Last updated: 27 July 2026
LumeSafe is operated by Zero88 Pty Ltd (trading as "LumeSafe"), based in Australia. For the personal data described here, Zero88 Pty Ltd is the data controller — we decide why and how your data is processed. Our service providers (listed in section 5) act as processors on our instructions, except Paddle, which acts as an independent controller for payment and tax purposes as Merchant of Record.
Privacy contact: saintethels@gmail.com.
Account data: full name, email address, mobile number, password credentials, role (community user, responder, admin), and organisation name for team plans.
Location data: precise GPS coordinates while you use the app, and — where you consent — while the app is in the background, so we can show your position, pair Beam walks and send nearby hazard alerts.
Content you submit: Spark alerts (type, severity, location, time), Beam and trusted-circle activity, reports and support messages.
Responder credentials: the professional ID or licence document you upload for manual verification.
Technical data: device identifiers, push notification tokens, IP address, app usage and diagnostic logs.
Purchase data: your plan, subscription status and transaction identifiers. Card and billing details are collected and held by Paddle, not by us — we never see your full card number.
Account creation and providing the service, including maps, alerts, Beam pairing and push notifications (performance of our contract with you). Precise and background location (your consent, which you can withdraw at any time in your device or app settings). Responder verification and safety moderation (legitimate interests in a safe community, and legal obligation where applicable). Security, fraud prevention and abuse rate-limiting (legitimate interests). Customer support and service improvement (legitimate interests). Billing, invoicing and tax compliance (contract and legal obligation). We do not use your location for advertising or profiling.
Reports about a place rather than a person — such as a fire, an obstruction, an unlit area or a loose or injured animal — are shown at their exact reported location, because an imprecise warning is not a useful one. Reports that involve a person, including person and vehicle reports, intruder or trespass reports, and SOS, danger and fall alerts, are deliberately fuzzed by roughly 150 metres and displayed inside a privacy zone. Precise positions for those are only visible to you, your active Beam partner, your trusted circle, and verified responders or admins handling an alert. Your identity is hidden from other standard users.
Merchant of Record: Paddle.com Market Ltd, which handles the sale of our plans, subscription management, payment processing, invoicing, tax compliance, chargebacks and refunds. Paddle receives your name, email, billing details and purchase data.
Service providers (processors): our cloud hosting and database provider, push notification delivery (Google Firebase Cloud Messaging), SMS one-time-code delivery (Twilio), and map tile providers.
Professional advisers (legal, accounting) and authorities where required by law or to protect someone's safety. We never sell your personal information and never share it for cross-context behavioural advertising.
Some of these providers are located outside Australia (including the United States and the EU). Where data is transferred internationally we rely on appropriate safeguards such as standard contractual clauses.
Account and profile data: for as long as your account is active, then deleted or anonymised within 30 days of account closure. Precise location points and Beam session data: 30 days. Spark alerts: 12 months, then retained only in de-identified aggregate form. Responder ID documents: deleted within 90 days of a verification decision. Support messages: 24 months. Purchase and tax records: 7 years, as required by Australian tax law (held largely by Paddle). Security logs: 12 months.
Australia (Privacy Act 1988 and the Australian Privacy Principles): you may access, correct or request deletion of your personal information at any time, and may complain to the Office of the Australian Information Commissioner (OAIC).
California (CCPA/CPRA) and similar US state laws: you may request the categories and specific pieces of personal information we hold, request deletion or correction, and opt out of sale or sharing — we do neither. We will not discriminate against you for exercising these rights.
UK/EEA (GDPR): access, rectification, erasure, restriction, portability, objection, and withdrawal of consent, plus the right to complain to your supervisory authority. We respond within one month.
Use "Delete My Account & Data" in Settings to exercise deletion in-app, or email saintethels@gmail.com.
All location streams and uploaded documents are transmitted over TLS and stored encrypted at rest. Professional ID documents are held in a private, access-controlled bucket visible only to authorised reviewers. Access to production data is least-privilege and logged. No system is perfectly secure, but we apply appropriate technical and organisational measures.
We use essential cookies and local storage only — to keep you signed in, remember your consent choice and your last known location for faster startup. We do not use advertising or cross-site tracking cookies. You can clear this data from your browser or device settings, though signing in will be required again.
LumeSafe is intended for users aged 8 and older. Children under 13 should use the app with parental or guardian supervision. We do not knowingly collect personal information from children under 13 without appropriate parental consent.
If you are a parent or guardian and believe your child has provided personal information without your consent, please contact us at saintethels@gmail.com and we will promptly delete the account and associated data.
We will update this notice as the service changes and revise the date at the top of this page.