Claude Sonnet 5.5 requests may be processed outside the United States. As of September 29, 2026, we offer Claude Sonnet 5.5 through Amazon Bedrock's global cross-region inference profile, because Amazon does not currently offer that model through a US profile. When you select Claude Sonnet 5.5, Amazon may process your request in any AWS commercial region, including regions outside the United States. Otherwise, your Sonnet 5.5 requests are handled the same way as our other Claude models on Amazon Bedrock: Amazon does not store or log your prompts or responses, Anthropic does not receive them, and they are not used to train any model. Requests for all our other Claude models are processed in the United States through Amazon's US-only inference profiles.
"Claude" refers to the AI models; "Anthropic" is the company that developed them. The Claude AI models are software (large language models) that generate responses to your prompts. Anthropic is based in the United States.
Bells Up AI runs the Claude AI models on Amazon's servers. Every Claude model except Claude Sonnet 5.5 is processed in the United States; Claude Sonnet 5.5 requests may be processed outside the United States (see “Where Your Data Is Processed” below). Anthropic itself never receives your prompts, your documents, or the models' responses.
Your data never leaves Amazon's infrastructure. Anthropic has zero access to your prompts or responses.
| Question | Answer |
|---|---|
| Can Anthropic access your prompts or documents? | No — Anthropic never receives them |
| Can Anthropic train AI on your prompts or documents? | No — Anthropic has zero access |
| Can Anthropic employees or contractors review your data? | No — Anthropic has zero access |
| How long does Anthropic retain your data? | N/A — Anthropic never receives your data |
| Does Amazon Bedrock store your prompts or documents? | No — Amazon Bedrock applies zero data retention by default (not stored) |
| Does Amazon train AI on your data? | No — prohibited by contract |
| Does Amazon scan your data for abuse? | Yes — automated scanning; Amazon Bedrock uses zero operator access by default, with a narrow 30-day retention exception for a short list of named models Bells Up AI does not offer (details) |
| Can Amazon employees or contractors review your prompts or responses? | No — Amazon Bedrock uses zero operator access by default; content flagged as apparent CSAM may be reviewed for confirmation and reporting. Access to data stored on Amazon's infrastructure is separately limited (details) |
Your data is encrypted in transit (TLS 1.2+) and at rest (AES-256). Amazon Web Services — the cloud provider that runs the model and where your prompts are processed — holds SOC 2 and ISO 27001 certifications.
When you use the Claude family of AI models through Bells Up AI, three parties are involved in processing your request:
Each party operates under contractual obligations that protect your data. Below, we explain what each party can and cannot do with your data, with citations to the governing contracts.
What Anthropic Does: Anthropic develops and trains the Claude family of AI models. Anthropic provides the trained model to Amazon for deployment on Amazon's infrastructure.
Anthropic cannot access your prompts, documents, or Claude's responses. Anthropic has no access to the Amazon infrastructure where Claude is deployed.
Amazon does not provide Anthropic with access to your prompts, documents, or responses. In order to run AI models like the Anthropic models you access through Bells Up AI, Amazon maintains "Model Deployment Accounts", which model developers like Anthropic do not have access to:
"Model providers don't have any access to those accounts. After delivery of a model from a model provider to [Amazon], Amazon Bedrock will perform a deep copy of a model provider's inference and training software into those accounts for deployment. Because the model providers don't have access to those accounts, they don't have access to Amazon Bedrock logs or to customer prompts and completions."
Anthropic's own contract confirms this: the Service Specific Terms state that Bedrock deployment "does not give Anthropic access to any Customer instance within the applicable Cloud Platforms, including the Inputs or Outputs they contain" (Anthropic Service Specific Terms, Section D.2, effective June 8, 2026).
The Anthropic Commercial Terms of Service explicitly prohibit Anthropic from training models on your prompts, documents, or Claude's responses:
"Anthropic may not train models on Customer Content from Services."
While Anthropic never receives the content of your prompts or responses, Amazon may share non-content usage information with third-party model providers:
"We may share information, that does not include Your Content, about your use of a third-party model with the provider of that third-party model."
This metadata may include identifiers such as Bells Up AI's AWS Account ID, the AWS region, the model used, request counts, token usage, and timestamps. It contains no content from your prompts, documents, or responses.
The Anthropic Commercial Terms of Service, together with Anthropic's Service Specific Terms for cloud platforms, govern how Anthropic must treat data processed through Amazon Bedrock. These terms apply to Bells Up AI as an Amazon Bedrock customer, and provide the following protections:
Amazon provides two distinct services relevant to how your data is handled:
What Amazon Bedrock Does: Amazon Bedrock is the service that hosts and runs the Claude AI models. When you submit a prompt, Bells Up AI sends it to Amazon Bedrock, which processes it through Claude and returns the response.
Amazon Bedrock's Core Commitments:
No Storage of Your Prompts or Responses:
"Amazon Bedrock uses a zero operator access (ZOA) data security model. This means no operators of the service can access model input or output. Also, Amazon Bedrock uses a zero data retention (ZDR) data security model. This means that by default, Amazon Bedrock does not store model inputs or outputs."
No Training on Your Data:
Amazon does not use your prompts and responses to train its own models, and does not share them with the model provider. AWS states that retained inputs and outputs (for the limited set of models that require retention) are "stored and processed by AWS and are not shared with third-party model providers."
Where Your Data Is Processed: For every Claude model except Claude Sonnet 5.5, Bells Up AI accesses Claude through a US cross-region inference profile on Amazon Bedrock. Each request is processed in one of the profile's US regions — us-east-1 (Northern Virginia), us-east-2 (Ohio), or us-west-2 (Oregon) — as AWS selects for capacity. Your data is not routed outside the United States; data stored at rest remains in the source region.
Claude Sonnet 5.5 Requests May Be Processed Outside the United States: Amazon does not currently offer Claude Sonnet 5.5 through a US inference profile, so Bells Up AI accesses it through Amazon Bedrock's global cross-region inference profile. AWS may process each Claude Sonnet 5.5 request in any AWS commercial region, including regions outside the United States. Amazon still does not store or log your prompts or responses, and Anthropic still does not receive them. Claude Sonnet 5 is the default Claude model; Claude Sonnet 5.5 is used only when you select it.
The optional “Improve my prompt” tool sends the draft prompt to Amazon Bedrock’s prompt-optimization service. The tool sends your draft prompt to Amazon Bedrock regardless of the model you select. Conversations, documents, and workflow runs are processed by the model you selected.
Amazon Bedrock runs automated content scanning on data processed through the service. If that scanning flags apparent child sexual abuse material, the AWS Service Terms provide:
"If we detect apparent child sexual abuse material ("CSAM"), you agree and instruct that we may: (a) review the flagged input or output to determine if it is CSAM, and (b) report the incident to the National Center for Missing and Exploited Children or other authority."
The Service Terms also provide that, for certain models identified on Amazon's Bedrock abuse-detection documentation, Amazon Bedrock stores inputs and outputs for up to 30 days to detect terms-of-service violations, and traffic flagged by automated classifiers for those models may be subject to human review by AWS. None of the models available through Bells Up AI are identified on that list as of this review.
Apart from these provisions, Amazon's abuse-detection documentation describes a zero operator access model:
"Amazon Bedrock uses a zero operator access (ZOA) data security model. This means no operators of the service can access model input or output."
What this means:
This automated scanning is narrower in scope than the abuse monitoring systems used by direct API providers like OpenAI or Google, which retain data for up to 30 or 55 days and may involve human review of flagged content. Amazon Bedrock's abuse detection operates at the infrastructure level and does not involve the model provider (Anthropic).
What This Means: Separately from Amazon Bedrock, the Bells Up AI application itself runs on Amazon's cloud infrastructure. This includes:
Can Amazon Access This Data?
Amazon operates the physical servers and storage infrastructure we use. Amazon's access to data stored on its infrastructure is governed by contract and verified by independent audits, which test whether Amazon's actual practices match its contractual commitments:
"AWS will not access or use, or disclose to any third party, any Customer Data, except, in each case, as necessary to maintain or provide the Services, or as necessary to comply with the law or a valid and binding order of a governmental body (such as a subpoena or court order)."
This prohibits Amazon from using your data to develop Amazon's own AI or other products, or from providing your data to others for such purposes.
Amazon's SOC 2 Type II certification provides independent verification that Amazon maintains and follows these access controls.
Technical Protections:
| Protection | Implementation |
|---|---|
| Encryption in transit | TLS 1.2+ for all communications |
| Encryption at rest | AES-256 for all stored data |
| Server storage | Encrypted at the hardware level |
| Access controls | Credentials managed through Amazon's identity system; no hardcoded passwords |
Bells Up AI's use of Amazon services is governed by:
Under the Data Processing Addendum, Amazon acts as a "data processor" — meaning Amazon processes data on our behalf according to our instructions, rather than controlling or owning the data.
Amazon Bedrock and the underlying infrastructure maintain the following certifications:
We encourage you to review the source documents:
| Document | What It Covers | Link |
|---|---|---|
| Anthropic Commercial Terms of Service | No-training commitment, content ownership | View |
| Anthropic Service Specific Terms | Cloud-platform (Bedrock) no-access commitment (Section D.2) | View |
| Amazon Bedrock Data Protection | No-storage, no-training, no-access commitments | View |
| Amazon Web Services Service Terms | Bedrock-specific terms (Section 50.12), abuse detection, metadata sharing | View |
| Amazon Web Services Data Processing Addendum | Amazon's role as processor, access limitations | View |
| Amazon Bedrock Security & Compliance | Certifications (SOC, ISO, HIPAA) | View |
If you have questions about how your data is protected when using Claude through Bells Up AI, contact us at info@bellsup.ai.
This document describes data handling for Claude models accessed via Amazon Bedrock. Other models available through Bells Up AI have different data flows — see the privacy information page for each model family.
This disclosure is provided for informational purposes. Bells Up AI does not provide legal advice to our customers, and attorneys selecting AI models should exercise their independent professional judgment regarding model selection. We believe prudent AI risk management practices include considering the risks of using particular models and assessing the applicability of specific regulatory and contracting requirements.