Privacy Policy

Last updated: May 6, 2026

1. Data Controller

Personal data collected through the Lunema application are processed by:

No Data Protection Officer (DPO) has been designated.

2. Collected Data

Account Data: email address, authentication identifier, connection information, account creation date.

Usage Data: created meditation sessions, user settings and preferences, usage statistics, generation history.

Technical Data: IP address, device information, technical logs, security information.

User Content: The user can submit free text. This content may be processed automatically to generate personalized meditations, improve the service, or detect abusive usage. Content sent to artificial intelligence services is not used to personally identify the user.

3. Purposes of Processing

Data is used to provide the application features, personalize meditations, manage user accounts, ensure the security of the service, prevent abuse, improve technical performance, and manage future subscriptions and payments.

4. Legal Basis

Processing is based on the performance of the requested service, consent, the legitimate interest of the operator, and applicable legal obligations.

5. Hosting and Subcontractors

Data may be processed via: Supabase (database and authentication), Cloudflare R2 (temporary storage of audio files), artificial intelligence providers, and VPS hosting services.

6. Storage of Audio Files

Generated audio files are stored temporarily and are accessible via secure links. Files associated with a deleted account are purged within a reasonable timeframe.

7. Data Retention

Data is retained for the period necessary for the operation of the service. Accounts can be deleted at any time from within the application. Some technical data may be retained temporarily for security or legal reasons.

8. Security

Reasonable technical and organizational measures are implemented to protect data against unauthorized access, loss, alteration, or unauthorized disclosure.

9. User Rights

In accordance with the GDPR, users can request access, rectification, deletion, restriction, or portability of their data. Requests should be addressed to: sebastien@aiwis.ovh

10. Minors

The application is reserved for persons aged at least 16.

11. Modifications

This policy may be modified at any time. The applicable version is the one published on this site.

12. Contact

sebastien@aiwis.ovh