LUMEN

Privacy policy

Updated October 8, 2026. Lumen is a Mac email client for Gmail operated by Cody Tuma. Contact codytuma@gmail.com with privacy questions.

Google data and what we use it for

With your permission, Lumen accesses your Google account email address, name and picture to identify connected accounts; Gmail messages, headers, labels, attachments and drafts to show, search, sort, compose and send mail; Gmail settings to import signatures and create filters you request; and calendar information to display events, check schedules and create or update events at your request. Instant mail, when enabled, also uses Gmail IMAP access.

Where your mail lives

Mail and calendar requests go directly from Lumen on your Mac to Google. Lumen stores settings, cached messages and scheduling information in your Mac’s Application Support folder. OAuth credentials and tokens are stored in the macOS Keychain. Cached message content is not separately encrypted by Lumen; protect your Mac with its normal account security and FileVault.

AI is a choice

Apple Intelligence features run on your Mac when supported and enabled. If you choose Claude and supply your own API key, selected message content, participants, instructions and draft text are sent directly to Anthropic to perform the feature you request. Lumen does not send mail to a cloud AI provider for its own model training. Cloud AI is not enabled in the initial public release pending completion of the applicable data-use and verification review. Consult Anthropic’s privacy policy before enabling cloud AI in a development build.

Images and unsubscribe links

Loading remote email images contacts the sender’s image host, which can reveal your network address and that an image was loaded. You can turn remote images off in Settings. Unsubscribe actions may send a request to the mailing-list provider, send an email from your account, or open the sender’s website, depending on the mechanism the sender provides.

Plans, payments and gift codes

The public billing service is being prepared. When enabled, it will store your Google identity identifier and email, subscription status, gift-code redemption records, and monthly send counts to manage your plan. It will not receive Gmail access tokens, mail bodies, recipients or attachments. Stripe will process payments and store payment information; Lumen will not store card numbers. See Stripe’s privacy policy. This pre-release website does not collect payments.

Website and retention

This website has no advertising trackers, analytics scripts, or mailing-list signup form. The website host may process network and request information to operate and protect the site. Local cached mail remains until you remove the account or delete Lumen’s local data. Billing records, when enabled, will be retained while needed to provide the service and meet applicable recordkeeping obligations. You can request deletion by contacting the support address above.

Your control

Remove an account in Settings → Accounts to remove its local mail cache and Google tokens from Lumen. To revoke Lumen’s access at Google, use your Google account connections. Removing a Gmail account does not cancel a paid Lumen subscription. Manage subscriptions separately in Settings → Plan. Contact support to request deletion of billing data or help clearing local settings and scheduled items.

Limited Use

Lumen’s use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Lumen does not sell Google user data, use it for advertising, or use it to develop generalized AI models. Access is limited to providing the user-facing features described here, security, and applicable legal obligations. Service providers receive only the information needed for those purposes.

Changes

Material changes to these practices will be reflected in this policy, with updated notice as appropriate before the changed practice applies.