Privacy Policy
1. Information We Collect
We collect information you provide directly to us, such as:
- Account information (email, name, profile picture from Google OAuth)
- Financial data you choose to analyze with our AI tools
- Usage data and interaction with our services
- Support communications
2. How We Use Your Information
We use the information we collect to:
- Provide and improve our AI-powered financial services
- Process payments and manage subscriptions
- Send service-related communications
- Analyze usage patterns to enhance user experience
- Ensure security and prevent fraud
3. Third-Party AI Providers
We collect information you provide directly to us, such as: To provide our services, we share certain data with trusted AI providers:
OpenAI
Financial queries and context are sent to OpenAI's API for analysis. Data is processed according to OpenAI's privacy policy and is not used to train their models.
Google (Gemini)
Some queries may be processed by Google's Gemini AI service. Data handling follows Google Cloud's security and privacy standards.
Anthropic
Selected analyses may use Anthropic's Claude models. Processing is governed by Anthropic's privacy commitments.
4. Data Security
We implement appropriate security measures including:
- Encryption in transit and at rest
- Regular security audits and monitoring
- Access controls and authentication
- Compliance with industry standards
5. Your Rights (GDPR)
If you're located in the EU, you have the right to:
- Access your personal data
- Rectify inaccurate data
- Erase your data ("right to be forgotten")
- Restrict processing
- Data portability
- Object to processing
6. Data Retention
We retain your data only as long as necessary to provide our services and comply with legal obligations:
- Raw transaction data: Deleted immediately after analysis completion (typically within seconds). This complies with GDPR data minimisation and storage limitation principles.
- Analysis results: Retained indefinitely to provide access to your research history and recommendations. Contains only processed insights, not raw financial data.
- Account data: Deleted within 30 days of account closure, except where retention is required by law.
7. International Data Transfers
Data may be processed in countries outside the EU. For such transfers, we use Standard Contractual Clauses (SCCs) and other appropriate safeguards to ensure adequate protection of your personal data.
8. Cookies and Tracking
We use essential cookies for authentication and security. Analytics cookies help us understand usage patterns. You can manage cookie preferences through your browser settings.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.
10. Contact Us
For questions about this Privacy Policy or to exercise your rights, please contact us at:
Email: contact@luminen.net
Data Protection Officer: support@luminen.net
Last updated: 2/7/2026
Version: 1.0