer personal data under a processor agreement. Its published position is that query data reaching the Brave Search API is not personal data in its hands, and it expressly excludes search query data from its data processing addendum. We therefore do not represent that Brave is engaged on the sub-processor terms described in Section 2, and we do not list it in the Section 1 table. We disclose it here because you are entitled to know who receives a query, whatever the correct characterisation of the recipient.
Brave's own terms and privacy notice for this service:
- Terms of use: https://api-dashboard.search.brave.com/documentation/resources/terms-of-service
- Privacy notice: https://api-dashboard.search.brave.com/documentation/resources/privacy-notice
You can ask us to disable web search for your account or for a particular agent by emailing privacy@exefast.ai.
4. Changes to this list
We may add or replace a sub-processor — for example to add capacity, to add a fallback route, or to enter a new region. When we do, we update this page and give notice as described in Section 6 of our Data Processing Addendum. Customers may object on reasonable data-protection grounds, and where an objection cannot be resolved may terminate the affected Services.
Adding a provider does not change the commitments in Section 2 above. Adding or replacing a web search provider does not change the commitments in Section 3 above. Those are stated in the Privacy Policy and the Data Processing Addendum and are amended only by amending those documents.
5. Notice of changes
To receive notice of changes to this list, email privacy@exefast.ai. A copy of the current list is also available on request at the same address.
Contact: privacy@exefast.ai