Privacy Policy
Controller: <LEGAL_ENTITY>, governed by the laws of
This policy explains what data the Lumen app (“Lumen”, “we”, “us”) collects, why, and how you can control it.
What we collect
- Email address — used to sign you in and to contact you about your account.
- Display name — shown in the app.
- Journal entries — the free-text notes you write in your journal.
- Reading questions — the question you type when you ask for a tarot reading.
- Drawn cards and dates — which cards came up in each reading, and when.
- Usage counters — how many readings you’ve generated today, to enforce the free daily limit.
- Subscription status — whether you have an active Premium subscription and when it expires.
- Interface language — your chosen app language (English or Ukrainian).
We do not use analytics or advertising trackers of any kind. Lumen has no ad network, no analytics SDK, and does not build advertising profiles.
Sign in with Apple
If you choose to hide your email when signing in with Apple, Apple gives us a private relay address instead of your real one. We only ever see and use that relay address — we never see your real Apple ID email.
Who we share data with
We use a small number of service providers to run Lumen. None of them are permitted to use your data for their own purposes.
- Supabase — hosts our database, handles authentication, and runs the backend functions that power the app.
- OpenRouter and its model provider (Anthropic) — when you request a reading, the question you typed and the cards you drew are sent to OpenRouter, which routes the request to a language model (by default, an Anthropic model) to generate the interpretation. This means the text of your question leaves our servers to be processed by these providers. Your saved journal entries are never sent to the AI — only the specific question, spread, and cards for that one reading.
- RevenueCat — manages subscriptions. It’s given your Supabase user ID so it can track your entitlement, but not your email or journal content.
- Apple / Google — process your subscription payment through the App Store or Google Play. We never see or store your card details.
We do not sell your data, and we do not share it with anyone else.
Your rights
Depending on where you live, you may have the right to access, correct, delete, or export your data, and to object to how we process it. You can exercise most of these directly in the app (edit or delete a journal entry, update your profile, delete your account). For anything else, email support@lumentarotapp.com and we’ll handle it within a reasonable time.
Data retention and deletion
Deleting your account in the app (or by emailing support from your account’s address) deactivates it immediately: your profile becomes inaccessible, your email is disconnected from the login, and you’re signed out everywhere. Your journal entries and profile data are then automatically and permanently deleted within 30 days.
Until that automatic deletion runs, your data is kept in an inactive state so that a deletion can’t be triggered by mistake or by someone else. If you want your data removed sooner, email support@lumentarotapp.com and we’ll delete it by hand.
Records of your purchases may be retained separately by Apple, Google, and RevenueCat under their own retention policies — we don’t control those.
International data transfers
Our service providers may process data outside of
Children
Lumen is not directed at children under 13 (or under 16 in the EU/EEA), and we do not knowingly collect data from them. If you believe a child has created an account, contact us and we’ll delete it.
Security
Your data is protected by row-level security in our database — every table is scoped so that only you (and our automated backend, where strictly necessary) can read your rows. All traffic between the app and our servers is encrypted in transit.
We’ll update this policy if what we collect or share changes, and we’ll update the effective date above when we do.
This website
lumentarotapp.com is a static site with no cookies, no analytics, and no trackers. It’s hosted on GitHub Pages; GitHub may log visitor IP addresses as part of operating its hosting infrastructure, independently of us.