Lucida runs on a small set of third-party services. The list below is exhaustive for production. We give 30 days' notice before adding or replacing any subprocessor that processes candidate or workspace data — that notice goes to the contact email on every active workspace.
Lucida AI (the scoring engine)
Lucida AI is the brand for the structured-reasoning model that scores candidates, generates rubrics, drafts interview questions, builds round-2 briefings, and surfaces hiring angles. It is currently delivered via a third-party LLM provider:
| Provider | Region | Data retention |
|---|---|---|
| Anthropic, PBC | US | Transient — no training on your data, no retention beyond the API call. Their privacy policy. |
The reasoning model behind Lucida AI may change as the category matures (better-on-eval, lower-cost, India-resident, or open-source models). When it does:
- The audit-trail format on every scored row stays constant (prompt version + cited evidence + per-dimension scores + human sign-off)
- The privacy posture stays constant (no training on your data; transient processing only)
- 30 days' notice goes to every workspace before a provider swap takes effect
- This page is updated within 24 hours of the swap
Infrastructure
| Provider | Region | Purpose |
|---|---|---|
| Contabo | Germany (EU) | Production servers, Postgres database, application runtime |
| Backblaze B2 | US East | Encrypted daily database backups |
| Cloudflare | Global | DNS, wildcard TLS issuance, Turnstile bot protection on public forms |
| Resend | US | Transactional email delivery |
| Razorpay | India | Subscription billing + GST invoicing |
| Sentry | US | Application error monitoring (scrubbed of candidate PII before transmission) |
What gets shared with each
- Lucida AI provider — résumé text + interview answers + cover letter (transient, during the LLM call only)
- Contabo — everything (Lucida's own infrastructure)
- Backblaze B2 — encrypted backups (key held only by Lucida)
- Cloudflare — DNS + traffic metadata; no candidate PII
- Resend — email recipient address + subject + body of transactional emails
- Razorpay — workspace billing details only (never candidate data)
- Sentry — error traces with candidate PII scrubbed before transmission
Be notified when this changes
By default, every workspace's contact email receives a notice 30 days before any subprocessor is added or replaced. If you'd like an additional notification address (e.g. a compliance team alias), email hello@lucida.team with subject "Subprocessor watch list."