This Policy explains how Lumus Player processes personal data, in accordance with the Brazilian General Data Protection Law, Law No. 13,709 of 2018. It applies to the app on phones, tablets and TVs, to the browser version and to the website, and it complements the Terms of Use.
In one sentence: we keep in the cloud only what your account, your plan and your playlists need to work; what you watch stays on your device; we do not sell data and we do not advertise.
1. Who looks after your data
The controller of the personal data processed in Lumus Player is the Lumus Player team, responsible for the app, the browser version and the website.
The contact for our data protection officer is in section 14.
2. What stays only on your device
Lumus Player was built to keep everything related to what you watch on your device. This data is not sent to us:
- favorites, progress, history and the continue watching list;
- app preferences, such as language, theme and live stream format;
- parental controls, with the PIN stored only as an encrypted code;
- downloads and the catalog of your playlists, cached to open faster.
In the browser version, this data stays in the browser's own storage. Clearing the app or browser data deletes this information, and we have no way to recover it.
3. What we keep in the cloud
3.1 Account
- Name and email.
- Password, stored only as a cryptographic hash. No one on our team can read it.
- Your Google account identifier, if you sign in with Google.
- Two-step verification data, with the secret encrypted and the backup codes stored as cryptographic hashes.
- Creation date, account type, any block and deletion request.
3.2 Plan and payment
- Plan, status, and start and expiry dates.
- Purchase token and product bought on Google Play, to validate the subscription and receive renewal, cancellation and refund notices.
- We do not receive or store card numbers or other payment details. Payments are processed by Google Play.
3.3 Free trial
We store the identifier of the device on which the free trial was used, provided by the device's operating system, only to prevent the trial from being repeated on the same device. Alongside it we keep a code calculated from that identifier, which cannot be turned back into it and has no link to your name, your email or your account. This code is kept after the account is deleted, so the trial cannot be repeated by deleting the account and creating another one.
3.4 Playlists
We store the address, username and password of the playlists you add, along with each profile's name, avatar and color. Playlist passwords are encrypted. We use this data so that your playlists appear on all your devices and so that the browser version can access the source at your request, and for nothing else.
3.5 Bugs and suggestions
We store the tickets and comments you send, with the type, platform, app version and device model provided when sending, as well as reply notices.
3.6 TV sign-in with a QR code
To sign in on the TV with your phone, we create a temporary session with a technical device identifier, deleted when it expires.
4. Technical data and usage statistics
- Server technical records, such as IP address, date, time and address accessed, used for security, rate limiting and diagnostics. They stay with our hosting provider for a short time, usually a few days.
- Device type, brand and model, sent at sign-in and used only at that moment, for sign-in security. We do not store this information.
In the app, we use Google Analytics for Firebase to understand how Lumus Player is used and to fix problems. It receives:
- screens opened and actions such as playback start and end, errors, downloads, sign-in and purchases;
- the type and category of the content, without the title, and the terms typed in search;
- general information, such as plan, platform, app version, language and device performance profile.
We do not use the device's advertising identifier, we do not link statistics to your name or email, and we do not advertise. The website does not use analytics tools or advertising cookies.
5. What we use data for and the legal basis
- To perform our contract with you: creating and maintaining the account, applying the plan, syncing playlists, making the browser version work and providing support. Legal basis: performance of a contract, article 7, item V, of the Brazilian data protection law.
- To protect the service and you: security, prevention of fraud and free trial abuse, and statistics to improve the app. Legal basis: legitimate interest, article 7, item IX, always respecting your rights and expectations.
- To comply with the law and defend ourselves: legal obligations, orders from authorities and the exercise of rights in legal proceedings. Legal basis: article 7, items II and VI.
We do not use your data for advertising, we do not sell profiles and we do not make automated decisions that affect your rights, except for granting the free trial, which is decided automatically based on the device identifier. You can ask for this decision to be reviewed through the channels in section 14.
6. Who we share data with
We do not sell or rent personal data. We only share what is necessary with providers that operate on our behalf and follow our instructions:
- Heroku, by Salesforce: hosting for the servers of the app, the website and the browser version.
- Supabase: the database where the data described in section 3 is stored.
- Google: sign-in with Google, billing and subscription validation through Google Play, and Firebase statistics.
There are also third parties that do not work for us, but that your devices communicate with:
- The source you add. In the app, your device connects directly to it, and it receives your IP address and the credentials you added. In the browser version, our servers are the ones that connect to the source.
- Public catalog databases, such as TMDB, and sports databases. Our servers query them without personal data, but your device may load images directly from them, and they receive technical data such as your IP address.
- Public authorities, when the law or a court order requires it.
7. Transfers to other countries
Our servers and database are in the United States, as are some Google services. This transfer is necessary to perform our contract with you and is carried out with providers that adopt contractual guarantees and security measures compatible with the Brazilian data protection law, as provided in its article 33.
8. How long we keep data
- Account, plan and playlists: while the account exists. After a deletion request there are 3 days to change your mind, and then everything is permanently deleted, including the free trial device identifier and notices. Only the device code described in section 3.3 remains, with no link to you, to prevent the free trial from being repeated.
- Tickets and comments you posted: they remain on the board after the account is deleted, with no link to you. If you want them deleted, ask before deleting your account or through the email in section 14.
- Server technical records: a few days.
- Data on your device: until you delete it.
- When the law requires something to be kept longer, we keep only that and only for the legal period.
9. Your rights
Under the Brazilian data protection law, you may request at any time:
- confirmation that we process your data and access to it;
- correction of incomplete, inaccurate or outdated data;
- anonymization, blocking or deletion of unnecessary data or data processed unlawfully;
- portability of your data to another provider;
- information about who we share your data with;
- objection to processing based on legitimate interest;
- review of the automated free trial decision.
You can change your password in the account settings and delete your account in the app, under Delete my account. Name corrections and other requests are made through the email in section 14 and answered within 15 days. We may ask you to confirm your identity to protect your account. You may also file a complaint with the Brazilian National Data Protection Authority.
11. Security
- All communication with our servers is encrypted.
- Passwords are stored as cryptographic hashes, and playlist passwords and two-step verification secrets are encrypted.
- Protected sessions, rate limiting against password guessing and a database with restricted access.
- On Android, sign-in credentials are kept in the system's secure storage.
No system is completely immune to failures. If a security incident may cause relevant risk or harm, we will notify you and the Brazilian National Data Protection Authority, as required by law. We never ask for your password, PIN or payment details by email, phone or message.
12. Children and teenagers
Lumus Player is not intended for children under 13. Between 13 and 18, use requires the permission and supervision of a parent or guardian. If you are a parent or guardian and believe a child has created an account, contact us through section 14 and we will delete it.
13. Changes to this Policy
We may update this Policy. The date of the version in force is at the top of the document, and relevant changes will be announced in the app, on the website or by email at least 7 days in advance.
14. Data protection officer and contact
- Data protection officer: suporte@lumusplayer.com, with the subject Privacy.
- Support: suporte@lumusplayer.com
Do not send privacy requests or personal data through the Bugs and suggestions area, because other users can see it. Use the email.
Summary with no legal value
This summary does not replace reading the full Policy and has no legal value.
Stays with you
- Favorites, history and progress.
- Parental controls and PIN.
- Downloads and catalog cache.
Kept in the cloud
- Account and plan.
- Playlists, with encrypted passwords.
- What you post in Bugs and suggestions.
We never
- Sell or rent data.
- Advertise or use the advertising identifier.
- Store card details.