Lumen Twin
Last updated · May 2026

Security

A Twin is only as safe as the system holding it. Here is what we run.

Encryption

TLS 1.3 in transit. AES-256 at rest. Per-user vector indexes, isolated by row-level security at the database layer.

Access control

Zero-trust internal network. Admin access requires SSO + hardware key. Audit logs for every privileged action.

Inference

Prompts route through a private gateway. Upstream providers do not retain data for training. No-train flags set where the provider supports them.

Tenancy

Logical isolation per user, with RLS enforced in Postgres. Vector retrieval is scoped server-side — a misconfigured client cannot bypass it.

Disclosure

Found something? support@lumendralabs.com. We respond within 48h and credit researchers in our hall of fame.

© 2026 Lumendra Labs
Lumendra Labs, S.L. · NIF B88772140
11520 Rota (Cádiz), España · support@lumendralabs.com
Registered at the Mercantile Registry — Protocol 2026/2435, Entry 2026/3442, Sheet CA-69390 (20/05/2026).