Security at Lumi

Lumi accesses your most personal tools. Here's exactly how we protect your data.

Architecture

Lumi is designed with a privacy-first architecture. We send to our servers only what's needed to answer your request, encrypt it in transit, and never use it for advertising or to train AI models without your consent.

On your device

Your Lumi session credentials and your per-service permission grants are stored in your device's hardware-backed secure storage (Android Keystore or iOS Keychain) — not on our servers.

On our servers

Answering your requests, connecting to third-party services, and resuming your chat history across devices run on our backend. Data sent to our servers is encrypted in transit (TLS 1.2 or higher).

Third-party connections

When you connect Lumi to a service like Slack or Google Drive, Lumi authenticates directly with that service using OAuth 2.0. The resulting access tokens are stored on our servers, encrypted at rest, and never returned to the app. We never see or store your passwords.

What we never do

  • Never use your data to train AI models without your consent
  • Never sell, rent, or trade your personal information
  • Never display ads or use your data for ad targeting
  • Never capture your screen except on the chat turn you initiate
  • Never access services you haven't explicitly connected
  • Never share data with third parties except to fulfill your requests

Encryption

In transit: All data transmitted between the App, our servers, and third-party services uses TLS 1.2 or higher with forward secrecy.

At rest: Connected-service access tokens are sealed with authenticated encryption before they are written to our database, and account passwords are stored only as salted one-way hashes.

Key management: Encryption keys are managed securely and support rotation.

Enterprise controls

Lumi Business and Enterprise plans include controls that IT teams expect:

  • SSO/SAML: integrate with Okta, Azure AD, Google Workspace
  • Role-based access: executive, manager, IC, and guest permission levels
  • Audit logging: every action logged with timestamp, user, service, and result
  • Admin console: manage integrations, policies, seats, and data retention
  • Data residency: choose storage region for organizational data
  • Scoped indexing: admins control which services and channels are searchable

Compliance

SOC 2

Type II in progress

GDPR

Alignment in progress

CCPA

Alignment in progress

HIPAA

BAA planned

Responsible disclosure

Found a security issue? We take all reports seriously. Email lumi-security@nexoragroup.dev with details. We aim to acknowledge within 24 hours and resolve critical issues within 72 hours.