Your files stay on your device by default
Opening, editing, and saving local files does not silently upload their contents to LumenQube.
Security starts with clear boundaries. LumenQube keeps ordinary document editing local, protects the cloud features you choose to use, and explains the important limits without hiding them behind vague claims.
Opening, editing, and saving local files does not silently upload their contents to LumenQube.
Cloud requests use TLS. Shared content and connector secrets receive additional protection at rest.
Owners choose roles, can revoke links and members, and can rotate a shared document key after access changes.
AI, sharing, publishing, connectors, and submitted diagnostics are clearly identified cloud features.
Different features have different boundaries. These controls describe the current product design without implying a certification or guarantee.
Local documents remain under your operating system account and device protections.
Account controls are designed to resist common credential and session attacks.
Owners decide who can reach a cloud copy and what they may do with it.
Connected accounts are optional and scoped to the action you authorize.
Security-sensitive PDF actions are designed to change the underlying file, not only its appearance.
Only content needed for the AI action is sent through the managed backend to the selected provider.
Need the data-flow details? The Privacy Policy explains collection, subprocessors, retention, international transfers, and your rights.
Read the Privacy Policy →The assistant draws on two separate stores with different locations and different lifecycles. They are described here one at a time, because the honest answer differs per store and a single tier label would flatten it. The controls are in Settings → Memory & context.
Links between your own notes, tasks, meetings, events and people, drawn from what is already on this computer.
Facts the assistant saved because you told it something durable.
Two blocks, both readable in full before anything is sent.
Forget reaches five stores, and no cascade spans them, which is why it is a deliberate operation rather than a delete.
Want to see the exact text? The homepage prints both blocks verbatim, as the app assembles them.
See what gets sent →LumenQube has been listed in the CSA STAR Registry since July 31, 2026, carrying both STAR Level 1 and STAR for AI Level 1. Level 1 is a provider self-assessment that CSA publishes — it is not an independent audit or a third-party certification.
Every answer we filed is public on our registry entry — 603 questions across CSA's Cloud Controls Matrix and AI Controls Matrix, including the ones still open. Read the entry →
CAIQ v4.1 covers 283 cloud-security questions across the Cloud Controls Matrix. The published assessment identifies LumenQube, customer, and upstream-provider responsibilities and records open controls as open.
AI-CAIQ v1.1 covers 320 responsible-AI and AI-security questions. LumenQube is assessed as an application provider that uses managed model APIs and does not train a foundation model on customer content.
Level 1 is a public provider self-assessment. It is not a penetration test, independent audit, or guarantee, and the workbooks include truthful No and not applicable answers.
Both assessments are reviewed at least annually against the published registry date, and again after any material service, provider, legal, or threat-model change.
Need the assessment package? Contact us for the current version, scope, customer responsibilities, or a specific enterprise requirement.
Request the package →Email security@lumenqube.com with the affected product or URL, reproduction steps, impact, and any supporting evidence. Do not access other people’s data, disrupt service, use social engineering, or publicly disclose an unresolved issue. We will acknowledge the report and coordinate a responsible resolution in good faith.
No. Shared and published documents are encrypted in transit and at rest, including application-layer encryption for stored revisions, but LumenQube manages the keys so authorized server processes can render and synchronize the content. This is not end-to-end encryption.
Only when you choose a feature that needs cloud processing, such as AI, sharing, web publishing, a connected service, or a support report with attachments. Ordinary local editing does not silently upload document contents.
LumenQube is listed in the CSA STAR Registry and has been since July 31, 2026, carrying STAR Level 1 (CAIQ v4.1) and STAR for AI Level 1 (AI-CAIQ v1.1). Level 1 is a provider self-assessment that CSA publishes — it is not an independent audit, a third-party certification, or a penetration test. Every answer we filed is readable on the registry entry.
Yes. Owners can change member roles, remove collaborators, revoke browser links, and rotate the document key after access changes. Copies that someone already downloaded remain outside LumenQube’s control.
Email privacy@lumenqube.com from your account address. The Privacy Policy explains access, correction, deletion, portability, objection, and restriction rights that may apply.
Review the complete data-flow policy, then see how LumenQube turns local files into editable outcomes.