Lumina
PHOTO STUDIO

Lumina privacy policy

Lumina is self-hosted. Your photographs and the data derived from them stay on infrastructure controlled by the person who runs this instance. They are never sent to us, because there is no “us” to send them to.

Last updated 14 September 2026. This policy covers the application named Lumina at https://luminagallery.in, operated by the individual reachable at csa_rv@outlook.com.

What Lumina stores

All of it is held in this instance's own database and object storage.

Google user data

This section describes, specifically, every way Lumina interacts with data obtained through Google APIs.

Scopes requested, and why

What Google data Lumina accesses, and how it is used

Google data is used for one purpose: to provide the import and search features you asked for, to you, in your own library. It is not used for any other purpose.

How Google data is stored and protected

Imported images and their derived data live in this instance's private database and object storage, which are not publicly reachable. OAuth tokens are stored server-side, never exposed to the browser, and never written into logs. The whole application is served over HTTPS only, and every page except this one, the homepage and the terms sits behind sign-in restricted to a single authorised owner.

What Lumina never does with Google data

Lumina's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Retaining and deleting Google data

Tokens are kept only while a source is connected. Disconnecting a Google source on the Sources page deletes its stored access and refresh tokens immediately; Lumina can then read nothing further from that account. Imported photographs are yours and are kept until you delete them, at which point the image, its thumbnails and everything derived from it are removed from the library. Nothing is retained in a separate archive, and there is no backup held by any third party.

You may revoke Lumina's access at any time, independently of this application, at Google account permissions. To have any remaining data removed, write to csa_rv@outlook.com.

What Lumina does not do

Who can see your library

This instance is restricted to a single signed-in owner. Photographs are served only to that authenticated session. If the owner chooses to publish a folder, that folder — and only that folder — becomes reachable at a link protected by a PIN they set; nothing else in the library is exposed by doing so.

Children

Lumina is not directed at children and is not offered to anyone under 13.

Changes to this policy

If this policy changes, the date at the top of this page changes with it, and the revised policy is published here.

Contact

Questions about this policy, or requests concerning your data: csa_rv@outlook.com.