Security at Lumi
Lumi accesses your most personal tools. Here's exactly how we protect your data.
Architecture
Lumi is designed with a privacy-first architecture. We send to our servers only what's needed to answer your request, encrypt it in transit, and never use it for advertising or to train AI models without your consent.
On your device
Your Lumi session credentials and your per-service permission grants are stored in your device's hardware-backed secure storage (Android Keystore or iOS Keychain) — not on our servers.
On our servers
Answering your requests, connecting to third-party services, and resuming your chat history across devices run on our backend. Data sent to our servers is encrypted in transit (TLS 1.2 or higher).
Third-party connections
When you connect Lumi to a service like Slack or Google Drive, Lumi authenticates directly with that service using OAuth 2.0. The resulting access tokens are stored on our servers, encrypted at rest, and never returned to the app. We never see or store your passwords.
What we never do
- Never use your data to train AI models without your consent
- Never sell, rent, or trade your personal information
- Never display ads or use your data for ad targeting
- Never capture your screen except on the chat turn you initiate
- Never access services you haven't explicitly connected
- Never share data with third parties except to fulfill your requests
Encryption
In transit: All data transmitted between the App, our servers, and third-party services uses TLS 1.2 or higher with forward secrecy.
At rest: Connected-service access tokens are sealed with authenticated encryption before they are written to our database, and account passwords are stored only as salted one-way hashes.
Key management: Encryption keys are managed securely and support rotation.
Enterprise controls
Lumi Business and Enterprise plans include controls that IT teams expect:
- SSO/SAML: integrate with Okta, Azure AD, Google Workspace
- Role-based access: executive, manager, IC, and guest permission levels
- Audit logging: every action logged with timestamp, user, service, and result
- Admin console: manage integrations, policies, seats, and data retention
- Data residency: choose storage region for organizational data
- Scoped indexing: admins control which services and channels are searchable
Compliance
SOC 2
Type II in progress
GDPR
Alignment in progress
CCPA
Alignment in progress
HIPAA
BAA planned
Responsible disclosure
Found a security issue? We take all reports seriously. Email lumi-security@nexoragroup.dev with details. We aim to acknowledge within 24 hours and resolve critical issues within 72 hours.