Privacy Policy — Lumen-Pro

Version 2026-06-16 · F1661 · Template — consult counsel.

What we collect

What we don't collect

Google user data (Gmail, Calendar, Drive)

When you connect a Google account, Lumen-Pro requests the minimum read-only scopes needed for your flows: Gmail (gmail.readonly — read messages; no send, no delete), Google Calendar (calendar.readonly — read events; no create, no edit), and Google Drive (drive.metadata.readonly — filenames/metadata only; no file content). You see and approve every scope in plain English at /pro/connections and can revoke per-connector with one click.

Lumen-Pro uses Google user data only to operate the specific flows you configure: we read the data a trigger needs, evaluate your flow, and perform the action you defined. We do not use Google user data for advertising, we do not sell or transfer it, we do not use it to train generalized AI/ML models, and humans do not read it except where you explicitly ask for support, where required for security/abuse investigation, or where required by law. Google user data is encrypted in transit (TLS 1.2+) and access tokens are encrypted at rest (AES-256-GCM).

Limited Use disclosure. Lumen-Pro’s use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Where data lives

Oracle Cloud (Frankfurt, EU). Audit log mirrored to Elite Agentic Solutions tenant.

Retention

Your rights

GDPR + CCPA: export, deletion, rectification. Initiate at /pro/account. Email [email protected] for anything else.

Subprocessors

Cookies

One session cookie (lumenpro_session, HttpOnly, Secure, SameSite=Lax). No analytics cookies on this app.

Last updated: 2026-06-16.