Last updated: 22 September 2026
This page lists the third parties that receive the text you submit to Lenz, or text derived from it, such as the claims read from it and the search queries written from it. It applies to the website, the API, the connector for AI assistants and WhatsApp.
Text you submit
A single check may not reach every provider below.
| Provider | What it receives | Purpose | Location |
|---|---|---|---|
| Google Cloud (Google LLC) | Everything Lenz stores and processes: submitted text, results, account data and logs | Hosting, database, task queues, caching and logs | United States (us-central1) |
| AI model providers: OpenAI, Anthropic, Google (Gemini), xAI, Perplexity | Submitted text and text derived from it: claims, search queries, source passages and follow-up questions | AI processing for claim analysis and fact-checking | United States; Google (Gemini): global |
| Web search providers: Exa, Firecrawl | Search queries derived from the claim, and links you submit or that sources point to | Web search and reading web pages | United States |
| Wikimedia Foundation (Wikidata) | Names of the people, organisations, places and events a claim mentions | Linking those names to their Wikidata entries | United States |
| Webshare | Requests to fetch YouTube transcripts; it does not see the video or the transcript | Network proxy | United States |
| Sentry | Error reports, which can include the text being processed when the error happened | Error monitoring | European Union (Frankfurt, Germany) |
| SendGrid (Twilio) | The claim, its summary and answers to your follow-up questions, in emails about your checks | Sending email | United States |
| WaSenderAPI | Messages you send to and receive from the Lenz WhatsApp number, and your phone number | Connecting the Lenz WhatsApp number; used only if you use Lenz on WhatsApp | Not yet confirmed |
| Namirial (qualified trust service provider) | A SHA-256 hash of a warranty certificate: no text and no personal data | Fixing the time a certificate was issued; used only when one is issued | European Union (Italy) |
| OpenTimestamps calendars | The same SHA-256 hash, which they publish permanently | A second, public record of the time a certificate was issued; used only when one is issued | Public servers run by independent operators |
Account data
These providers process account data: your email address, billing details, how you use Lenz and the messages you send us. They do not receive the text you submit for checking.
| Provider | What it receives | Purpose | Location |
|---|---|---|---|
| Stripe | Billing details and payment information | Payments and subscriptions | United States |
| WorkOS | A pseudonymous account identifier and connection details | Authorization when you connect an AI assistant | United States |
| HubSpot | Your email address, plan and usage of Lenz, contact-form messages and chat messages | Customer support and account management | European Union (Germany) |
| SendGrid (Twilio) | Your email address and the emails we send you | Sending sign-in codes and account email | United States |
| Discord | Account events and contact-form messages | Notifications to the Lenz team | United States |
Changes
We update this page when a provider is added or removed; the date at the top shows the last change. How we handle your data is described in the Privacy Policy and, for the API, in API Terms section 5. Questions go through our contact page.