Chutes
GDPR Compliance
Data Handling
Chutes states that it does not log, store, or persist the content of API requests or responses. For its end-to-end encrypted inference offering, it states the API only sees opaque ciphertext plus routing, nonce, and usage metadata for billing.
The privacy policy says API request and response content is not logged, stored, or persisted. Chutes also documents an E2EE mode in which prompts are decrypted only inside a TEE, while the API handles ciphertext, nonce validation, billing, and rate limiting.
Certifications & EU AI Act
No certifications disclosed.
Verification
Chutes publishes a privacy policy and states it does not log, store, or persist API request/response content, including a documented end-to-end encrypted TEE inference mode. However, no primary-source DPA, sub-processor list, SCC statement, HQ country, or formal data residency/EU-only processing commitment was found on the consulted official pages.