Last updated August 31, 2026
Subprocessors
These are the companies that process personal data on our behalf so Faber can run. Each one is under a written agreement that holds them to the commitments in our Privacy Policy.
There are 11 of them. We will update this page before a new one starts processing. If you would like notice of changes, write to admin@getfaber.co and we will tell you, and you may object.
AI model providers
These are the ones people ask about, because the body of an email or a set of meeting notes reaches them when a task needs one read or written. Under our agreements with them, your content is not used to train their models.
| Company | What they do | What they can see | Where |
|---|---|---|---|
| Anthropic | Running the models that read and write task content | The content of a task’s prompt: message bodies, notes, records it was asked to work with | United States |
| OpenAI | Running the models that read and write task content | The content of a task’s prompt | United States |
| TokenRouter | Routing a model request to the provider that serves it | The content of a task’s prompt, in passing | United States |
Web research
Used when a task looks something up on the open web. They receive the search query, which the task writes.
| Company | What they do | What they can see | Where |
|---|---|---|---|
| Tavily | Web search and page extraction | The search query and the page addresses fetched | United States |
Infrastructure
| Company | What they do | What they can see | Where |
|---|---|---|---|
| Supabase | The database and the sign-in system | Account details, task definitions, run records, encrypted connected-app credentials | United States |
| DigitalOcean | The servers the service runs on | Everything the service processes, in transit through it | United States |
| Cloudflare | File storage (R2), the website, and website analytics | Task source, run artifacts, files a task reads or writes | United States |
Payments
| Company | What they do | What they can see | Where |
|---|---|---|---|
| Stripe | Subscriptions and invoices | Name, email, billing address, payment details. Faber never sees card numbers. | United States |
Delivery
| Company | What they do | What they can see | Where |
|---|---|---|---|
| Resend | Sending the email Faber itself sends you | Your email address and the content of the message | United States |
Operations
Neither of these receives your content, and neither receives your email address. They identify an account by an internal id that only resolves to a person through our own database, which is why deleting an account is what makes what they hold anonymous.
| Company | What they do | What they can see | Where |
|---|---|---|---|
| Sentry | Error tracking | Error reports carrying an internal account id | United States |
| PostHog | Product analytics | Which features were used and when, against an internal account id | United States |
Configured, and not in use
Faber can be pointed at these and currently is not. They are listed because turning one on is a setting rather than a release, and we would rather you knew the shape of what is possible than found out from a changed page. Nothing reaches them today.
| Company | What they would do | What they could see | Where |
|---|---|---|---|
| Running the models that read and write task content | The content of a task’s prompt | United States | |
| xAI | Running the models that read and write task content | The content of a task’s prompt | United States |
| Moonshot AI | Running the Kimi models | The content of a task’s prompt | China |
| OpenRouter | Routing a model request to the provider that serves it | The content of a task’s prompt, in passing | United States |
| Brave | Web search | The search query | United States |
| Exa | Web search | The search query | United States |
| Twilio | Sending text messages a task asks for | The recipient number and the message | United States |
The apps you connect
These are not subprocessors and they are listed for completeness. They are your own accounts at your own providers: Faber reads and writes them because you pointed a task at them, and your relationship with each of those companies is your own. You choose which to connect and what permissions to grant, and you can disconnect any of them at any time.
- Google (Gmail, Calendar, Drive, Sheets, Docs)
- Microsoft (Outlook, OneDrive, Excel, Teams)
- Slack
- Notion
- Airtable
- Asana
- HubSpot
- Jira
- Linear
- monday.com
- Trello
Questions
Write to admin@getfaber.co.