Privacy Policy
Last updated: August 24, 2026
1. Introduction
LumiBase ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and protect your information when you use our Service.
2. Information We Collect
As an open-source project, LumiBase is designed to be self-hosted. When you deploy LumiBase on your own infrastructure, you have full control over your data. We do not collect or store any data from self-hosted instances.
On our public websites (lumibase.dev and docs.lumibase.dev), we collect two separate things:
- Aggregate traffic measurement, always on. Cloudflare Web Analytics counts page views and page-load timings. It sets no cookies, stores no identifier in your browser, and does not fingerprint you, so it needs no consent and cannot follow you between sites.
- Google Analytics 4, only if you allow it. If you accept analytics cookies, Google Analytics records which pages you visit and how you reached them. This is off until you opt in, and you can withdraw at any time in section 6.
Neither collects your name, email, or account data — we have no accounts on this website. We do not sell data, run advertising, or share it with ad networks.
3. How We Use Your Information
We use the information we collect to:
- Improve and maintain our Service
- Analyze usage patterns to enhance user experience
- Monitor performance and fix bugs
- Comply with legal obligations
4. Data Storage and Security
For self-hosted instances, all data is stored on your own infrastructure. We have no access to your content, user data, or any other information stored in your LumiBase instance.
For our public website, we implement appropriate security measures to protect your information from unauthorized access, alteration, or destruction.
5. Third-Party Services
Our website may use third-party services such as:
- Cloudflare — content delivery, DDoS protection, and cookieless Web Analytics
- Google Analytics 4 — page analytics, loaded only after you opt in. Google acts as a data processor and may process data outside your country. Google Signals and ad personalisation are disabled on our property.
- GitHub — code hosting and issue tracking
These services have their own privacy policies. We encourage you to review them.
6. Cookies and your choice
This website sets no cookies until you allow analytics. If you do, Google Analytics stores _ga and _ga_<id> cookies to tell repeat visits apart. Declining keeps the site fully functional — nothing here depends on cookies.
Your choice is stored locally in your browser, not on our servers, so it does not identify you. Withdrawing removes the analytics cookies we set and stops further collection.
Because that choice lives in your browser's per-site storage, it applies to one site at a time. Our documentation site (docs.lumibase.dev) asks separately and carries its own control in the page footer — allowing analytics here does not allow it there, and neither does declining.
Analytics cookies are not configured on this deployment, so none are set at all.
7. Data Retention
For self-hosted instances, data retention is entirely under your control. For our public website, we retain data only as long as necessary for the purposes outlined in this policy.
8. Your Rights
You have the right to:
- Access information we hold about you (for our public services)
- Request deletion of your data (for our public services)
- Opt out of analytics cookies at any time (see section 6)
- Self-host your own instance with complete data control
9. Children's Privacy
Our Service is not intended for children under 13. We do not knowingly collect personal information from children under 13.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new policy on this page.
11. Contact Us
If you have questions about this Privacy Policy, please contact us through ourGitHub repository.