Security & Trust
Lumina processes sensitive manufacturing data — PLC signals, incident logs, plant memory. We built our platform with security and compliance at the foundation, not as an afterthought.
GDPR Compliance
Data Controller
Lumina GmbH acts as a data processor on behalf of our customers. Clear data processing agreements (DPAs) govern every engagement, with defined retention periods and deletion procedures.
Data Minimisation
We only collect and process data necessary for delivering our incident intelligence services. Manufacturing telemetry is anonymised where possible.
Sub-Processor Management
All sub-processors are EU-based or operate under Standard Contractual Clauses. We maintain a transparent sub-processor list available on request.
Infrastructure Security
EU-Hosted
All production workloads run in AWS eu-central-1 (Frankfurt) and Google Cloud europe-west3 (Frankfurt). Your data never leaves EU jurisdiction.
Encryption
Data encrypted at rest (AES-256) and in transit (TLS 1.3). Database-level encryption with customer-managed keys available on Enterprise plans.
Access Control
Role-based access with SSO/SAML integration. All access logged and auditable. Infrastructure access requires MFA and is limited to a small operations team.
Responsible AI
Human-in-the-Loop
All AI-generated recommendations require human approval before execution. Lumina agents assist — they never act autonomously on critical production systems.
Transparent Actions
Every agent action is logged with full provenance. Operators can trace any recommendation back to its source data and reasoning chain.
No Autonomous Decisions
Lumina never makes autonomous decisions on your production floor. Our AI surfaces insights and suggests actions — your team decides what happens next.
Compliance Roadmap
Have security questions?
Our team is happy to discuss security requirements, provide our security documentation, or schedule a detailed review.
Bring one incident. We show the command layer.
See how Lumina turns your evidence into intelligence that prevents the next one.
- One line
- One recurring incident
- Your evidence sources