Last updated: 1 September 2026
A sub-processor is a third party we use to run Angaba. This page lists every one, what it receives, and where. The short version: the app and your documents run in AWS Frankfurt; document contents go to Anthropic's API for extraction when — and only when — you start an extraction job.
| Sub-processor | Purpose | Data it receives | Location |
|---|---|---|---|
| Amazon Web Services (AWS) | Hosting, database, document storage; this site via Amazon CloudFront | All app data and uploaded documents; CloudFront sees visitor IPs in access logs | eu-central-1 (Frankfurt); CloudFront is a global edge network |
| Anthropic | AI extraction of product-safety data from documents you upload | The uploaded document contents for the job; no shop credentials, no customer data | API processing with EU/US transfer safeguards (SCCs); inputs/outputs not used for model training |
| Shopify | The platform the app runs on; billing | Disclosure data written to your shop; app billing events | Per your Shopify contract |
Changes to this list are announced here at least 14 days in advance (see DPA §4).