// Legal

Privacy Policy

Last updated: August 27, 2026

1. What we collect

When you create an account we collect your email address and, optionally, a display name. As you learn, we store your course progress. If you use the AI tutor, we store the questions you ask it and the replies you receive (see section 6). When you buy something, our payment processor collects the payment details needed to charge you and shares a transaction reference with us; we never receive or store your full card number. We also process basic technical data (such as your IP address and browser) that is necessary to operate and secure the site.

2. Why we use it

We use your data to provide the service: to authenticate you, save and sync your progress across devices, grant access to what you have purchased, send you essential transactional emails (such as email confirmation, password resets, and purchase receipts), and to keep the platform secure. We do not sell your personal data, and we do not use it for third-party advertising.

3. Service providers we use

We rely on a small number of trusted providers who process data on our behalf: Supabase (accounts, database, and authentication), Mercado Pago (payment processing), Resend (sending transactional email), Vercel (application hosting), Cloudflare (DNS and email routing), and Microsoft Azure OpenAI (which powers the AI tutor). Each processes data only as needed to provide its service. Some of these providers may process data outside Argentina; where that happens, it is done to deliver the service you have requested. We also use GitHub, which hosts the private tracker where problem reports you submit are recorded.

4. Cookies and sessions

We use only the cookies that are necessary to run the site: chiefly a session cookie that keeps you signed in and a cookie that remembers your language preference. We do not use advertising or third-party analytics cookies. Because these cookies are strictly necessary for the service to function, they cannot be disabled without breaking sign-in.

5. Problem reports and screenshots

If you report a problem with a lesson from inside the course, we receive the message you write, an optional screenshot you choose to attach, and technical details about where you were (the course, module, and scene, your browser and screen size, and the version of the site you were viewing). Screenshots are stored privately and are not publicly accessible. Your report is filed as a private issue in our development tracker, hosted by GitHub, so that we can act on it; that record identifies you only by an internal account identifier -- never your email address or your name. Please avoid including passwords, API keys, or other secrets in a screenshot or message. We also automatically report technical errors when a lesson fails to load; those reports contain no message from you and no screenshot.

6. AI tutor conversations

If you are a subscriber, you can ask our AI tutor questions from inside a course. To answer, we send the tutor the course material for the module you are in, which scene you are viewing, and how many attempts you have made at its exercise -- along with the question you type. We keep a record of these conversations (your questions and the tutor's replies, with the course, module, and scene they relate to) so that we can find the lessons that confuse people and fix them; this is the main way we learn which explanations are not working. Conversations are deleted automatically after 180 days, and you can delete yours at any time by deleting your account. If you attach a screenshot to a question, the image is sent to the tutor to answer it and is not stored -- we keep only the fact that an image was attached. Please avoid including passwords, API keys, or other secrets in a question or a screenshot. Your questions are processed by Microsoft Azure OpenAI as our provider; they are not used to train anyone's models.

7. How long we keep it

We keep your account data and progress for as long as your account exists. Records related to purchases may be retained longer where we are required to for tax, accounting, or legal reasons. When you delete your account, your personal data and progress are removed, subject to any records we must keep by law. AI tutor conversations are deleted automatically 180 days after they happen. A screenshot you attach to a problem report is kept for as long as that report is useful to us, since it is the evidence for it; you can have it removed at any time by deleting your account or by emailing us.

8. Deleting your account

You can delete your account at any time from your account settings. Deletion is immediate and permanent: it removes your profile, your saved progress, your AI tutor conversations, and your associated data. If you have questions about deletion or want a copy of the data we hold about you, contact us by email and we will help. One exception is worth stating plainly: if you submitted a problem report, deleting your account removes any screenshot you attached, but the report itself remains in our development tracker so that the underlying issue can still be fixed. Because that record identifies you only by an internal identifier, it no longer points to you once your account is gone. One limit is worth being precise about: GitHub serves images in an issue through its own caching proxy, so while we delete the screenshot from our storage, a cached copy may persist on GitHub's servers outside our control.

9. Your rights

You have the right to access, correct, or delete the personal data we hold about you, and to object to certain processing. In Argentina these rights are protected under the Personal Data Protection Act (Ley 25.326). To exercise any of them, email us using the address below; we may need to verify your identity before acting on a request.

10. Contact

For any question about this policy or how your data is handled, or to exercise your data rights, contact us by email.


Questions about these terms? Email us at info@lumina-labs.dev.

Privacy Policy | Lumina Labs