LUMOBOND PRIVACY POLICY
INTRODUCTION · PRIVACY PRINCIPLES · SCOPE
LUMOBOND PRIVACY POLICY
1. Welcome to LumoBond
Privacy is fundamental to the relationship between LumoBond and every individual who chooses to use our Services.
LumoBond has been created to help people discover meaningful human compatibility through responsible technology. Because our Platform relies upon personal information, artificial intelligence and advanced computational systems, protecting user privacy is one of our highest priorities.
This Privacy Policy explains how LumoBond collects, uses, stores, protects, shares and otherwise processes information relating to individuals who interact with the LumoBond Platform.
Our objective is to ensure that every User clearly understands:
what information we collect;
why we collect it;
how we use it;
when we share it;
how long we retain it;
how we protect it;
what rights every User has regarding personal information.
Transparency is an essential principle of LumoBond.
Whenever reasonably possible, we seek to explain our data processing activities in clear and understandable language while maintaining the legal precision necessary for an international technology platform.
2. Our Commitment to Privacy
LumoBond believes that privacy is not merely a legal obligation but a fundamental design principle.
Accordingly, privacy considerations are incorporated throughout the design, development, deployment and continuous improvement of our Platform.
Our objective is to provide intelligent technology while minimizing unnecessary collection of personal information.
Where reasonably possible, LumoBond applies principles including:
Privacy by Design;
Privacy by Default;
Data Minimization;
Purpose Limitation;
Storage Limitation;
Security by Design;
Responsible Artificial Intelligence;
Transparency;
Accountability;
User Control.
These principles guide the development of current and future Services.
3. Scope of this Privacy Policy
This Privacy Policy applies to all components of the LumoBond Ecosystem unless a separate privacy notice expressly governs a specific Service.
Without limitation, this Policy applies to:
the official LumoBond website;
landing pages;
waitlist registration;
mobile applications;
wearable devices;
embedded firmware;
cloud infrastructure;
software platforms;
artificial intelligence systems;
compatibility engines;
identity profile systems;
developer services;
application programming interfaces (APIs);
customer support;
communication channels;
future products;
future services introduced by LumoBond.
Where additional privacy notices apply to specific Services, such notices shall supplement this Privacy Policy solely for those Services.
4. Who We Are
LumoBond AB (under formation) is the organization responsible for developing and operating the LumoBond Platform.
LumoBond develops software, artificial intelligence technologies, wearable devices and digital services designed to facilitate meaningful compatibility discovery between individuals.
Depending upon the specific Service used, LumoBond may act as:
Data Controller;
Joint Controller;
Data Processor,
as those terms are defined under applicable data protection legislation.
The specific role assumed by LumoBond depends upon the nature of the processing activity.
5. Our Privacy Philosophy
The LumoBond Platform has been designed around the belief that individuals should retain meaningful control over their personal information.
Accordingly, LumoBond strives to ensure that Users may:
understand what information is collected;
decide what information they choose to provide;
access their personal information;
request correction of inaccurate information;
request deletion where legally possible;
manage communication preferences;
exercise applicable privacy rights;
understand how Artificial Intelligence contributes to recommendations and compatibility analyses.
Artificial Intelligence shall assist Users---not replace human judgment.
Compatibility recommendations generated by LumoBond are intended solely as informational guidance and should never be interpreted as objective facts or guarantees.
6. Privacy Principles Governing Artificial Intelligence
Because Artificial Intelligence forms an important component of the LumoBond Platform, LumoBond applies additional privacy principles specifically relating to AI technologies.
Accordingly, LumoBond seeks to ensure that AI systems are developed and operated in a manner consistent with:
human oversight;
proportionality;
fairness;
transparency;
accountability;
security;
continuous monitoring;
ongoing improvement;
protection against unauthorized access;
compliance with applicable law.
Artificial Intelligence systems may evolve over time through updates and improvements.
Such improvements shall not alter LumoBond's commitment to protecting Users' personal information.
7. International Nature of the Platform
LumoBond intends to operate internationally.
Consequently, personal information may be processed in multiple jurisdictions depending upon:
User location;
infrastructure location;
cloud service providers;
legal requirements;
operational necessities;
future international expansion.
Whenever international transfers occur, LumoBond seeks to implement appropriate safeguards required under applicable law.
8. Relationship with Other Legal Documents
This Privacy Policy forms part of the overall contractual framework governing the LumoBond Platform.
Accordingly, this Policy should be read together with:
Terms of Use;
Cookie Policy;
Acceptable Use Policy;
Community Guidelines;
AI Policy & Disclaimer;
Intellectual Property Policy;
Data Retention Policy;
Security & Vulnerability Disclosure Policy;
Waitlist Terms;
and any additional legal documentation applicable to specific Services.
Where inconsistencies arise, mandatory applicable law shall prevail.
9. Future Development
Technology continuously evolves.
Accordingly, LumoBond may introduce:
new products;
new Services;
additional wearable technologies;
new Artificial Intelligence models;
enhanced compatibility methodologies;
new communication channels;
additional identity features;
expanded personalization systems.
Whenever such developments materially affect the processing of personal information, LumoBond will update this Privacy Policy where required under applicable law.
10. Contact Regarding Privacy
Questions relating to this Privacy Policy or the processing of personal information may be directed to LumoBond using the contact information published on the official LumoBond website.
Requests concerning privacy rights shall be handled in accordance with applicable data protection legislation.
DEFINITIONS · INTERPRETATION · CATEGORIES OF PERSONAL DATA
11. Purpose of these Definitions
The definitions contained in this Privacy Policy are intended to establish a consistent interpretation of the terminology used throughout the LumoBond Platform and all related legal documentation.
Unless the context expressly requires otherwise, capitalized terms shall have the meanings assigned below.
These definitions apply equally to the singular and plural forms of each defined term.
12. Definitions
12.1 "Account"
Account means a registered digital profile created by a User for the purpose of accessing one or more LumoBond Services.
An Account may contain authentication credentials, profile information, communication preferences, compatibility settings, identity information and other information associated with the User.
12.2 "AI Recommendation"
AI Recommendation means any compatibility suggestion, informational insight, personalization, ranking, explanation, notification or other output generated by Artificial Intelligence technologies operated by LumoBond.
AI Recommendations are informational in nature and shall not constitute professional advice or guarantees.
12.3 "Artificial Intelligence"
Artificial Intelligence or AI means computational systems, algorithms, machine learning models, neural networks, large language models, statistical models or automated analytical technologies used by LumoBond for purposes including, without limitation:
compatibility analysis;
personalization;
fraud prevention;
identity modelling;
recommendation generation;
platform security;
system optimization;
content moderation.
12.4 "Biometric Information"
Biometric Information means physiological or behavioral characteristics capable of identifying an individual where such information is processed by LumoBond.
Unless expressly stated otherwise, LumoBond does not intentionally collect biometric identifiers for the purpose of uniquely identifying Users.
Should future Services involve biometric processing, Users will receive additional information where required under applicable law.
12.5 "Cloud Infrastructure"
Cloud Infrastructure means servers, storage systems, networking resources, databases, security systems and computing environments used to deliver the Platform.
12.6 "Compatibility Data"
Compatibility Data means information generated through LumoBond's computational analysis of User responses, preferences, interactions and related data for the purpose of estimating compatibility.
Compatibility Data does not represent verified facts regarding any individual.
12.7 "Compatibility Score"
Compatibility Score means any numerical, graphical or descriptive representation generated by the Platform indicating an estimated compatibility level between Users or groups.
Compatibility Scores are probabilistic estimates only.
12.8 "Confidence Score"
Confidence Score means an informational indicator reflecting the estimated reliability or completeness of an AI-generated compatibility analysis based upon available information.
Confidence Scores do not guarantee correctness.
12.9 "Cookies"
Cookies mean small text files or similar technologies stored on a User's Device for purposes including authentication, functionality, analytics, security and personalization.
12.10 "Data Controller"
Data Controller means the natural or legal person determining the purposes and means of processing Personal Data as defined under applicable privacy legislation.
Depending upon the Service involved, LumoBond may act as Data Controller.
12.11 "Data Processor"
Data Processor means any organization processing Personal Data on behalf of LumoBond under contractual instructions.
12.12 "Device"
Device means any computer, smartphone, tablet, wearable product or other hardware capable of accessing the Platform.
12.13 "Device Data"
Device Data means technical information collected from Devices, including operating system version, browser type, language settings, application version, hardware model, diagnostics and similar technical information.
12.14 "Firmware"
Firmware means embedded software installed within LumoBond wearable devices or associated hardware.
12.15 "Identity Data"
Identity Data means information generated through User responses, preferences, interests, interactions and behavioral analysis forming part of the User's Identity Profile.
12.16 "Identity Profile"
Identity Profile means a continuously evolving computational representation of a User generated through voluntary information, platform interactions and analytical models.
Identity Profiles are informational only.
12.17 "Personal Data"
Personal Data means any information relating to an identified or identifiable natural person as defined under applicable privacy legislation.
Examples include:
name;
email address;
IP address;
account identifiers;
online identifiers;
location information;
device identifiers;
communication records;
profile information.
12.18 "Platform"
Platform means the complete LumoBond Ecosystem including:
website;
applications;
wearable devices;
firmware;
cloud services;
APIs;
databases;
artificial intelligence systems;
communication services;
customer support;
future products and services.
12.19 "Processing"
Processing means any operation performed upon Personal Data including collection, recording, organization, storage, analysis, use, disclosure, transmission, deletion or destruction.
12.20 "Sensitive Personal Data"
Sensitive Personal Data means special categories of Personal Data defined under applicable legislation, including information concerning health, racial or ethnic origin, political opinions, religious beliefs, biometric identifiers, genetic information, sexual orientation or similar legally protected categories.
Unless expressly stated otherwise, LumoBond does not intentionally collect Sensitive Personal Data.
12.21 "Services"
Services means every feature, function, product, software application, wearable capability, communication service, artificial intelligence function and digital offering provided by LumoBond.
12.22 "Third-Party Service Provider"
Third-Party Service Provider means any external organization engaged by LumoBond to provide infrastructure, hosting, analytics, payment processing, customer support, security or other operational services.
12.23 "Usage Data"
Usage Data means information concerning how Users interact with the Platform, including page visits, session duration, navigation patterns, feature usage, click events, error reports and similar analytical information.
12.24 "User"
User means any individual accessing, browsing, registering for or otherwise interacting with any component of the Platform.
12.25 "Wearable Data"
Wearable Data means technical information generated by LumoBond wearable devices during operation.
Depending upon future device capabilities, Wearable Data may include:
firmware version;
device diagnostics;
battery status;
connectivity status;
Bluetooth communication events;
software logs;
synchronization history;
security events.
13. Interpretation
Unless the context expressly requires otherwise:
references to the singular include the plural and vice versa;
references to one gender include every gender;
references to legislation include amendments and successor legislation;
headings are included solely for convenience and shall not affect interpretation;
the expressions "including", "includes" and "such as" shall always mean "including without limitation";
electronic communications shall satisfy any written communication requirement where legally permitted.
14. Categories of Personal Data
Depending upon how the Platform is used, LumoBond may process one or more categories of Personal Data including:
Identity Information
first name;
last name;
username;
profile information.
Contact Information
email address;
telephone number where voluntarily provided;
preferred language;
country or region.
Technical Information
IP address;
browser information;
operating system;
device identifiers;
application version;
crash diagnostics.
Platform Information
account activity;
compatibility preferences;
identity responses;
waitlist registration;
communication preferences;
customer support history.
Artificial Intelligence Information
AI-generated recommendations;
compatibility analyses;
confidence scores;
identity modelling outputs;
personalization settings.
Security Information
authentication events;
login history;
suspicious activity reports;
fraud detection indicators;
security logs.
15. Fundamental Privacy Principles
LumoBond seeks to ensure that all Personal Data is processed in accordance with the following principles:
lawfulness;
fairness;
transparency;
purpose limitation;
data minimization;
accuracy;
storage limitation;
integrity;
confidentiality;
accountability.
These principles govern every processing activity undertaken by LumoBond and provide the foundation for the remaining provisions of this Privacy Policy.
INFORMATION WE COLLECT
16. Introduction
The categories of information collected by LumoBond depend upon the manner in which a User interacts with the Platform.
Not every User will provide or generate every category of information described in this Privacy Policy.
LumoBond applies the principle of data minimization and seeks to collect only the information reasonably necessary to provide, improve, secure and maintain the Services.
The categories described below are intended to provide Users with a transparent understanding of the information that may be processed throughout the lifecycle of the Platform.
17. Information You Voluntarily Provide
17.1 General Principle
Users may voluntarily provide information directly to LumoBond when interacting with the Platform.
Such information may be provided during:
waitlist registration;
account creation;
profile completion;
customer support;
surveys;
questionnaires;
beta programs;
promotional campaigns;
community participation;
future purchases;
communication with LumoBond.
Providing certain information may be necessary for access to specific Services.
17.2 Account Registration Information
When creating an Account, LumoBond may collect information including:
first name;
last name;
username;
email address;
password credentials;
preferred language;
country or region;
profile image, where voluntarily provided;
communication preferences.
Users are responsible for ensuring that all registration information remains accurate and up to date.
17.3 Waitlist Registration
Users joining the LumoBond Waitlist may provide information including:
email address;
name;
country;
preferred language;
product interest;
marketing preferences;
referral information, where applicable.
Registration on the Waitlist does not create any contractual right to receive products, services or priority access.
17.4 Customer Support Information
When communicating with LumoBond, Users may voluntarily provide:
support requests;
correspondence;
screenshots;
diagnostic information;
technical questions;
suggestions;
complaints;
feedback.
Support communications may be retained for quality assurance, training, security and legal compliance purposes.
18. Identity Information
18.1 Identity Profile Information
The LumoBond Platform allows Users to voluntarily create Identity Profiles.
Identity Profiles may include information concerning:
interests;
preferences;
communication style;
values;
lifestyle characteristics;
hobbies;
goals;
personality-related responses;
compatibility preferences.
Identity Profiles are intended solely to improve Platform functionality.
18.2 Daily Question System
Users may voluntarily answer questions presented through the Daily Question System.
Responses may contribute to:
Identity Profile development;
Compatibility analysis;
AI recommendations;
personalization;
confidence calculations;
future Platform improvements.
Participation in the Daily Question System is voluntary unless a specific feature requires completion.
18.3 Compatibility Preferences
Users may choose to provide information relating to preferred compatibility criteria.
Such information may include:
friendship preferences;
relationship preferences;
networking interests;
professional collaboration;
community participation;
event participation;
communication preferences.
Providing such information does not guarantee that compatible Users will be identified.
19. User Generated Content
Users may voluntarily submit content including:
profile descriptions;
photographs;
messages;
comments;
feedback;
uploaded documents;
media files;
preferences;
survey responses.
Users remain responsible for ensuring that submitted content complies with applicable law and the LumoBond Terms of Use.
20. Information Collected Automatically
20.1 General Principle
Certain technical information is collected automatically whenever a User accesses the Platform.
Automatic collection enables LumoBond to:
maintain Platform security;
improve performance;
diagnose technical issues;
prevent fraud;
optimize compatibility services;
improve accessibility;
understand usage patterns.
20.2 Device Information
LumoBond may automatically collect technical information including:
device model;
operating system;
browser type;
application version;
language settings;
screen resolution;
hardware identifiers;
firmware version;
battery information;
network connection type.
20.3 Log Information
System logs may include:
IP address;
timestamps;
login attempts;
authentication events;
application errors;
crash reports;
system diagnostics;
API requests;
performance metrics;
security events.
Log information assists LumoBond in maintaining security and operational stability.
20.4 Usage Information
LumoBond may collect information regarding User interaction with the Platform including:
visited pages;
viewed content;
navigation patterns;
session duration;
interaction history;
feature usage;
click events;
search queries;
notification interactions;
application settings.
Usage Information is primarily used to improve the User experience.
21. Wearable Device Information
Where Users utilize LumoBond wearable devices, additional technical information may be generated.
Depending upon future hardware capabilities, such information may include:
firmware version;
device identifier;
software status;
synchronization events;
Bluetooth pairing information;
battery status;
device diagnostics;
connectivity history;
software update history;
security status.
Wearable Devices are designed to support Platform functionality and security.
22. Bluetooth and Nearby Device Processing
Certain Platform features may rely upon Bluetooth or similar short-range communication technologies.
Where enabled by the User and permitted by applicable law, LumoBond may process information relating to:
nearby LumoBond devices;
device discovery events;
pairing requests;
synchronization status;
encrypted device identifiers;
connection quality.
Bluetooth processing occurs solely for the operation of relevant Platform features and shall not be interpreted as continuous location tracking.
23. Artificial Intelligence Generated Information
The Platform may generate information through Artificial Intelligence systems.
Such information may include:
Compatibility Scores;
Identity Profile updates;
AI Recommendations;
Confidence Scores;
personalization outputs;
compatibility insights;
behavioral observations;
informational summaries.
AI-generated information is derived from computational analysis and does not constitute verified factual information.
24. Information from Third Parties
Where legally permitted, LumoBond may receive limited information from third parties including:
authentication providers;
payment processors;
fraud prevention providers;
cloud service providers;
analytics providers;
security partners.
LumoBond does not knowingly obtain Personal Data from third parties beyond what is reasonably necessary for providing the Services.
25. Information We Do Not Intentionally Collect
Unless expressly disclosed otherwise for a future Service, LumoBond does not intentionally collect:
government-issued identification documents;
financial account credentials;
biometric identifiers for unique identification;
medical records;
psychological diagnoses;
genetic information;
political opinions;
religious beliefs;
trade union membership;
criminal convictions;
other categories of sensitive information unless required by applicable law or voluntarily provided in circumstances where processing is legally permitted.
Where Sensitive Personal Data is inadvertently received, LumoBond will process such information only to the extent permitted or required by applicable law.
26. Accuracy of Information
Users are responsible for ensuring that information voluntarily submitted to LumoBond is:
accurate;
complete;
current;
lawfully provided.
Providing inaccurate information may reduce the effectiveness of compatibility analyses and certain Platform features.
27. Data Minimization
LumoBond continually evaluates whether categories of collected information remain necessary.
Where information is no longer required for the purposes described in this Privacy Policy, LumoBond seeks to delete, anonymize or otherwise securely dispose of such information in accordance with applicable law and the LumoBond Data Retention Policy.
AUTOMATICALLY COLLECTED INFORMATION · DEVICE INFORMATION · COOKIES · ANALYTICS · BLUETOOTH · WEARABLE DATA
28. Introduction
In order to provide a secure, reliable and continuously improving Platform, LumoBond automatically collects certain technical and operational information whenever a User accesses or interacts with the Services.
Automatic collection allows LumoBond to:
maintain Platform stability;
improve performance;
detect security incidents;
prevent fraud;
identify technical problems;
optimize compatibility services;
improve artificial intelligence models;
ensure system integrity;
enhance the User experience.
Automatic collection does not mean that LumoBond continuously monitors every User or collects unnecessary Personal Data.
LumoBond seeks to collect only information reasonably necessary for the legitimate operation of the Platform.
29. Device Information
29.1 General
When a User accesses the Platform, LumoBond may automatically collect technical information relating to the Device used.
Depending upon the Platform accessed, Device Information may include:
manufacturer;
device model;
hardware type;
operating system;
operating system version;
browser type;
browser version;
language settings;
time zone;
screen resolution;
application version;
firmware version;
device capabilities;
accessibility settings;
installed Platform version.
Device Information assists LumoBond in ensuring compatibility between the Platform and supported hardware.
29.2 Device Identifiers
LumoBond may process device identifiers necessary for:
authentication;
fraud prevention;
synchronization;
software licensing;
security;
troubleshooting.
Where reasonably possible, LumoBond seeks to avoid using persistent identifiers unless necessary for legitimate operational purposes.
30. Network Information
When Users access the Platform, LumoBond may automatically process network-related information including:
IP address;
network provider;
approximate geographic region;
internet connection type;
connection quality;
bandwidth characteristics;
request timestamps;
server response times;
communication protocols.
Network Information is primarily used to maintain Service reliability and security.
31. Log Information
LumoBond automatically generates operational logs during normal Platform operation.
Logs may include:
authentication attempts;
successful logins;
unsuccessful logins;
password reset requests;
API requests;
application events;
software errors;
synchronization events;
firmware updates;
wearable communication events;
server diagnostics;
security events.
System logs are maintained for operational, security and compliance purposes.
32. Usage Information
LumoBond collects information describing how Users interact with the Platform.
Usage Information may include:
visited pages;
viewed screens;
feature usage;
navigation paths;
interaction duration;
session length;
click events;
scrolling behavior;
search queries;
notification interactions;
menu selections;
application settings.
Usage Information enables LumoBond to improve usability, accessibility and overall product quality.
33. Diagnostic Information
To maintain a stable Platform, LumoBond may collect diagnostic information including:
crash reports;
application exceptions;
firmware errors;
synchronization failures;
connectivity issues;
battery diagnostics;
memory usage;
processor utilization;
software performance metrics.
Diagnostic Information is primarily used to identify and resolve technical issues.
34. Cookies and Similar Technologies
LumoBond uses cookies and similar technologies where permitted by applicable law.
Such technologies may include:
HTTP cookies;
local storage;
session storage;
software development kit identifiers;
browser storage;
security tokens;
device tokens;
authentication cookies.
Cookies may be categorized as:
Essential Cookies
Required for operation of the Platform.
Functional Cookies
Used to remember User preferences.
Security Cookies
Used to prevent unauthorized access and detect suspicious activity.
Analytics Cookies
Used to understand Platform performance and improve Services.
Preference Cookies
Used to personalize certain Platform features.
Non-essential cookies shall only be placed where required consent has been obtained under applicable law.
35. Analytics
LumoBond may use analytics technologies to better understand how the Platform is used.
Analytics may assist LumoBond in identifying:
popular features;
navigation patterns;
software errors;
performance bottlenecks;
accessibility improvements;
compatibility issues;
usage trends.
Analytics are intended to improve the Platform rather than monitor individual Users.
Where reasonably practicable, LumoBond seeks to aggregate or pseudonymize analytics information.
36. Artificial Intelligence Diagnostics
Artificial Intelligence systems may generate technical diagnostic information including:
model performance metrics;
processing latency;
recommendation quality indicators;
confidence calculations;
system health information;
anomaly detection;
model evaluation statistics.
Such information is primarily used for:
improving AI performance;
reducing bias;
improving recommendation quality;
identifying computational errors;
maintaining platform integrity.
37. Bluetooth Processing
Certain LumoBond features rely upon Bluetooth or comparable short-range communication technologies.
Where Bluetooth functionality has been enabled by the User, LumoBond may process information relating to:
nearby LumoBond devices;
encrypted device identifiers;
pairing events;
synchronization events;
connection quality;
signal strength;
firmware compatibility;
authentication status.
Bluetooth processing is intended solely to enable relevant Platform functionality.
LumoBond does not use Bluetooth for continuous location tracking.
38. Wearable Device Processing
Future LumoBond wearable devices may generate operational information including:
device activation;
firmware version;
battery health;
software updates;
synchronization history;
communication status;
error diagnostics;
hardware performance;
security verification;
configuration information.
Wearable Devices are designed to process operational information necessary for providing secure functionality.
39. Firmware Updates
LumoBond may collect technical information necessary to:
verify firmware authenticity;
determine update eligibility;
validate software integrity;
distribute security patches;
monitor installation success;
identify compatibility issues.
Firmware updates may be mandatory where necessary to protect security, comply with legal requirements or maintain essential functionality.
40. Fraud Prevention and Security Monitoring
LumoBond automatically monitors certain technical events for the purpose of protecting the Platform against:
unauthorized access;
account compromise;
credential abuse;
automated attacks;
scraping;
denial-of-service attacks;
malware;
malicious automation;
suspicious API activity;
software exploitation.
Security monitoring is conducted using proportionate measures designed to protect both Users and the Platform.
41. Data Minimization
Although automatic collection is necessary for operation of the Platform, LumoBond continuously evaluates whether categories of automatically collected information remain necessary.
Information that is no longer reasonably required may be:
deleted;
anonymized;
aggregated;
securely destroyed;
retained only where required by applicable law.
42. User Controls
Where technically feasible and legally appropriate, Users may control certain automatic processing activities through:
browser settings;
operating system permissions;
cookie preferences;
application settings;
Bluetooth permissions;
notification settings;
device privacy controls.
Disabling certain permissions may reduce or prevent the availability of specific Platform features.
43. Relationship with the Cookie Policy
This section provides a general description of automatic information collection.
Additional information concerning cookies and similar technologies is available in the LumoBond Cookie Policy, which forms part of the overall contractual framework governing the Platform.
PURPOSES OF PROCESSING · HOW WE USE YOUR INFORMATION · AI PROCESSING
44. Introduction
LumoBond processes Personal Data solely for legitimate, specified and transparent purposes that are necessary to provide, maintain, improve, secure and lawfully operate the Platform.
Every processing activity carried out by LumoBond shall be supported by an identifiable business purpose and, where required under applicable law, an appropriate legal basis.
LumoBond shall not process Personal Data for purposes materially incompatible with those described in this Privacy Policy unless otherwise permitted or required by applicable law.
45. General Purposes of Processing
LumoBond may process Personal Data for one or more of the following purposes:
providing the Platform;
operating User Accounts;
maintaining Platform security;
authenticating Users;
providing customer support;
responding to inquiries;
improving Platform functionality;
improving Artificial Intelligence models;
generating Compatibility Scores;
creating Identity Profiles;
personalizing User experiences;
delivering software updates;
administering subscriptions;
processing waitlist registrations;
preventing fraud;
detecting abuse;
complying with legal obligations;
enforcing contractual rights;
protecting Users;
protecting LumoBond's intellectual property.
Each processing activity is performed only to the extent reasonably necessary for its intended purpose.
46. Account Administration
LumoBond processes Personal Data to establish, maintain and administer User Accounts.
This processing may include:
account creation;
account authentication;
password management;
identity verification;
profile maintenance;
account recovery;
communication preferences;
security notifications;
account deletion requests.
Without such processing, certain Platform features cannot be provided.
47. Identity Profile Processing
One of the primary purposes of the Platform is the creation of dynamic Identity Profiles.
Identity Profile processing enables LumoBond to:
organize User preferences;
identify interests;
improve personalization;
support compatibility analysis;
improve recommendation quality;
increase Confidence Scores;
provide individualized Platform experiences.
Identity Profiles continuously evolve as additional voluntary information becomes available.
48. Compatibility Analysis
LumoBond processes information for the purpose of generating Compatibility Scores and related informational analyses.
Compatibility processing may include computational evaluation of:
interests;
preferences;
communication styles;
behavioral tendencies;
shared characteristics;
activity participation;
voluntary responses;
platform interactions.
Compatibility processing is intended solely to assist Users in discovering potentially meaningful human connections.
Compatibility processing shall never constitute:
psychological evaluation;
medical assessment;
employment screening;
legal determination;
certification;
guarantee of compatibility;
prediction of future events.
49. Artificial Intelligence Processing
Artificial Intelligence constitutes an integral component of the LumoBond Platform.
AI systems may process Personal Data for purposes including:
personalization;
recommendation generation;
compatibility estimation;
confidence calculations;
fraud detection;
spam prevention;
content moderation;
security monitoring;
software optimization;
customer support assistance;
language processing;
accessibility improvements.
Artificial Intelligence shall support human decision-making rather than replace independent human judgment.
50. AI Model Improvement
LumoBond may use information generated during operation of the Platform to improve Artificial Intelligence systems.
Such improvements may include:
increasing recommendation quality;
reducing computational errors;
improving fairness;
reducing algorithmic bias;
improving language understanding;
improving personalization;
improving security detection;
improving software performance.
Where reasonably practicable, LumoBond seeks to use aggregated, anonymized or pseudonymized information for AI improvement activities.
51. Personalization
LumoBond processes certain information to personalize Platform functionality.
Personalization may include:
preferred language;
interface customization;
recommended features;
suggested Communities;
suggested Events;
AI Recommendations;
notification preferences;
compatibility preferences.
Personalization is intended to improve usability rather than influence Users in a misleading or manipulative manner.
52. Daily Question System
The Daily Question System processes User responses in order to:
expand Identity Profiles;
improve Compatibility Scores;
increase Confidence Scores;
improve AI Recommendations;
improve personalization;
improve future Platform functionality.
Participation in the Daily Question System remains voluntary unless a particular Service expressly requires participation.
53. Wearable Device Processing
Where Users utilize LumoBond wearable devices, Personal Data may be processed for purposes including:
secure authentication;
synchronization;
firmware updates;
Bluetooth communication;
device pairing;
software integrity;
operational diagnostics;
compatibility functionality;
account security.
Wearable processing is limited to information reasonably necessary for providing the intended functionality.
54. Bluetooth Processing
Bluetooth functionality is processed exclusively for purposes including:
device discovery;
nearby LumoBond device detection;
secure pairing;
encrypted communication;
synchronization;
wearable functionality.
Bluetooth processing is not intended to create continuous location histories or persistent movement tracking.
55. Communications
LumoBond processes Personal Data to communicate with Users regarding:
account information;
security alerts;
software updates;
firmware updates;
waitlist status;
customer support;
legal notices;
privacy updates;
Terms updates;
service announcements;
important operational information.
Where required by law, marketing communications shall only be sent following appropriate consent.
56. Customer Support
Information provided to Customer Support may be processed to:
resolve technical issues;
answer questions;
investigate reported bugs;
improve documentation;
improve Platform usability;
prevent recurring issues;
improve User satisfaction.
Support communications may be reviewed for quality assurance and training purposes.
57. Security Purposes
LumoBond processes Personal Data to maintain the confidentiality, integrity and availability of the Platform.
Security processing may include:
authentication;
intrusion detection;
fraud prevention;
malware detection;
account protection;
access monitoring;
threat intelligence;
vulnerability management;
abuse prevention;
incident response.
Security processing is essential for protecting both Users and the Platform.
58. Legal Compliance
LumoBond processes Personal Data where reasonably necessary to comply with:
applicable legislation;
court orders;
lawful governmental requests;
regulatory obligations;
accounting requirements;
tax obligations;
cybersecurity obligations;
consumer protection requirements.
Such processing shall be limited to what is reasonably necessary under applicable law.
59. Business Operations
Personal Data may also be processed for legitimate operational purposes including:
auditing;
financial administration;
business planning;
corporate governance;
insurance;
legal claims;
dispute resolution;
mergers;
acquisitions;
organizational restructuring.
Where such processing materially affects Users, LumoBond shall comply with applicable legal obligations.
60. Research and Innovation
LumoBond may process information to improve future technologies through research and development.
Research activities may include:
software testing;
usability studies;
AI evaluation;
statistical analysis;
performance benchmarking;
compatibility model improvements;
accessibility enhancements.
Whenever reasonably practicable, such research shall rely upon anonymized or aggregated information.
61. Purposes We Do Not Pursue
LumoBond is committed to responsible data processing.
Accordingly, LumoBond does not intentionally process Personal Data for purposes including:
selling Personal Data to third parties;
creating unlawful discrimination;
manipulating Users through deceptive profiling;
determining legal rights without human involvement;
replacing professional medical advice;
replacing psychological evaluation;
replacing legal advice;
replacing financial advice;
guaranteeing compatibility outcomes;
guaranteeing employment;
guaranteeing friendships;
guaranteeing romantic relationships.
Artificial Intelligence is intended to assist Users---not replace independent human judgment.
62. Future Processing Activities
As the LumoBond Platform evolves, new Services may require additional categories of processing.
Where such processing materially differs from the purposes described in this Privacy Policy, LumoBond shall update this Privacy Policy and provide any notices or obtain any consents required under applicable law before commencing such processing.
LEGAL BASES FOR PROCESSING · CONSENT · LAWFUL PROCESSING UNDER GDPR
63. Introduction
LumoBond processes Personal Data only where a valid legal basis exists under applicable data protection legislation.
The legal basis applicable to a particular processing activity depends upon the nature of the information, the Service being used, the relationship between LumoBond and the User, and the applicable legal requirements.
LumoBond is committed to ensuring that all processing activities are lawful, fair, transparent and proportionate.
64. Overview of Legal Bases
Depending upon the circumstances, LumoBond may process Personal Data on one or more of the following legal grounds:
the User has provided valid consent;
processing is necessary for the performance of a contract;
processing is necessary for compliance with a legal obligation;
processing is necessary to protect vital interests;
processing is necessary for the performance of a task carried out in the public interest, where applicable;
processing is necessary for the legitimate interests pursued by LumoBond or a third party, provided such interests are not overridden by the rights and freedoms of the User.
Where multiple legal bases apply, LumoBond may rely on more than one basis simultaneously.
65. Consent
65.1 Voluntary Consent
Where consent is required by applicable law, LumoBond shall obtain the User's consent before processing the relevant Personal Data.
Consent shall be:
freely given;
specific;
informed;
unambiguous;
capable of being withdrawn at any time.
LumoBond shall not rely upon implied consent where explicit consent is required by law.
65.2 Withdrawal of Consent
A User may withdraw consent at any time.
Withdrawal of consent shall not affect the lawfulness of processing carried out before such withdrawal.
Withdrawal of consent may result in certain Services becoming unavailable where the relevant processing is essential for providing those Services.
65.3 Separate Consents
Where appropriate, LumoBond may request separate consent for different categories of processing, including:
marketing communications;
optional cookies;
beta programs;
research participation;
promotional campaigns;
optional AI features;
future wearable functionality.
66. Performance of a Contract
LumoBond processes Personal Data where necessary to perform contractual obligations arising between LumoBond and the User.
Contractual processing may include:
account creation;
authentication;
identity verification;
waitlist administration;
provision of Platform functionality;
synchronization between Devices;
software delivery;
firmware updates;
customer support;
subscription management;
payment processing;
compatibility analysis requested by the User;
AI-generated recommendations requested by the User.
Without such processing, LumoBond may be unable to provide the requested Services.
67. Legitimate Interests
LumoBond may process Personal Data where necessary for its legitimate business interests, provided such interests are not overridden by the User's fundamental rights and freedoms.
Legitimate interests may include:
maintaining Platform security;
preventing fraud;
detecting abuse;
protecting intellectual property;
improving Platform stability;
software testing;
performance monitoring;
cybersecurity;
analytics;
product improvement;
business planning;
customer support;
legal claims;
corporate governance;
risk management.
Prior to relying upon legitimate interests, LumoBond seeks to balance its interests against the potential impact upon Users.
68. Compliance with Legal Obligations
LumoBond may process Personal Data where required to comply with applicable legal obligations, including:
accounting legislation;
taxation requirements;
consumer protection legislation;
cybersecurity legislation;
anti-money laundering legislation, where applicable;
court orders;
regulatory investigations;
lawful governmental requests.
Processing under this legal basis shall be limited to the extent required by applicable law.
69. Protection of Vital Interests
Where necessary, LumoBond may process Personal Data to protect the vital interests of a User or another natural person.
Such processing is expected to occur only in exceptional circumstances involving immediate risks to health, safety or life.
70. Public Interest
Where LumoBond performs processing pursuant to legislation authorizing processing in the public interest, such processing shall be carried out only within the limits established by applicable law.
At present, LumoBond does not generally rely upon this legal basis for ordinary commercial Services.
71. AI Processing and Legal Bases
Artificial Intelligence systems may process Personal Data under one or more applicable legal bases depending upon the Service involved.
Examples include:
Contract
Processing necessary to generate requested Compatibility Scores.
Legitimate Interests
Fraud prevention.
Cybersecurity.
Platform optimization.
Consent
Optional personalization.
Research participation.
Experimental AI functionality.
Marketing recommendations.
LumoBond shall not rely upon Artificial Intelligence as an independent legal basis for processing.
72. Processing of Identity Profiles
Identity Profiles are processed primarily for:
performance of the contractual relationship;
legitimate interests in providing personalized Services;
consent where required for optional functionality.
Identity Profiles are dynamic and continuously updated through voluntary User interactions.
73. Compatibility Processing
Compatibility processing is performed for purposes including:
providing requested compatibility services;
generating informational recommendations;
improving AI models;
improving recommendation quality;
improving User experience.
Compatibility processing shall never constitute legally binding decision-making regarding the User.
74. Automated Decision-Making
LumoBond seeks to ensure that Users are not subject to decisions producing legal effects or similarly significant effects based solely upon automated processing except where:
authorized by applicable law;
necessary for entering into or performing a contract;
based upon valid consent.
Where legally required, Users shall be provided with:
meaningful information regarding the processing;
opportunities for human review;
opportunities to express their views;
opportunities to contest decisions.
75. Data Minimization
Regardless of the applicable legal basis, LumoBond seeks to process only the Personal Data reasonably necessary for each identified purpose.
Where information is no longer required, LumoBond shall delete, anonymize or otherwise securely dispose of such information in accordance with applicable law and the LumoBond Data Retention Policy.
76. Purpose Limitation
Personal Data shall not be processed for purposes materially incompatible with those originally disclosed unless:
the User has provided additional consent;
applicable law permits such processing;
processing is otherwise legally required.
77. Accuracy
LumoBond seeks to maintain Personal Data that is:
accurate;
complete;
relevant;
up to date.
Users are encouraged to update their information whenever changes occur.
78. Accountability
LumoBond maintains internal procedures intended to demonstrate compliance with applicable privacy legislation.
Such procedures may include:
internal governance;
privacy reviews;
security assessments;
documentation;
risk evaluations;
staff training;
periodic policy reviews;
technical safeguards;
organizational safeguards.
79. Future Legal Developments
Privacy legislation continues to evolve internationally.
LumoBond may update its legal bases for processing where necessary to comply with:
new legislation;
regulatory guidance;
judicial decisions;
supervisory authority recommendations;
international privacy standards.
Where required by law, Users shall be informed of material changes before such changes become effective.
DATA SHARING · DISCLOSURE OF INFORMATION · THIRD-PARTY RECIPIENTS
80. Introduction
LumoBond recognizes that Personal Data belongs to the individual.
Accordingly, LumoBond does not disclose Personal Data except where such disclosure is:
necessary for providing the Services;
requested by the User;
required by applicable law;
necessary to protect legitimate interests;
necessary to maintain Platform security;
otherwise permitted under applicable privacy legislation.
Disclosure of Personal Data shall always be limited to the minimum amount reasonably necessary for the relevant purpose.
81. General Principles Governing Data Sharing
Whenever LumoBond shares Personal Data, the Company seeks to ensure that the receiving party:
processes the information only for authorized purposes;
maintains appropriate technical and organizational security measures;
complies with applicable privacy legislation;
maintains confidentiality obligations;
implements contractual safeguards where required.
LumoBond does not permit recipients to use Personal Data for purposes inconsistent with this Privacy Policy unless otherwise authorized by applicable law or by the User.
82. Service Providers
LumoBond may engage carefully selected third-party service providers to assist in operating the Platform.
Depending upon the Services provided, such providers may include organizations responsible for:
cloud hosting;
infrastructure management;
cybersecurity;
customer support;
payment processing;
authentication;
analytics;
communications;
software development;
firmware distribution;
data storage;
monitoring;
logging;
backup services;
system administration.
Service Providers shall process Personal Data only in accordance with LumoBond's documented instructions and applicable contractual obligations.
83. Cloud Infrastructure Providers
Personal Data may be stored or processed using secure cloud infrastructure operated by specialized providers.
Cloud providers may perform services including:
secure hosting;
encrypted storage;
disaster recovery;
redundancy;
system availability;
infrastructure monitoring;
secure networking.
LumoBond remains responsible for selecting providers capable of maintaining appropriate security standards.
84. Payment Service Providers
Where future paid Services become available, payment-related information may be processed by independent payment providers.
LumoBond seeks to minimize direct handling of payment credentials.
Payment providers may process information necessary to:
complete transactions;
prevent fraud;
comply with financial regulations;
manage refunds;
resolve payment disputes.
Payment providers remain independently responsible for information processed within their own systems.
85. Authentication Providers
LumoBond may integrate authentication services provided by trusted third parties.
Authentication providers may assist with:
secure login;
identity verification;
multi-factor authentication;
credential protection;
account recovery.
Authentication providers receive only the information reasonably necessary to provide authentication services.
86. Analytics Providers
LumoBond may engage analytics providers to better understand Platform performance.
Analytics processing may include:
aggregated statistics;
feature usage;
application performance;
navigation patterns;
software diagnostics;
crash reporting.
Where reasonably practicable, LumoBond seeks to reduce the use of directly identifiable information through aggregation or pseudonymization.
87. Customer Support Providers
Customer support services may involve carefully selected providers assisting LumoBond with:
responding to inquiries;
resolving technical issues;
processing support tickets;
language translation;
quality assurance.
Support providers are contractually required to maintain confidentiality.
88. Security Providers
LumoBond may engage specialized cybersecurity organizations for purposes including:
vulnerability monitoring;
threat detection;
malware prevention;
fraud detection;
penetration testing;
infrastructure monitoring;
incident response.
Security providers process information only to the extent reasonably necessary to protect the Platform.
89. Corporate Transactions
If LumoBond participates in:
a merger;
acquisition;
investment transaction;
restructuring;
asset transfer;
financing;
corporate reorganization;
bankruptcy proceeding,
Personal Data may be disclosed where reasonably necessary to complete such transaction and where permitted by applicable law.
Any successor organization shall be required to respect applicable privacy obligations relating to previously collected Personal Data.
90. Legal Compliance
LumoBond may disclose Personal Data where reasonably necessary to:
comply with applicable law;
satisfy legal obligations;
respond to lawful governmental requests;
comply with court orders;
cooperate with regulatory authorities;
investigate suspected criminal activity;
protect legal rights;
defend legal claims.
LumoBond seeks to disclose only the minimum information reasonably required under the circumstances.
91. Protection of Rights and Safety
LumoBond may disclose Personal Data where reasonably necessary to:
protect Users;
protect employees;
protect contractors;
protect partners;
prevent fraud;
investigate security incidents;
enforce contractual rights;
protect intellectual property;
prevent unlawful activities.
Such disclosures shall be proportionate to the identified risk.
92. Disclosure with User Consent
Where appropriate, LumoBond may disclose Personal Data based upon the User's explicit consent.
Consent-based disclosures may include:
participation in promotional activities;
optional integrations;
third-party applications;
research projects;
voluntary data sharing initiatives.
Users may withdraw consent in accordance with applicable law.
93. Compatibility Information
Compatibility information represents one of the most sensitive categories of information processed by LumoBond.
Accordingly:
Compatibility Scores;
Identity Profiles;
Confidence Scores;
AI Recommendations;
Relationship assessments;
Friendship assessments;
Business compatibility analyses;
Community recommendations;
shall not be disclosed to other Users except through Platform functionality intentionally initiated or authorized by the affected User.
LumoBond shall not publicly disclose Compatibility Information without lawful authority or User authorization.
94. Artificial Intelligence Outputs
AI-generated recommendations may be displayed to the User requesting the relevant Service.
LumoBond does not sell AI-generated Identity Profiles or Compatibility Scores to third parties.
Internal use of AI-generated outputs is limited to purposes described in this Privacy Policy.
95. Wearable Device Information
Information generated by LumoBond wearable devices shall be processed solely for legitimate operational purposes including:
synchronization;
firmware updates;
authentication;
device security;
diagnostics;
compatibility functionality.
Wearable information shall not be disclosed except as described in this Privacy Policy or where required by applicable law.
96. Sale of Personal Data
LumoBond does not sell Personal Data in exchange for monetary compensation.
If future legislation defines certain data sharing activities as a "sale" or "sharing" under applicable law, LumoBond shall provide any notices and opt-out mechanisms required by such legislation.
97. Marketing Partners
Where Users have provided valid consent, LumoBond may engage marketing providers for purposes including:
email communications;
product announcements;
newsletters;
promotional campaigns.
Marketing providers shall process information only under LumoBond's documented instructions.
Users may unsubscribe from marketing communications at any time.
98. Aggregate and Anonymous Information
LumoBond may generate aggregated, anonymous or de-identified information for purposes including:
statistical reporting;
business planning;
scientific research;
software improvement;
AI evaluation;
public reporting.
Such information does not identify individual Users and is not intended to be re-identified.
99. Data Minimization During Sharing
Whenever Personal Data is disclosed, LumoBond seeks to disclose only information reasonably necessary for the identified purpose.
Recipients shall not receive unrestricted access to Personal Data where more limited access is sufficient.
100. Accountability
LumoBond maintains internal procedures intended to evaluate third-party recipients before Personal Data is shared.
Such evaluations may consider:
security practices;
privacy compliance;
contractual safeguards;
regulatory obligations;
technical capabilities;
operational necessity.
LumoBond periodically reviews such relationships as part of its ongoing privacy governance program.
INTERNATIONAL DATA TRANSFERS · DATA SECURITY · ENCRYPTION · CYBERSECURITY
101. Introduction
LumoBond recognizes that the protection of Personal Data extends beyond its collection and use. Protecting information throughout its entire lifecycle---including storage, transmission, international transfer, backup, recovery and eventual deletion---is a fundamental responsibility of the Company.
Accordingly, LumoBond has implemented organizational, administrative and technical safeguards intended to protect Personal Data against accidental or unlawful destruction, loss, alteration, unauthorized disclosure, unauthorized access and other forms of unlawful processing.
No information system can be guaranteed to be completely secure. Nevertheless, LumoBond continually evaluates and improves its security program in accordance with technological developments, applicable legal requirements and recognized information security practices.
102. International Data Transfers
102.1 Global Nature of the Platform
LumoBond intends to operate as an international technology platform.
Accordingly, Personal Data may be processed in jurisdictions outside the User's country of residence where necessary for:
cloud hosting;
infrastructure management;
disaster recovery;
software development;
technical support;
cybersecurity monitoring;
artificial intelligence services;
customer support;
operational continuity;
legal compliance.
International transfers shall only occur where permitted under applicable law.
102.2 Appropriate Safeguards
Where Personal Data is transferred outside the European Economic Area ("EEA"), the United Kingdom or other jurisdictions requiring transfer safeguards, LumoBond shall implement one or more legally recognized protection mechanisms, including where appropriate:
adequacy decisions issued by competent authorities;
Standard Contractual Clauses ("SCCs");
approved certification mechanisms;
approved codes of conduct;
Binding Corporate Rules ("BCRs"), where applicable;
additional contractual, technical or organizational safeguards.
102.3 Transfer Risk Assessments
Before establishing or substantially modifying international transfer arrangements, LumoBond may perform documented transfer risk assessments considering factors including:
applicable legislation;
governmental access risks;
technical protections;
encryption measures;
contractual safeguards;
operational necessity.
Where additional safeguards are reasonably required, LumoBond shall seek to implement them before transferring Personal Data.
103. Information Security Program
LumoBond maintains an information security program designed to protect the confidentiality, integrity and availability of Personal Data and the Platform.
The security program is intended to evolve continuously in response to:
technological developments;
emerging cybersecurity threats;
legal requirements;
operational risks;
industry best practices;
security assessments;
incident investigations.
104. Encryption
104.1 Encryption in Transit
Where reasonably practicable, Personal Data transmitted between Users, Devices and LumoBond systems shall be protected using modern cryptographic communication protocols.
Encryption in transit is intended to reduce the risk of unauthorized interception during electronic communications.
104.2 Encryption at Rest
Where appropriate, Personal Data stored within LumoBond systems may be protected through encryption technologies designed to reduce the risk of unauthorized access in the event of infrastructure compromise.
104.3 Cryptographic Key Management
Where encryption technologies are utilized, LumoBond seeks to implement appropriate administrative and technical controls governing the generation, storage, rotation and protection of cryptographic keys.
Access to encryption keys shall be limited to authorized personnel and systems requiring such access.
105. Access Controls
LumoBond seeks to ensure that access to Personal Data is restricted according to the principle of least privilege.
Access may be limited based upon:
operational necessity;
job responsibilities;
security clearance;
contractual authorization;
legal obligations.
Administrative access is granted only where reasonably necessary for legitimate business purposes.
106. Authentication
LumoBond employs authentication mechanisms intended to reduce the risk of unauthorized access.
Depending upon the relevant Service, authentication measures may include:
password protection;
multi-factor authentication;
session management;
token validation;
secure credential storage;
account verification;
risk-based authentication.
Users are responsible for maintaining the confidentiality of their authentication credentials.
107. Infrastructure Security
LumoBond seeks to maintain secure infrastructure through measures including:
network segmentation;
firewalls;
intrusion detection systems;
intrusion prevention systems;
endpoint protection;
malware prevention;
vulnerability scanning;
infrastructure monitoring;
secure configuration management.
Infrastructure security measures are reviewed periodically as part of LumoBond's ongoing security governance.
108. Secure Software Development
LumoBond aims to incorporate security considerations throughout the software development lifecycle.
Security activities may include:
code review;
dependency management;
vulnerability assessments;
penetration testing;
security testing;
secure deployment procedures;
change management;
version control.
Security is considered during the design, development, testing and deployment of Platform components.
109. Artificial Intelligence Security
Artificial Intelligence systems require additional security protections.
Accordingly, LumoBond seeks to implement controls intended to protect:
AI models;
training data;
inference systems;
recommendation engines;
identity processing systems;
compatibility algorithms;
model configurations;
AI infrastructure.
Security measures may include:
access restrictions;
audit logging;
model integrity verification;
anomaly detection;
environment isolation;
continuous monitoring.
110. Wearable Device Security
Future LumoBond wearable devices may incorporate security features including:
secure firmware validation;
authenticated software updates;
encrypted communication;
secure pairing procedures;
hardware integrity verification;
device authentication;
secure synchronization.
Security functionality may evolve through firmware updates and future hardware revisions.
111. Monitoring and Threat Detection
LumoBond may continuously monitor Platform infrastructure for indicators of:
unauthorized access;
credential abuse;
malware;
denial-of-service attacks;
automated exploitation;
suspicious API activity;
abnormal system behavior;
attempted data exfiltration.
Monitoring activities are intended solely to protect Users, the Platform and associated infrastructure.
112. Vulnerability Management
LumoBond seeks to identify and remediate vulnerabilities through activities including:
automated vulnerability scanning;
manual security assessments;
penetration testing;
software patch management;
dependency monitoring;
security research;
responsible disclosure procedures.
Identified vulnerabilities are prioritized based upon their potential impact upon Users and the Platform.
113. Incident Response
LumoBond maintains procedures intended to detect, investigate, contain and remediate security incidents.
Incident response activities may include:
technical investigation;
system isolation;
forensic analysis;
recovery procedures;
communication with affected parties;
regulatory notifications where required;
corrective actions;
post-incident reviews.
114. Personal Data Breaches
Where a Personal Data Breach occurs, LumoBond shall assess the nature, scope and potential consequences of the incident.
Where required by applicable law, LumoBond shall:
notify competent supervisory authorities;
notify affected individuals where legally required;
document the incident;
implement appropriate remediation measures.
Notifications shall be provided within legally applicable timeframes.
115. Business Continuity and Disaster Recovery
LumoBond seeks to maintain business continuity through organizational and technical measures including:
secure backups;
redundancy;
disaster recovery planning;
infrastructure resilience;
recovery testing;
operational continuity procedures.
The objective of such measures is to minimize service disruption while protecting Personal Data.
116. Employee Confidentiality
Employees, contractors and authorized personnel who process Personal Data are subject to confidentiality obligations and are expected to receive appropriate training regarding information security and privacy responsibilities.
Access to Personal Data is limited to personnel whose duties reasonably require such access.
117. Continuous Improvement
Cybersecurity is an ongoing process rather than a static condition.
LumoBond therefore seeks to continuously evaluate and improve its security program through:
internal reviews;
external assessments;
technological improvements;
legal developments;
emerging threat intelligence;
security awareness initiatives;
periodic policy updates.
118. User Responsibilities
While LumoBond implements reasonable security measures, Users also play an important role in protecting their information.
Users are encouraged to:
maintain strong passwords;
enable available security features;
protect authentication credentials;
promptly report suspected unauthorized access;
install software updates;
exercise caution when using shared or public devices.
Failure to follow reasonable security practices may increase the risk of unauthorized access beyond LumoBond's control.
YOUR PRIVACY RIGHTS · USER CONTROLS · DATA SUBJECT RIGHTS
119. Introduction
LumoBond believes that individuals should retain meaningful control over their Personal Data.
Accordingly, LumoBond is committed to respecting the privacy rights granted to Users under applicable data protection legislation, including the General Data Protection Regulation ("GDPR"), the California Consumer Privacy Act ("CCPA"), the California Privacy Rights Act ("CPRA"), and other applicable privacy laws where relevant.
The availability of particular rights may depend upon the User's country of residence, the applicable legislation and the specific processing activity.
LumoBond shall not discriminate against any User solely because that User exercises a privacy right provided by law.
120. Right to Transparent Information
Every User has the right to receive clear, accurate and understandable information concerning the processing of Personal Data.
Accordingly, LumoBond seeks to explain:
what information is collected;
why it is collected;
how it is processed;
how long it is retained;
with whom it may be shared;
the legal basis supporting the processing;
the rights available to the User.
Where reasonably practicable, such information shall be presented in concise and accessible language.
121. Right of Access
Subject to applicable law, Users may request confirmation as to whether LumoBond processes Personal Data relating to them.
Where Personal Data is processed, Users may request access to information including:
categories of Personal Data processed;
purposes of processing;
recipients or categories of recipients;
retention periods;
legal bases for processing;
international transfers, where applicable;
sources of information where not obtained directly from the User;
existence of automated decision-making where applicable.
LumoBond may request reasonable proof of identity before fulfilling an access request.
122. Right to Rectification
Users may request correction of inaccurate or incomplete Personal Data.
Where appropriate, Users may also update information directly through Platform settings.
LumoBond shall make reasonable efforts to ensure that inaccurate information is corrected without undue delay where required under applicable law.
123. Right to Erasure ("Right to be Forgotten")
Users may request deletion of Personal Data where:
the information is no longer necessary for the purposes collected;
consent has been withdrawn and no other legal basis applies;
processing is unlawful;
deletion is required by applicable law;
the User validly objects to processing.
Deletion requests may be limited where continued processing is required for:
legal compliance;
defense of legal claims;
fraud prevention;
information security;
accounting obligations;
taxation;
contractual obligations;
exercise or defense of legal rights.
Where deletion is granted, LumoBond shall seek to permanently remove or anonymize the relevant Personal Data within a reasonable period, subject to applicable legal obligations.
124. Right to Restrict Processing
Users may request temporary restriction of processing where:
the accuracy of Personal Data is contested;
processing is unlawful but deletion is not requested;
Personal Data is required for legal claims;
an objection to processing is pending evaluation.
During restriction, LumoBond may continue processing only where permitted under applicable law.
125. Right to Data Portability
Where applicable, Users may request a copy of Personal Data that they have provided to LumoBond in a structured, commonly used and machine-readable format.
Where technically feasible and legally permissible, Users may also request transmission of such information directly to another service provider.
Data portability applies only where required by applicable legislation.
126. Right to Object
Users may object to processing based upon LumoBond's legitimate interests.
Upon receiving an objection, LumoBond shall evaluate whether compelling legitimate grounds continue to justify the processing.
Where no overriding legitimate grounds exist, LumoBond shall cease the relevant processing activity.
127. Withdrawal of Consent
Where processing is based upon consent, Users may withdraw consent at any time.
Withdrawal shall not affect processing carried out prior to withdrawal.
Certain Services may become unavailable where the relevant processing is necessary for providing those Services.
128. Marketing Preferences
Users may choose whether to receive:
newsletters;
product announcements;
promotional campaigns;
marketing emails;
event invitations;
future product updates.
Marketing preferences may generally be modified through:
Account settings;
unsubscribe links;
customer support;
privacy request channels.
Operational communications relating to security, legal obligations or essential Platform functionality may continue regardless of marketing preferences.
129. Artificial Intelligence Transparency
LumoBond recognizes that Artificial Intelligence plays an important role within the Platform.
Accordingly, Users have the right to receive meaningful information regarding:
the role of AI within the Platform;
the purpose of AI Recommendations;
limitations of AI-generated outputs;
the non-deterministic nature of Compatibility Scores;
the informational nature of Identity Profiles.
AI-generated information should be interpreted as technological assistance rather than objective truth.
130. Automated Decision-Making
LumoBond seeks to ensure that Users are not subject to decisions producing legal effects or similarly significant effects based solely upon automated processing unless authorized by applicable law.
Where required by applicable legislation, Users may request:
human review;
additional explanation;
correction of inaccurate information;
reconsideration of automated outcomes.
Compatibility Scores and AI Recommendations are intended solely as informational guidance and are not intended to produce legal or similarly significant effects.
131. California Privacy Rights
Where applicable under California privacy legislation, eligible Users may possess additional rights including:
the right to know;
the right to delete;
the right to correct;
the right to limit certain processing;
the right to opt out of certain data sharing activities where required by law;
the right not to be discriminated against for exercising privacy rights.
LumoBond shall honor such rights where applicable.
132. Children's Privacy Rights
Where Personal Data relating to children is processed in accordance with applicable law, LumoBond shall seek to provide additional protections appropriate to the age of the individual.
Where parental authorization is legally required, LumoBond shall seek to obtain such authorization before processing Personal Data.
133. Identity Verification
Before fulfilling privacy requests, LumoBond may request reasonable information necessary to verify the identity of the requesting individual.
Identity verification procedures are intended to prevent unauthorized disclosure of Personal Data.
Where verification cannot reasonably be completed, LumoBond may decline or limit the request to the extent permitted by applicable law.
134. Timeframe for Responding
LumoBond seeks to respond to valid privacy requests without undue delay.
Where applicable legislation establishes mandatory response periods, LumoBond shall endeavor to comply with such requirements.
Where additional time is reasonably necessary due to the complexity or volume of requests, LumoBond may extend the response period where permitted by law and shall inform the requesting individual accordingly.
135. Limitations
Certain privacy rights may be restricted where necessary to:
comply with legal obligations;
protect intellectual property;
safeguard trade secrets;
prevent fraud;
protect cybersecurity;
defend legal claims;
protect the rights and freedoms of others;
maintain Platform security.
Any limitation shall be applied only to the extent permitted under applicable law.
136. Contacting LumoBond Regarding Privacy Rights
Users wishing to exercise privacy rights may submit requests using the privacy contact channels designated by LumoBond.
LumoBond may require sufficient information to identify the relevant Account and verify the identity of the requesting individual before taking action.
137. Commitment to User Control
LumoBond is committed to developing technologies that empower Users to understand and manage their Personal Data.
As the Platform evolves, LumoBond intends to expand privacy management tools, account controls and transparency features wherever reasonably practicable and consistent with applicable law.
DATA RETENTION · ACCOUNT DELETION · RECORD MANAGEMENT · DATA DISPOSAL
138. Introduction
LumoBond is committed to ensuring that Personal Data is retained only for as long as reasonably necessary to fulfill the purposes described in this Privacy Policy, comply with applicable legal obligations, resolve disputes, protect Users, safeguard the Platform and enforce contractual rights.
The Company applies the principles of storage limitation and data minimization throughout the lifecycle of all Personal Data processed within the LumoBond Ecosystem.
Retention periods may vary depending upon the category of information, the applicable legal requirements and the nature of the Services provided.
139. General Retention Principles
LumoBond seeks to ensure that Personal Data is:
collected only when reasonably necessary;
retained only for legitimate purposes;
periodically reviewed;
securely archived where appropriate;
anonymized whenever practical;
permanently deleted when no longer required.
Retention decisions are based upon:
contractual necessity;
legal obligations;
operational requirements;
cybersecurity considerations;
fraud prevention;
dispute resolution;
protection of Users;
protection of LumoBond's legal rights.
140. Account Information
Personal Data associated with an active User Account shall generally be retained for the duration of the User's relationship with LumoBond.
Such information may include:
Account credentials;
profile information;
communication preferences;
Identity Profile information;
compatibility settings;
device associations;
authentication records.
Following Account deletion, certain information may continue to be retained where required by law or reasonably necessary for legitimate business purposes.
141. Waitlist Information
Information submitted during Waitlist registration may be retained until one or more of the following occurs:
the User withdraws from the Waitlist;
the Waitlist concludes;
the relevant product launches;
LumoBond determines that the information is no longer necessary;
deletion is requested and legally permissible.
Where a Waitlist registration results in Account creation, applicable retention periods shall thereafter be governed by the policies applicable to User Accounts.
142. Identity Profiles
Identity Profiles are dynamic and evolve over time through voluntary User participation.
Identity Profile information may be retained while:
the User maintains an active Account;
compatibility functionality remains active;
the information continues to support requested Services.
Where an Account is permanently deleted, LumoBond shall seek to remove or anonymize Identity Profile information unless continued retention is legally required or otherwise justified under applicable law.
143. Compatibility Information
Compatibility Scores, Confidence Scores and related computational outputs may be retained for purposes including:
improving recommendation quality;
maintaining Platform functionality;
fraud prevention;
software testing;
customer support;
dispute resolution.
Where reasonably practicable, LumoBond seeks to anonymize historical compatibility information before long-term retention.
144. Artificial Intelligence Data
Information processed for Artificial Intelligence functionality may be retained for purposes including:
improving model performance;
quality assurance;
software evaluation;
security analysis;
bias detection;
system integrity.
Where reasonably practicable, LumoBond seeks to utilize anonymized or aggregated information for long-term AI development.
Personal Data shall not be retained for AI improvement longer than reasonably necessary for the identified purposes.
145. Customer Support Records
Customer support communications may be retained for purposes including:
resolving recurring technical issues;
quality assurance;
employee training;
legal compliance;
dispute resolution;
fraud investigations.
Support records may include:
emails;
support tickets;
chat transcripts;
diagnostic information;
screenshots voluntarily provided by Users.
146. Security Logs
Security-related information may be retained for longer periods where reasonably necessary to:
investigate security incidents;
detect unauthorized access;
prevent fraud;
comply with cybersecurity obligations;
support forensic investigations;
protect Platform integrity.
Retention periods for security logs shall reflect operational necessity and applicable legal requirements.
147. Financial and Transaction Information
Where LumoBond introduces paid Services, transaction-related information may be retained to comply with:
accounting legislation;
taxation requirements;
financial reporting obligations;
audit requirements;
consumer protection legislation.
Retention periods shall comply with mandatory legal obligations applicable within the relevant jurisdiction.
148. Legal Claims
LumoBond may retain Personal Data where reasonably necessary to:
establish legal rights;
exercise contractual rights;
defend legal claims;
investigate disputes;
respond to regulatory inquiries;
comply with court orders.
Such information shall generally be retained only for the duration reasonably necessary for the relevant legal purpose.
149. Deletion of Accounts
Users may request permanent deletion of their Accounts subject to applicable law.
Upon receiving a valid deletion request, LumoBond shall seek to:
deactivate the Account;
remove publicly visible information;
terminate Platform access;
delete or anonymize Personal Data where appropriate;
retain only information required by law or necessary for legitimate legal purposes.
Deletion of an Account does not necessarily result in immediate deletion of every record associated with that Account.
150. Backup Systems
Personal Data may temporarily remain within encrypted backup systems following deletion from active systems.
Backup copies are maintained solely for:
disaster recovery;
business continuity;
security;
system restoration.
Backup information is generally inaccessible during ordinary Platform operations and is removed or overwritten according to LumoBond's backup lifecycle procedures.
151. Anonymization
Where continued analytical value exists but identification of individual Users is no longer necessary, LumoBond may anonymize Personal Data.
Information that has been irreversibly anonymized is no longer considered Personal Data under applicable privacy legislation.
Anonymized information may be retained for purposes including:
research;
statistical analysis;
AI evaluation;
software improvement;
business planning.
152. Secure Disposal
When Personal Data reaches the end of its applicable retention period, LumoBond seeks to securely dispose of such information through methods appropriate to the storage medium.
Secure disposal methods may include:
permanent deletion;
cryptographic erasure;
secure overwriting;
destruction of storage media;
anonymization.
The selected method shall reflect the sensitivity of the information and the applicable security requirements.
153. Periodic Retention Reviews
LumoBond periodically reviews retained Personal Data to determine whether continued retention remains necessary.
Such reviews may consider:
legal requirements;
contractual obligations;
operational necessity;
cybersecurity risks;
business continuity;
technological developments.
Information no longer required shall be deleted or anonymized where reasonably practicable.
154. Exceptions
Certain categories of Personal Data may be retained beyond ordinary retention periods where required by:
applicable legislation;
court orders;
regulatory investigations;
law enforcement requests;
ongoing legal proceedings;
fraud prevention activities;
cybersecurity investigations.
Such retention shall be limited to the extent reasonably necessary for the relevant purpose.
155. User Responsibilities
Users are encouraged to maintain copies of information they consider important.
Following deletion of Personal Data, LumoBond may be unable to restore deleted information except where temporarily preserved within secure backup systems for disaster recovery purposes.
156. Future Retention Policies
As the LumoBond Platform evolves, retention practices may be refined to reflect:
technological developments;
new Services;
wearable technologies;
Artificial Intelligence systems;
legal developments;
regulatory guidance.
Material changes to retention practices shall be reflected in updated versions of this Privacy Policy where required by applicable law.
CHILDREN'S PRIVACY · ARTIFICIAL INTELLIGENCE TRANSPARENCY · AUTOMATED DECISION-MAKING · USER SAFEGUARDS
157. Introduction
LumoBond develops technology intended to support meaningful human interaction through responsible innovation, privacy protection and transparent Artificial Intelligence.
Because the Platform utilizes Artificial Intelligence and advanced computational technologies, LumoBond recognizes its responsibility to explain how these technologies operate, what their limitations are and how Users remain in control of important personal decisions.
This Part also describes LumoBond's approach to protecting children and other vulnerable individuals.
158. Responsible Artificial Intelligence
LumoBond develops and deploys Artificial Intelligence with the objective of assisting Users---not replacing human judgment.
Artificial Intelligence is intended to:
support informed decision-making;
improve personalization;
identify potential compatibility;
enhance User experiences;
improve accessibility;
increase platform efficiency;
strengthen security.
Artificial Intelligence shall never be represented as possessing independent consciousness, emotions, human reasoning or infallible knowledge.
159. Human Oversight
LumoBond seeks to ensure that significant Platform functionality remains subject to appropriate human oversight.
Artificial Intelligence assists in generating informational outputs but does not independently make legally binding decisions regarding Users.
Where human review is appropriate or legally required, LumoBond shall implement procedures enabling qualified personnel to evaluate relevant processing activities.
160. Nature of AI Recommendations
Compatibility Scores, Identity Profiles, Confidence Scores and AI Recommendations are generated through computational analysis based upon information available to the Platform at a particular point in time.
Such outputs:
represent statistical estimates;
may evolve over time;
depend upon available information;
may change as additional information becomes available;
may differ following software updates;
may contain inaccuracies.
Accordingly, Users should interpret AI-generated outputs as informational guidance rather than objective truth.
161. No Professional Advice
Artificial Intelligence services provided through the Platform are not intended to replace qualified professional advice.
Accordingly, AI-generated outputs shall not be interpreted as:
medical advice;
psychiatric advice;
psychological diagnosis;
legal advice;
financial advice;
investment advice;
employment decisions;
educational assessments;
governmental determinations;
emergency guidance.
Users remain solely responsible for decisions made in reliance upon Platform information.
162. No Guaranteed Outcomes
LumoBond does not guarantee that Artificial Intelligence systems will correctly predict or determine:
friendships;
romantic relationships;
marriage compatibility;
business success;
employment suitability;
educational outcomes;
emotional compatibility;
social compatibility;
long-term relationships.
Compatibility analyses represent informational estimates only.
163. Continuous Learning
Artificial Intelligence technologies evolve continuously.
Accordingly, LumoBond may:
improve algorithms;
retrain models;
replace computational methods;
redesign recommendation engines;
improve fairness;
reduce bias;
improve explainability;
enhance security.
Such improvements may alter Compatibility Scores, Identity Profiles and AI Recommendations without constituting an error or defect.
164. Algorithmic Fairness
LumoBond seeks to design Artificial Intelligence systems that operate fairly and responsibly.
Reasonable efforts may include:
bias testing;
performance evaluation;
quality assurance;
model validation;
continuous monitoring;
fairness assessments;
security reviews.
Artificial Intelligence systems remain probabilistic technologies and cannot eliminate every source of uncertainty or unintended bias.
165. Explainability
Where reasonably practicable and technically feasible, LumoBond seeks to provide meaningful information regarding the purpose and general functioning of Artificial Intelligence systems.
However, LumoBond is not required to disclose:
source code;
proprietary algorithms;
model architecture;
training methodologies;
confidential datasets;
trade secrets;
cybersecurity mechanisms;
intellectual property.
Such information constitutes confidential commercial information belonging to LumoBond.
166. Protection of AI Systems
Artificial Intelligence models, recommendation engines, Compatibility Engines and Identity Engines constitute proprietary technologies.
Users shall not attempt to:
reverse engineer;
decompile;
disassemble;
extract training data;
reproduce AI models;
circumvent technical protections;
benchmark models for unauthorized commercial purposes;
scrape AI outputs at scale;
exploit vulnerabilities.
Unauthorized activities may result in suspension of Services and legal action.
167. Automated Decision-Making
LumoBond seeks to ensure that Users are not subject to decisions producing legal effects or similarly significant effects based solely upon automated processing unless expressly authorized by applicable law.
Where applicable legislation grants additional rights relating to automated processing, LumoBond shall seek to respect such rights.
168. User Control
Users remain in control of important personal decisions.
Artificial Intelligence should be considered one informational resource among many.
Users should exercise independent judgment before acting upon:
Compatibility Scores;
AI Recommendations;
Identity Profiles;
Confidence Scores;
compatibility insights;
behavioral observations.
169. Children's Privacy
LumoBond recognizes the importance of protecting children.
The Platform is not intentionally directed toward children who are below the minimum age required under applicable law to independently consent to the processing of Personal Data.
Where local legislation requires parental authorization, LumoBond shall seek to obtain appropriate authorization before processing Personal Data.
170. Information Relating to Children
LumoBond does not knowingly collect Personal Data from children in violation of applicable law.
If LumoBond becomes aware that Personal Data has been collected from a child contrary to applicable legal requirements, LumoBond shall seek to:
investigate the matter;
restrict processing where appropriate;
obtain necessary authorization where legally permissible;
delete the information where required.
171. Parental Rights
Where applicable legislation grants rights to parents or legal guardians, LumoBond shall seek to respect such rights, including requests concerning:
access;
correction;
deletion;
restriction of processing;
withdrawal of consent.
Appropriate identity verification may be required before fulfilling such requests.
172. Vulnerable Individuals
LumoBond recognizes that certain Users may require additional protection due to age, disability or other circumstances.
Where reasonably practicable, LumoBond seeks to design Platform features that:
promote accessibility;
reduce misuse;
enhance clarity;
minimize unnecessary complexity;
support informed decision-making.
173. Transparency Commitment
LumoBond is committed to providing Users with meaningful transparency regarding the processing of Personal Data and the operation of Artificial Intelligence.
Transparency may include:
privacy notices;
security information;
AI documentation;
policy updates;
user controls;
explanatory materials.
LumoBond seeks to balance transparency with the protection of intellectual property, trade secrets and cybersecurity.
174. Future Regulatory Compliance
Artificial Intelligence regulation continues to evolve internationally.
LumoBond shall seek to monitor developments relating to:
the European Union Artificial Intelligence Act;
GDPR guidance;
international privacy legislation;
cybersecurity regulations;
consumer protection requirements.
Where necessary, LumoBond may update this Privacy Policy and Platform functionality to maintain compliance with applicable legal obligations.
175. Commitment to Responsible Innovation
LumoBond believes that technological innovation should be accompanied by responsible governance.
Accordingly, the Company seeks to ensure that future Artificial Intelligence systems are developed with consideration for:
privacy;
security;
transparency;
fairness;
accountability;
human oversight;
legal compliance;
ethical responsibility.
These principles guide LumoBond's long-term development of the Platform and its future technologies.
CHANGES TO THIS PRIVACY POLICY · CONTACT INFORMATION · GOVERNING LAW · FINAL PROVISIONS
176. Introduction
This Privacy Policy constitutes an integral part of the legal framework governing the LumoBond Platform.
Its purpose is to explain how LumoBond collects, uses, protects, stores, transfers and otherwise processes Personal Data while respecting applicable privacy legislation and internationally recognized principles of responsible data governance.
This final Part describes how this Privacy Policy may be updated, how Users may contact LumoBond regarding privacy matters and how this Policy shall be interpreted.
177. Changes to this Privacy Policy
Technology, privacy legislation and the LumoBond Platform will continue to evolve over time.
Accordingly, LumoBond reserves the right to modify, revise, replace or update this Privacy Policy where reasonably necessary to:
comply with applicable legislation;
implement regulatory guidance;
introduce new products or Services;
deploy new Artificial Intelligence functionality;
improve security measures;
introduce wearable technologies;
improve Platform functionality;
respond to technological developments;
improve transparency;
clarify existing provisions.
All amendments shall be made in good faith and in accordance with applicable law.
178. Notification of Material Changes
Where modifications materially affect the processing of Personal Data or significantly alter the rights of Users, LumoBond shall provide appropriate notice before such changes become effective where required by applicable law.
Notification may be provided through:
the official website;
the Platform;
email communications;
in-application notifications;
wearable notifications where technically feasible;
other reasonable communication channels.
The method of notification shall depend upon the nature of the changes and applicable legal requirements.
179. Continued Use of the Platform
Where permitted by applicable law, continued access to or use of the Platform following the effective date of an updated Privacy Policy constitutes acknowledgment of the revised Policy.
Where applicable legislation requires renewed consent before new processing activities commence, LumoBond shall obtain such consent before relying upon it.
Nothing in this section shall limit any mandatory statutory rights available to Users.
180. Governing Law
This Privacy Policy shall be governed by and interpreted in accordance with the laws of the Kingdom of Sweden, without regard to conflict of law principles.
Nothing contained in this Privacy Policy shall deprive any User of mandatory consumer or privacy protections provided by applicable law in the jurisdiction in which the User resides.
Where mandatory local legislation provides greater protection than Swedish law regarding privacy rights, such mandatory provisions shall prevail to the extent required by law.
181. International Compliance
LumoBond intends to provide Services internationally.
Accordingly, LumoBond seeks to conduct its privacy program with consideration of internationally recognized privacy principles and applicable legislation, including where relevant:
Regulation (EU) 2016/679 (General Data Protection Regulation);
applicable Swedish data protection legislation;
the European Union Artificial Intelligence Act;
California Consumer Privacy Act (CCPA);
California Privacy Rights Act (CPRA);
other applicable privacy legislation governing the jurisdictions in which LumoBond operates.
Where conflicts arise between applicable legal obligations, LumoBond shall seek to comply with the mandatory legal requirements applicable to the relevant processing activity.
182. Contacting LumoBond
Questions regarding this Privacy Policy, the processing of Personal Data or the exercise of privacy rights may be submitted to LumoBond using the contact information published on the official LumoBond website.
At the time of publication, the primary contact channel is:
General Privacy Inquiries
Where LumoBond appoints a Data Protection Officer or equivalent privacy representative under applicable law, the relevant contact information shall be published on the official website.
183. Complaints
Users who believe that LumoBond has processed Personal Data in violation of applicable privacy legislation are encouraged to contact LumoBond before seeking external resolution so that the matter may be investigated and, where appropriate, resolved promptly.
Nothing contained in this Privacy Policy limits a User's statutory right to lodge a complaint with a competent supervisory authority or pursue any remedy available under applicable law.
184. Severability
If any provision of this Privacy Policy is determined by a court or other competent authority to be invalid, unlawful or unenforceable, such provision shall be interpreted, modified or severed only to the extent necessary to preserve compliance with applicable law.
The remaining provisions shall continue in full force and effect.
185. No Waiver
Failure by LumoBond to enforce any provision of this Privacy Policy shall not constitute a waiver of that provision or of any other right available under applicable law.
Any waiver shall be effective only if made expressly in writing by an authorized representative of LumoBond.
186. Entire Privacy Policy
This Privacy Policy constitutes the complete privacy notice governing the processing of Personal Data by LumoBond unless supplemented by:
service-specific privacy notices;
product-specific notices;
wearable-specific notices;
beta program notices;
research participation notices;
legally required supplemental disclosures.
In the event of inconsistency, the more specific notice shall prevail solely with respect to the relevant Service.
187. Relationship with Other Legal Documents
This Privacy Policy forms part of the broader legal framework governing the LumoBond Ecosystem and should be read together with:
Terms of Use;
Acceptable Use Policy;
Community Guidelines;
Cookie Policy;
AI Policy & Disclaimer;
Intellectual Property Policy;
Copyright & Trademark Notice;
Data Retention Policy;
Waitlist Terms;
Security & Vulnerability Disclosure Policy;
any additional legal documentation applicable to specific Services.
Each document complements the others while serving a distinct legal purpose.
188. Language
The official governing version of this Privacy Policy shall be the English-language version published by LumoBond.
Translations into other languages may be provided solely for convenience.
In the event of any inconsistency between a translated version and the official English version, the English version shall prevail to the maximum extent permitted by applicable law.
189. Effective Date
This Privacy Policy shall become effective on the date specified by LumoBond upon official publication.
The version number and effective date shall appear on the first page of this Privacy Policy.
Historical versions may be retained for legal, operational and transparency purposes.
190. Commitment to Privacy
Privacy is a foundational principle of the LumoBond Ecosystem.
As LumoBond continues to develop new technologies, including Artificial Intelligence systems, wearable devices and future digital services, the Company remains committed to:
protecting Personal Data;
respecting individual autonomy;
promoting transparency;
implementing appropriate security safeguards;
minimizing unnecessary processing;
supporting User control;
maintaining accountability;
continuously improving privacy practices.
LumoBond believes that meaningful innovation and meaningful privacy should advance together.
191. Final Statement
By using the LumoBond Platform, Users acknowledge that they have had the opportunity to review this Privacy Policy and understand how Personal Data may be processed in connection with the Services.
Nothing contained in this Privacy Policy limits any rights that cannot lawfully be excluded or restricted under applicable legislation.
This Privacy Policy shall remain in force until replaced by a newer official version published by LumoBond.
DOCUMENT CONTROL
Document Title: LumoBond Privacy Policy
Document Code: 04_Privacy_Policy
Document Owner: LumoBond AB (under formation)
Original Language: English
Jurisdiction: Kingdom of Sweden
Primary Applicable Legislation: GDPR, Swedish Data Protection Laws, EU AI Act (where applicable), CCPA/CPRA (where applicable)
Status: Official Legal Policy upon publication