Privacy Policy
Last updated: September 27, 2026
This policy explains what Lumora Build collects when you use a Lumora account, pay for a plan, spend credits, contact support or receive our emails — and what we do with it.
Lumora Build ("Lumora", "we", "us") makes a family of apps — among them War Map Live, RankBloom, AiMeetOS, ForgeHome, KickOrKiss, FlyBio and AI Video Generator — that share one sign-in: the Lumora account at id.lumorabuild.com. This policy covers that account and everything that is shared across the apps: sign-in, plans and payments, credits, support and email. Each app may also have its own privacy page for what is specific to it (see section 11); where the two differ on something only that app does, the app's page wins.
1. What we collect
| Category | What it includes | Why |
|---|---|---|
| Your account | Your email address, the name you choose to show, when the account was created, and how you sign in (an emailed code or link, or Google). If you sign in with Google we receive your name, email address and Google account identifier — nothing else from your Google account. | To create your account, sign you in, and let the Lumora apps you sign in to know it is you |
| Sign-in and security records | When you sign in or ask for a sign-in code: your IP address and the approximate location it indicates (country, region, city), your browser and device details (for example browser version, screen size, language and time zone), and a device identifier stored in your browser. | To protect accounts, stop abuse, and email you when your account is signed in, so you notice if it was not you |
| Plans and payments | Your plan, its status and renewal dates, what you bought and paid, and the identifiers Stripe gives your customer record, subscription and checkout. We also keep the records Stripe sends us about each payment. We never see or store your card number — you enter it on Stripe's own checkout page. | To sell you a plan, give you the credits you paid for, and keep accounting records |
| Credits and Vekrn | Your credit balance and a ledger of credits granted and spent (which app, how many, when), including when monthly credits expire. If you choose to add a crypto wallet address to withdraw Vekrn, that address and your withdrawal requests. | To run the credit system the apps that charge credits use, and to process withdrawals you ask for |
| Support | The messages you send us, our replies, and notes our staff add to your request — including requests an AI assistant files for you when you ask it to. | To answer you and fix the problem |
| Emails we send you | A copy of each email we send (address, subject, content) and its sending status, plus your email preferences. | To send sign-in codes, receipts and notices, honour your preferences, and check delivery problems |
| Connections you add (optional) | If you connect a social media account or another service to a Lumora app, the details needed to act on your behalf there — the account's name and identifier, and the access that service grants. | To do what you asked, such as publishing a post you approved |
| What you make in our apps | The prompts, projects, posts, meetings, designs and other content you create. The app you use keeps it; its own privacy page says what it stores. | To give you the result and let you come back to it |
| How you use our websites | Pages visited, clicks and scrolling, device and browser type, and roughly where you are, collected by Google Analytics and Microsoft Clarity (see section 3). | To see what works and fix what does not |
2. How we use it
- Create and run your Lumora account and sign you in to the Lumora apps you use it with.
- Sell plans, process payments through Stripe, and grant the credits you are owed each month.
- Keep your credit balance, and record what each app charged.
- Answer support requests.
- Send the emails you need (sign-in codes, security alerts, receipts, account notices) and, if you allow them, updates and offers.
- Protect accounts and prevent abuse.
- Understand how our websites are used and improve them.
We do not use your data to make decisions about you that have legal or similarly significant effects, and we do not build advertising profiles of you.
3. Cookies and similar technology
- Sign-in: the Lumora account uses one cookie,
lumora_id_session, that keeps you signed in for up to 30 days. It isHttpOnlyandSecure. A few short-lived cookies (minutes, not days) hold your place while a sign-in code or a connection is in progress. Each app sets its own sign-in cookie when you sign in there. - Analytics: most of our websites, including the Lumora account pages, load Google Analytics and Microsoft Clarity, which set their own cookies to count visits and to record how pages are used (for example clicks and scrolling) so we can find design problems. War Map Live and TechMap Live load Google Analytics only, with no advertising tag and no consent banner.
You can block or delete cookies in your browser. Blocking the sign-in cookie means you cannot stay signed in.
4. Who we share it with
We share personal data only with the companies that run parts of the service for us, and only what they need:
- Cloudflare — hosting, databases and file storage for every Lumora app, sending and receiving our email, and some AI processing.
- Stripe — payments and subscriptions.
- Google — "Sign in with Google" (only if you use it) and Google Analytics.
- Microsoft — Clarity, our website usage analytics.
- AI providers — see section 5.
- PostForMe and Composio — only if you connect a social media account, to act on it for you.
- Composio — also if you add your own Composio API key in the Lumora account, so a Lumora AI agent can use the services you linked there (for example email, documents, calendars or code hosting). We send Composio what it needs to do what you asked.
5. AI features
When you use an AI feature in a Lumora app, what you enter for that feature — your prompt, your text, files you choose to include — is sent to the AI provider that powers it and the result is sent back. Today that is mainly Alibaba Cloud Model Studio for text and Cloudflare Workers AI for images and as a backup for text. Living Core sends what a visitor writes there (for example a message in a bottle) to NVIDIA's API instead, and its own experiment describes this in more detail. Some research tools also send a search query to a web search service (Tavily or DuckDuckGo). An app's own privacy page lists anything else it uses. We record which AI model ran for each request and how much it used; the app keeps your conversation and results so it can show them to you. Do not put information into an AI feature that you would not want processed this way.
6. How long we keep it
- Your account and preferences: for as long as your account exists.
- Your credit ledger and Vekrn history: kept even after your account is deleted (section 7).
- Payment records: for as long as we need them for accounting and tax, including after an account is deleted.
- Sign-in and security records, and copies of emails we sent: we do not yet delete these on a fixed schedule. We keep them to investigate abuse and to protect accounts. You can ask us to delete yours (section 7).
- Support conversations: kept after a request is closed, and after an account is deleted, so a past problem can be looked up again.
- Content in an app: as that app's own page describes.
7. Your choices and rights
- See and correct your details — your name, email and sign-in methods are in Account settings.
- Choose which emails you get — in Email preferences, or with the unsubscribe link in any optional email. Security, account and payment emails are always sent.
- Delete your account — at the bottom of Account settings. This deletes your Lumora account and its sign-in data: your profile, sign-in methods, sessions, devices, app memberships and saved service connections. It does not delete content you created inside an app (for example a FlyBio page) — that lives in the app's own database and is deleted through the app itself, as its own privacy page describes (section 11). Some records also remain, as section 6 explains: payment records, your credit ledger, support conversations, sign-in and security records, copies of emails we sent, and records of connected social accounts and embed keys. Contact us through the central support page if you want any of those erased too, and we will do it unless we must keep them by law.
Depending on where you live, you may also have the right to access or export your data, object to or limit how we use it, and withdraw consent you gave. To use any of these rights, contact us through the central support page while signed in to your account. If you are unhappy with how we handled your data, you can also complain to your local data protection authority.
8. Security
Links to our apps use HTTPS, and your sign-in cookie is marked Secure, so browsers only ever send it over HTTPS. Sign-in codes are stored only as a keyed fingerprint, never as the code itself, and embed keys only as a fingerprint of the key. Card details never reach our servers. No system is perfectly secure, but we work to protect your data with reasonable safeguards.
9. Children
Lumora apps are not directed at children under 13 (or the minimum age where you live), and we do not knowingly collect their personal data. Some apps set a higher minimum age in their own terms. If you believe a child has given us personal data, contact us and we will delete it.
10. International transfers
Lumora runs on Cloudflare's worldwide network, and our providers process data in several countries, including the United States and, for AI text, Singapore. Your data may therefore be processed outside the country where you live.
11. App-specific privacy pages
- War Map Live
- TechMap Live
- AiMeetOS
- FlyBio
- AI Video Generator
- InfluQa — InfluQa has its own policy and its own contact addresses for privacy questions.
An app that is not listed follows this policy.
12. Changes to this policy
When we change this policy we update the date at the top. If a change matters to how we use your data, we will also tell you by email or in the Lumora account.
13. Contact us
Lumora Build
Support: id.lumorabuild.com/account/support
See also our Terms of Service.