We value your privacy and data security. This Privacy Policy explains how we collect, use, store, and protect your personal information.
Last Updated: August 18, 2025
Welcome to Lumis Cross-Platform Communication Agent ("Lumis", "we", "our", or "us").
We value your privacy and data security. This Privacy Policy explains how we collect, use, store, and protect your personal information, as well as your rights when using Lumis.
Account Information
Email, username, or third-party login credentials (e.g., Slack, Discord, Telegram)
Basic identity information for account verification
Messages and Communication Data
Upon your authorization, we may access and process your communication data from platforms such as Slack, Discord, and Telegram to enable message aggregation, summarization, and notifications
We will never use your communication content for unrelated purposes without your explicit consent
Device and Technical Data
Device type, browser, operating system, IP address
Cookies and local storage data to maintain login sessions and improve user experience
Usage Data
Records of feature usage (e.g., number of summaries, conversations, external tool integrations)
Notification and delivery preference settings
We use the collected information for the following purposes:
To provide and improve Lumis' core features (message aggregation, summarization, notifications, conversations)
To deliver information according to your preferences
To ensure service security and stability (monitoring suspicious behavior, preventing misuse)
To conduct anonymized statistical analysis for product optimization
To provide product updates and service-related notifications with your consent
We use encryption and secure transmission (TLS/HTTPS) to protect your data. Your data is encrypted at rest with AES-256 encryption in Supabase data centers
Original chat records and emails exist only on your device and are not uploaded to our cloud.
Your communication data is only stored for the required processing period, after which it will be automatically deleted or anonymized
We will not sell your personal information to third parties
In some cases (e.g., infrastructure providers, service partners), we may share data with trusted third parties, provided they adhere to strict privacy and data protection obligations
We use cookies for the following purposes:
Strictly Necessary Cookies: To maintain login sessions and perform authentication (do not require additional consent)
Preference Cookies: To save user notification and interface settings
Performance and Analytics Cookies: To track visits and usage behavior in order to improve the product experience (require user consent)
You can clear or disable cookies at any time in your browser, though some features may not work properly.
You have the following rights regarding your personal information:
Right of Access – You may request access to the information we hold about you
Right of Rectification – You may correct inaccurate or incomplete information
Right of Erasure – You may request the deletion of your personal data
Right to Restrict Processing – You may limit how your data is processed in specific cases
Right to Data Portability – You may export and transfer your data
Right to Withdraw Consent – You may withdraw your consent to data collection and processing at any time
Communication data: Retained for 7 days by default, used only for summarization and conversation purposes
Account information: Deleted within 30 days after account deletion
Usage statistics and logs: May be retained in anonymized form for security and research purposes
Lumis services are intended for users aged 18 and above. If you are under 18, please use Lumis under parental or guardian supervision.
We may update this Privacy Policy to comply with laws, regulations, or service changes. Updates will be announced on our website or via email. For significant changes, we will seek your explicit consent.
If you have any questions about this Privacy Policy or how your data is processed, please contact us at:
Lumis is committed to complying with applicable data protection regulations, including but not limited to the GDPR (General Data Protection Regulation). Our privacy practices are designed to protect your personal data and ensure your privacy rights are respected.