At Lumior Technologies ("Lumior", "we", "us", or "our"), privacy is not an afterthought — it is a core structural component of the engineering process. We build systems from first principles, ensuring that data protection, containment, and compliance are hardcoded into every line of code. This Privacy Policy describes how we collect, use, process, and safeguard information across our technology ecosystem, including our specialized services: AI model development, applications, games, SaaS platforms (healthcare & education), social networks, dating platforms, and cybersecurity services.
1. Information We Collect
Because we operate across multiple technology verticals, the nature of the data collected depends on which Lumior services you interact with:
- Lumior Cortex & Lingua (AI & LLMs): We process inputs, prompt transcripts, telemetry, and uploads submitted to our models. Data is isolated based on enterprise access rules.
- Lumior Vitalis (Healthcare SaaS): We collect protected health information (PHI), electronic medical records (EMR), patient workflows, and telemetry data. All such data is processed under strict adherence to HIPAA standards and business associate agreements (BAAs).
- Lumior Scholar (EdTech SaaS): We collect student profile data, grading analytics, and curriculum progression details. All handling complies with FERPA, GDPR, and COPPA where applicable.
- Lumior Spark & Nexus (Dating & Social): We process profile demographics (e.g., age, gender, interests), matchmaking preferences, geolocation data (if consented to), media uploads (photos/videos), and chat logs to enable social connectivity and matching algorithms.
- Lumior Sentinel (Cybersecurity): We collect network logs, system activity metrics, authorization flows, and potential threat profiles to perform real-time security monitoring and mitigation.
- General Interactivity: Contact details (email address), account credentials, subscription information, and web cookies.
2. How We Use and Process Your Information
We process your data strictly to execute the service requests you make, to optimize the security of our platforms, and to improve system performance:
- Service Execution: Provisioning user dashboards, facilitating dating matches, storing medical logs securely, and routing network traffic.
- Model Training Optimization: For Cortex and Lingua, prompts may be evaluated for tuning, unless opt-out preferences are enabled or when dealing with enterprise-secured sandboxes.
- Safety and Security: Detecting, preventing, and containing fraud, cybersecurity intrusions, and malicious user conduct (e.g., on Spark or Nexus).
Important Notice on Health Data
Strict Isolation: Patient data processed within our Lumior Vitalis healthcare SaaS vertical is isolated entirely. Under no circumstances is patient PHI used to train general AI models, shared with third parties for advertising, or stored outside verified HIPAA-compliant, encrypted environments.
3. Security Architecture & Threat Protection
Backed by our Sentinel cybersecurity infrastructure, your data is secured using advanced cryptographic standards. We apply zero-trust architecture internally, meaning data access requires multi-tier cryptographic verification at every boundary. Data is encrypted in transit using TLS 1.3 and at rest using AES-256-GCM. We conduct automated internal penetration testing and maintain real-time telemetry on threat isolation.
4. Data Sharing & Third Parties
We do not sell, trade, or rent your personal information to third parties. We share data only with trusted infrastructure providers (e.g., AWS, GCP, Azure) to maintain servers, or when legally compelled by law enforcement under verified jurisdiction. In the event of a merger or acquisition, all data remains governed by this Privacy Policy until a new policy is explicitly agreed upon.
5. User Rights and Controls
Regardless of your geographic location, we believe in giving you control over your digital footprint. Under GDPR (Europe) and CCPA (California), you have the right to:
- Access a portable copy of all personal data we store associated with your profile.
- Request correctable updates to outdated or inaccurate information.
- Request complete deletion ("the right to be forgotten") of your records, subject to active regulatory record-keeping obligations.
- Opt out of automated matching systems, training pipelines, and optional analytics tools.
To exercise any of these rights, contact our Data Protection Officer at privacy@lumior.io.
6. Children's Privacy and Age Limits
Our dating vertical, Lumior Spark, strictly forbids registrations by anyone under 18 years of age. For our EdTech platform, Lumior Scholar, we comply with COPPA rules; registration is handled via verified educational institutions, and we do not collect personal identifiers from minor students without explicit school/parental consent.
7. Policy Updates
We may modify this policy periodically to reflect operational adjustments or regulatory compliance changes. All updates will be published on this page, and significant amendments will be communicated directly via email or system dashboards.