Privacy Policy
Learn how Lunio collects, uses, and protects your information.
May 24, 2026
We respect your privacy and build Lunio to keep data safe and secure.
1. Overview
This Privacy Policy explains how Lunio collects, uses, stores, processes, and protects information when you use the platform, website, and related services.
By accessing or using Lunio, you agree to the practices described in this Privacy Policy. If you do not agree with this policy, do not use the service.
Lunio is designed for Canadian businesses, freelancers, and independent operators and aims to handle user information responsibly and transparently.
2. Information We Collect
We collect information you provide directly when using Lunio, along with technical, operational, and security-related information required to operate and improve the platform.
This may include account details, business information, invoice records, tax preferences, support communications, browser/device information, usage activity, authentication logs, and approximate location signals derived from IP addresses.
Cookies, session identifiers, and similar technologies are used for authentication, security, fraud prevention, session management, and platform functionality.
- Account data: name, email address, login activity, and settings.
- Business data: business name, addresses, tax numbers, invoice preferences, and branding.
- Invoice data: clients, line items, taxes, totals, payment status, and invoice records.
- Usage data: pages visited, actions performed, timestamps, browser/device metadata, and feature interactions.
- Security data: login attempts, IP-derived signals, anti-abuse detection, and fraud prevention indicators.
3. How We Use Information
We use information to operate, maintain, secure, improve, and support Lunio and related services.
- Provide invoicing, client management, reporting, and related platform features.
- Authenticate users and maintain account security.
- Process subscription billing and manage account status.
- Respond to support requests and service-related communications.
- Monitor reliability, detect abuse, prevent fraud, and improve performance.
- Analyze aggregated or de-identified usage trends to improve the platform.
Lunio does not sell personal information to advertisers or third parties.
4. Internal Analytics & Security Signals
Lunio uses internal analytics, monitoring systems, and security tooling to understand product usage, improve reliability, detect abuse, and protect accounts and infrastructure.
This may include page visits, events/actions, timestamps, browser/device metadata, authentication activity, approximate geographic signals derived from IP addresses, spam/bot detection signals, and operational diagnostics.
Lunio does not request GPS or precise geolocation data from your device.
- Location data is approximate only and may be unavailable or inaccurate.
- Analytics and security information may be aggregated, anonymized, or hashed where practical.
- Security and analytics systems help detect fraud, unauthorized access, spam, and platform abuse.
- Lunio does not sell analytics or security-related data.
5. Stripe & Third-Party Services
Subscription payments are processed through Stripe. Lunio does not store full payment card numbers or sensitive card authentication information on its servers.
Lunio may use trusted third-party providers for infrastructure, hosting, analytics, transactional email delivery, monitoring, security, customer support, and payment processing.
These providers may process information on our behalf solely for operational purposes and are expected to handle information in accordance with reasonable security and privacy standards.
Third-party services operate under their own policies and terms, and Lunio is not responsible for the independent privacy practices of external providers.
6. Data Storage & Security
Lunio stores information using commercially reasonable technical and organizational safeguards designed to help protect user data from unauthorized access, misuse, disclosure, or loss.
Security measures may include encrypted connections, authentication controls, restricted administrative access, monitoring systems, backups, and abuse prevention systems.
Despite reasonable safeguards, no platform, transmission method, or storage system can be guaranteed completely secure, and use of the service is at your own risk.
7. Data Retention
We retain account, invoice, operational, analytics, and security-related information for as long as reasonably necessary to operate the platform, comply with legal obligations, resolve disputes, enforce agreements, and maintain platform security.
Backup copies, logs, analytics records, and security data may persist temporarily after account deletion due to operational, legal, fraud prevention, or disaster recovery requirements.
Requests for deletion will be processed within a reasonable timeframe, subject to legal, tax, operational, and security obligations.
8. User Rights
You may access, update, or delete your personal information through your account settings. You may also request a copy of your data or request deletion by contacting privacy@lunio.ca. We will respond within a reasonable timeframe consistent with applicable Canadian privacy laws.
9. Cookies
We use cookies and similar technologies for authentication, session management, and basic analytics. You can control cookies through your browser settings, but some features may not function properly if cookies are disabled.
10. Sharing of Information
Lunio does not sell personal information.
Information may be shared with trusted service providers and infrastructure partners that help operate the platform, including payment processors, hosting providers, email delivery services, analytics providers, monitoring systems, and security tooling.
Information may also be disclosed when reasonably necessary to:
- comply with legal obligations or lawful requests;
- protect the rights, safety, or security of Lunio, its users, or the public;
- detect or prevent fraud, abuse, or security incidents; or
- enforce agreements, policies, or platform integrity.
11. Children’s Privacy
Lunio is not intended for children under the age of 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, contact us so we can delete it.
12. Changes to This Policy
We may update this Privacy Policy from time to time to reflect platform changes, legal requirements, operational updates, or security improvements.
If material changes are made, we may provide notice through the platform, email, or other reasonable methods. Continued use of Lunio after updated policies become effective constitutes acceptance of the revised policy.
Contact
Questions about privacy? Email privacy@lunio.ca.