Skip to content

See Lumensmind with demo data

Your data stays yours

How Lumensmind protects studio data, isolates tenants, and keeps advertising connectors read-only — with UK residency and auditability built in.

  • UK GDPR
  • DPA 2018
  • OWASP ASVS
  • KMS
  • AES-256
  • Row-level security

Data protection

We work with aggregated campaign and creative metrics only. Lumensmind does not collect device IDs or personal data about your players.

Infrastructure

Production workloads run in AWS eu-west-2 (London) with UK data residency for tenant data at rest and in transit within the platform boundary.

Security measures

Controls align with OWASP ASVS Level 2. Connector credentials are encrypted with KMS; sessions use secure, rotating tokens and server-side permission checks.

Compliance

Our privacy posture is designed for UK GDPR and the Data Protection Act 2018, with clear roles for processors and subprocessors documented in our legal pages.

Tenant isolation

Every tenant row carries organization_id. PostgreSQL row-level security policies enforce studio boundaries so one organisation cannot read another’s data.

Audit

Security-relevant and workflow actions emit an immutable audit trail so admins can reconstruct who did what, and when, across the product.

Read-only connectors

Lumensmind never writes to your ad accounts. Connectors pull spend and performance data in read-only mode — your networks stay the system of record for changes.

Questions about privacy or security?

Read how we handle personal data in the product, or reach out to discuss your studio’s requirements.