1. Who is responsible
Lumiz AR Room Planner (“Lumiz”) is provided by Tobias Reidl, trading as Alive Studios. Alive Studios is the data controller for the processing described in this policy.
Alive Studios / Tobias ReidlDüppelstr. 15
45138 Essen, Germany
tbr@alive-studios.io
2. The short version
Room scans, AR world maps, room layouts, saved item details, preview images and downloaded 3D models remain on your device in the current release.
A product image and its measurements leave your device only when you ask Lumiz to generate a 3D model.
Lumiz does not contain advertising SDKs, sell personal data, or track you across other companies' apps and websites.
3. Data processed on your device
Lumiz stores the following information locally so its planning features work:
- RoomPlan room geometry, room names, 3D room files and AR world maps.
- Furniture and décor placements, dimensions and clearances inside saved rooms.
- Saved product names, source-page URLs, preview images, measurements and generated or imported USDZ models.
- App preferences and tutorial progress.
- A non-identifying count of successfully completed 3D generations, retained in the iOS Keychain to prevent a cloud-data deletion from resetting the free allowance on the same device.
Room, item, preference and tutorial data is not uploaded by Lumiz while iCloud sync is disabled. It remains until you delete the room or item in Lumiz, erase the app's data, or uninstall the app. The Keychain-backed completed-generation count has the separate retention described in Section 10 and normally remains after an app reinstall. Device backups controlled by Apple or by you may contain a copy according to your device backup settings.
4. Anonymous app session and abuse prevention
Lumiz creates an anonymous Firebase user ID when you use a cloud generation feature. It does not require your name, email address or a user-created password. Firebase Authentication tokens, Firebase App Check tokens and the device's completed-generation count are sent with generation requests so the service can verify that the request comes from Lumiz, prevent abuse, limit simultaneous jobs and apply the generation allowance.
The app does not intentionally store these access tokens itself. Firebase and Google Cloud may also process technical information such as IP address, authentication events, device or app integrity signals, request timestamps and service logs for security and reliable operation.
5. 3D model generation
When you choose Generate 3D model, Lumiz sends:
- The selected furniture or décor image, normalized as a JPEG.
- The width, height and depth you confirmed.
- A random job ID, the product name and the source page URL.
- Your anonymous Firebase credentials and App Check token.
The Alive Studios generation service receives the image in memory and sends the image to Meshy to create the 3D model. Alive Studios does not store the uploaded image as a separate file on its own server. The current backend does not persist the product name, measurements or source-page URL. The completed USDZ model is returned to Lumiz and stored locally on your device.
A Firestore job record stores the job ID, anonymous user ID, Meshy task ID, status, progress, error information, provider model URL and timestamps so an interrupted generation can resume. Job records are marked to expire 24 hours after creation and are then deleted asynchronously by Firestore TTL, so final deletion may occur later. The generation-usage record stores the anonymous user ID, number of successful generations, temporary active-job reservation and update time so Lumiz can enforce its generation allowance. If you delete cloud data and later use generation again, Lumiz carries forward the non-identifying local count so deletion does not restore the free allowance.
6. Furniture websites
Lumiz contains an embedded browser that lets you visit furniture and décor websites. It uses the standard persistent website data store provided by Apple's WebKit, so a website may set cookies or store other website data on your device. Those websites receive your requests directly and process data under their own privacy policies. Alive Studios does not receive your general browsing history. A selected product's source URL is stored locally and is included in a generation request as described above, but is not persisted by the current backend.
7. Support communications
If you email support, we receive your email address, message and anything you attach. Please do not attach room scans, private photos or other sensitive information unless we specifically ask for it and it is necessary to resolve the issue.
8. Why we process this data
- Provide the app: authenticate the installation, generate and deliver 3D models, resume jobs and enforce the generation allowance.
- Protect the service: validate genuine app requests, prevent fraud and abuse, and investigate failures.
- Provide support: answer questions and carry out privacy requests.
- Meet legal obligations: respond where applicable law requires it.
For users in the EEA, this processing is based on performing the service you request (Article 6(1)(b) GDPR), our legitimate interests in securing and operating Lumiz (Article 6(1)(f) GDPR), and legal obligations where applicable (Article 6(1)(c) GDPR).
9. Service providers and recipients
| Recipient | Role in Lumiz | Data involved |
|---|---|---|
| Google Firebase and Google Cloud | Anonymous authentication, App Check, Firestore job/quota storage and Cloud Run hosting | Anonymous ID, tokens, job and usage records, generation request data in transit, and technical logs |
| Meshy LLC | Image-to-3D generation | Selected product image, provider task data and generated model |
| Apple | App distribution, device services and App Attest integrity signals | App/device integrity and App Store service data; room scanning itself is processed on-device by Lumiz |
| Websites you visit | Product discovery in the embedded browser | Direct web requests, IP address and any cookies or data those sites process under their own policies |
Provider processing may take place outside the EEA. Where required, Alive Studios relies on applicable transfer safeguards such as adequacy decisions or standard contractual clauses. See the providers' current policies for additional details: Firebase privacy and security, Google Cloud Privacy Notice, and Meshy Privacy Policy.
10. Retention and deletion
- Local room and item data: until you delete it in Lumiz, erase app data, or uninstall the app, subject to your device backups.
- Device-local completed-generation count: retained in the iOS Keychain to enforce the free allowance after cloud-data deletion and normally after an app reinstall. It is removed by erasing/resetting the device or clearing the relevant Keychain data.
- Generation jobs: marked to expire 24 hours after creation so interrupted work can resume, then deleted asynchronously by Firestore TTL.
- Generation allowance: retained with the anonymous user ID until a verified deletion request. A separate non-identifying device-local completed-generation count remains as described above so a replacement anonymous account does not reset the allowance.
- Firebase authentication: retained until the anonymous account is deleted; provider backup deletion can take longer.
- Meshy input and output: retained according to Meshy's service terms and privacy policy.
- Support email: normally retained for up to three years after the request is resolved, unless a shorter or longer period is required by the matter or law.
- Security and operational logs: retained for the periods configured by the relevant provider and longer only where needed to investigate abuse, security or legal issues.
Visit Delete cloud data for the request route and an explanation of what deletion covers.
11. Your choices and rights
Depending on where you live, you may have rights to access, correct, erase, restrict or object to processing, receive a portable copy, and withdraw consent where processing relies on consent. You may also complain to a data protection authority. In North Rhine-Westphalia, the relevant authority is the Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen.
To exercise a right, email tbr@alive-studios.io. We may need to verify that the anonymous ID belongs to your installation before disclosing or deleting cloud data.
12. Children, security and changes
Lumiz is not directed to children under 16 in the EEA or under 13 elsewhere, and we do not knowingly collect their personal data. We use access controls, encrypted transport and provider security controls, but no online service can guarantee absolute security.
We may update this policy when Lumiz's features or providers change. The date at the top identifies the current version. Material changes will be presented in the app or on this page where appropriate.
13. Contact
Questions about Lumiz privacy can be sent to tbr@alive-studios.io. General support is available on the Lumiz support page.