Lumina is self-hosted. Your photographs and the data derived from them stay on infrastructure controlled by the person who runs this instance. They are never sent to us, because there is no “us” to send them to.
Last updated 14 September 2026. This policy covers the application named Lumina
at https://luminagallery.in, operated by the individual reachable at
csa_rv@outlook.com.
All of it is held in this instance's own database and object storage.
This section describes, specifically, every way Lumina interacts with data obtained through Google APIs.
https://www.googleapis.com/auth/drive.readonly — read-only. Used to list
the contents of the Google Drive folder you explicitly point Lumina at, and to
download the image files inside it so they can be imported into your library.
Lumina requests read-only access because importing is all it does; no narrower
Drive scope allows a folder to be browsed and its files read.https://www.googleapis.com/auth/photospicker.mediaitems.readonly —
read-only. Used to download only those photographs you personally select in
Google's own Photos Picker. Lumina cannot see, list or search your Google Photos
library; it receives exactly the items the picker hands back, and nothing else.
This is the narrowest available Google Photos scope.openid, email, profile — used only to identify
which Google account a connection belongs to, so the Sources page can show it and so
the right token is refreshed. No profile information is used for anything else.Google data is used for one purpose: to provide the import and search features you asked for, to you, in your own library. It is not used for any other purpose.
Imported images and their derived data live in this instance's private database and object storage, which are not publicly reachable. OAuth tokens are stored server-side, never exposed to the browser, and never written into logs. The whole application is served over HTTPS only, and every page except this one, the homepage and the terms sits behind sign-in restricted to a single authorised owner.
Lumina's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
Tokens are kept only while a source is connected. Disconnecting a Google source on the Sources page deletes its stored access and refresh tokens immediately; Lumina can then read nothing further from that account. Imported photographs are yours and are kept until you delete them, at which point the image, its thumbnails and everything derived from it are removed from the library. Nothing is retained in a separate archive, and there is no backup held by any third party.
You may revoke Lumina's access at any time, independently of this application, at Google account permissions. To have any remaining data removed, write to csa_rv@outlook.com.
This instance is restricted to a single signed-in owner. Photographs are served only to that authenticated session. If the owner chooses to publish a folder, that folder — and only that folder — becomes reachable at a link protected by a PIN they set; nothing else in the library is exposed by doing so.
Lumina is not directed at children and is not offered to anyone under 13.
If this policy changes, the date at the top of this page changes with it, and the revised policy is published here.
Questions about this policy, or requests concerning your data: csa_rv@outlook.com.