Privacy Policy for Lumi
Effective Date: February 11, 2026
This Privacy Policy describes how Lumi ("we", "us", or "our") collects, uses, and shares information when you
use our mobile application (the "App"). We are committed to protecting your privacy and being transparent
about our data practices.
1. Information Collection
1.1 Data You Voluntarily Share
When you start using Lumi, you may choose to provide us with specific details to enhance your experience:
- Personalization Inputs: This includes your current emotional state (mood), key
challenges you are facing, and your self-improvement goals. We use this to curate affirmations that
resonate with you.
- Profile Basics: Optional information such as your age group or gender identity, which
helps us refine our content recommendations.
- Settings: Your preferences for when and how often you'd like to receive notifications.
1.2 Data Collected Automatically
To ensure the App functions correctly and to improve its performance, we automatically log certain
non-personal data:
- Technical Specs: Your device model, operating system version, and the version of the
App you are running.
- Activity Metrics: Anonymous insights into how you interact with the App (e.g., which
screens are visited most), tracked via PostHog.
- Transaction Records: Receipt validation data necessary to verify and maintain your
"Pro" subscription status.
1.3 Sensitive Data
While we process your mood and goal inputs to provide the service, we do not link this data to your
real-world identity (like your name or email address) in our analytics.
2. Use of Information
We process the collected data for the following specific business purposes:
- Tailored Experience: To deliver content that matches the mood and goals you selected.
- Product Enhancement: To analyze user behavior trends so we can fix bugs and build
requested features.
- Account Administration: To manage your subscription tiers and ensure you have access to
paid features.
- Communication: To send you the daily affirmations you have requested via push
notifications.
3. Third-party services
We use the following third-party services that may collect information:
- RevenueCat: Manages subscription billing infrastructure. They verify your purchase
receipts. View Policy.
- PostHog: Provides app analytics. They help us understand app usage without identifying
individual users. View Policy.
4. Data Storage and Retention
- On-Device Storage: Your personal collections, such as "Favorited" quotes and any custom
affirmations you write, are stored locally on your device.
- Retention Period: We retain analytical data only for as long as necessary to improve
our service, after which it is deleted or aggregated. You can clear your local data at any time by
deleting the App.
5. Your Privacy Rights (GDPR & CCPA)
Regardless of where you live, we support your rights to control your data:
- Access & Correction: You can view and modify your personal preferences directly within
the App's settings menu.
- Data Deletion: You may delete the App to remove all locally stored data. For any
cloud-synced data (if applicable in future updates), you may contact us to request deletion.
- Opt-Out: You can turn off push notifications or tracking features via your device's
operating system settings.
6. Your GDPR Rights
As an EU resident, you have the following rights:
- Right of access (Article 15): Obtain confirmation of data processing and access to your
data
- Right to rectification (Article 16): Correct inaccurate or incomplete data
- Right to erasure (Article 17): Request deletion of your data ("right to be forgotten")
- Right to restriction (Article 18): Limit how we use your data
- Right to data portability (Article 20): Receive your data in a structured,
machine-readable format
- Right to object (Article 21): Object to processing based on legitimate interests
- Right to withdraw consent: Withdraw consent at any time without affecting prior
processing
- Right to lodge a complaint: File a complaint with the CNIL (Commission Nationale de
l'Informatique et des Libertés) in France or your local supervisory authority
7. Children's Safety
Lumi is intended for general audiences and is not directed at children under the age of 13. We do not
knowingly compromise the privacy of children. If you are a guardian and suspect your child has provided us
with personal data, please contact us immediately for removal.
8. Changes to this privacy policy
We may revise this policy to reflect beneficial changes to our App or to comply with new laws. If we make
significant changes, we will notify you through the App. The date at the top of this page indicates the
latest revision.
Your continued use of the app after changes become effective constitutes acceptance of the revised policy.
9. Contact Us
If you have questions about this policy or your data rights, please contact our support team:
Email: support@codeshaft.app