Lumen Privacy Policy
Last updated: September 8, 2026.
Lumen is a personal video player for HarmonyOS. The developer display name is Lumen, and the support and privacy contact is admin@lumenapp.tv. This policy describes the app identified by com.lumen.mediaplayer.
You can open videos and subtitles through the system file picker, or connect a Plex account to access a media server. Lumen does not provide a movie catalog or operate a media-hosting service. Connected features send information to Plex and your selected server as described below; local playback does not upload your selected files to Lumen.
Information used by Lumen
Information: Plex authorization and account information
Purpose and recipients: Plex authorizes the code on its website. Lumen contacts plex.tv and clients.plex.tv to complete sign-in and find accessible servers. Lumen does not ask for your Plex password. An account-entitlement response may also include your email address, account identifiers and display/profile name. Lumen uses the subscription status to check feature eligibility.
Storage and retention: The account token and preferred server identifier are encrypted in HarmonyOS Asset Store, with synchronization and wrapping/export disabled. They remain available after an app restart or update until you disconnect Plex. Discovered server addresses and tokens remain in memory. The full entitlement response is transient. Lumen does not separately save the returned contact/profile fields or use them for other functions.
Information: App and playback-session identifiers
Purpose and recipients: Plex and the selected media server receive a random client identifier, a session identifier, app name and version, platform, and device label. Network recipients also receive connection information such as your IP address. These identify the client and support requests and playback.
Storage and retention: The client identifier is saved in app preferences and survives Disconnect Plex. Playback-session identifiers are held in memory. Lumen does not use an advertising identifier or hardware identifier.
Information: Media requests and playback activity
Purpose and recipients: The selected server receives requests for library information, videos, artwork, subtitles and downloads, and playback choices and progress. Progress includes the item identifier, position, duration, and playing, paused, stopped or buffering state. Plex also receives account-entitlement requests for relevant features.
Storage and retention: Active request and playback state is held in memory. Plex and the server operator determine the retention of records in their systems.
Information: Library search text
Purpose and recipients: Lumen filters the library rows already loaded on your device. Search text is not sent to Plex, the media server or a Lumen service.
Storage and retention: Used for the current view; Lumen does not keep a search-history record.
Information: Cached artwork, subtitles and library display information
Purpose and recipients: Local caching avoids repeated requests. Cached information can include media titles and viewing progress.
Storage and retention: Stored in the app-private cache directory, with expiry and size-based removal. Default limits are 256 MiB for artwork and 32 MiB for text. Clear cache removes these entries. Lumen does not separately encrypt their contents.
Information: Downloaded media and its catalog
Purpose and recipients: Downloads request authorized videos and related artwork and subtitles from your selected Plex server for offline playback. The local catalog includes titles, server and item identifiers, quality, transfer state and generated filenames. It excludes credentials and server URLs.
Storage and retention: Stored in the app-private files directory. Completed downloads remain after Disconnect Plex, until you delete them. Lumen does not add separate encryption to these files.
Information: Selected local videos and imported subtitles
Purpose and recipients: The system file picker grants access to the files you select for local playback. Lumen does not upload those files.
Storage and retention: Picker access is limited to the app process. Selected video locations and imported subtitle text are not saved as a permanent library; you need to select them again after restarting the app.
Information: Settings, device capabilities and network speed
Purpose and recipients: Language, playback and cache preferences, SDK level, reduced-motion preferences, and decoder/display capabilities support the interface and playback. The app's received-byte counter is used to show loading speed.
Storage and retention: Settings are saved locally. Capability and network-speed readings are used in memory and are not sent to a Lumen service.
Information: Video samples for Intelligent Fill
Purpose and recipients: Intelligent Fill, enabled by default, samples the current video picture to detect black borders and adjust proportional zoom. It samples the video surface, not other apps or the whole screen.
Storage and retention: Samples are processed only in memory. Lumen neither saves nor transmits the sampled pixels. Choose Letterbox, Zoom or Stretch in the player's Size menu to stop this analysis.
Information: Diagnostic messages
Purpose and recipients: Local logs record bounded playback states, timing, codec/quality information and error codes to help diagnose operation. Intelligent Fill logs contain sample dimensions, elapsed time and geometry, not sampled pixels.
Storage and retention: Lumen has no remote crash-reporting or log-upload service. Operating-system log handling and retention are controlled by HarmonyOS.
Your controls
- Disconnect Plex, in Settings, stops live account and server use and removes the saved local sign-in. If removal fails, Lumen shows an error so you can retry. Disconnecting does not revoke the token on Plex, delete your Plex account or server viewing history, rotate the local client identifier, or erase downloads and cache entries.
- Clear cache, in Settings, removes Lumen's owned cache entries. You can also reduce the artwork and text limits or turn caching off. Downloads and independently selected local files remain.
- Delete download, in the On device download menu, removes that download's local video, artwork and subtitles after confirmation. Group deletion is also available. It does not delete media from the Plex server.
- Allow local HTTP, in Settings, permits unencrypted connections to validated private-network addresses. Turning it off disconnects an active HTTP source while retaining your linked account.
- The system file picker lets you choose which local videos and subtitle files Lumen may open. Removing a download or clearing Lumen's cache does not delete independently selected source files.
- The player's Size menu lets you turn off Intelligent Fill by selecting Letterbox, Zoom or Stretch. Your explicit choice is saved for later playback.
Lumen does not currently provide a single reset action that removes all settings, identifiers, credentials, cache entries and downloads together. Uninstall behavior is governed by HarmonyOS app storage and Asset Store. Disconnecting or uninstalling Lumen does not delete information held by Plex or a media-server operator.
Permissions, services and security
Lumen requests the HarmonyOS Internet permission. It does not request broad file access, location, camera, microphone, contacts or advertising permissions. Local files are accessed through the system picker.
Lumen has no advertising, first-party analytics, payment or remote crash-reporting integration. This does not mean that Plex, your selected media server or HarmonyOS receives no information. Their services have their own privacy practices. Server operators may be individuals or organizations you choose; their processing locations and retention depend on that service. Consult Plex and your server operator about information held by them and requests to access, correct or delete it.
Plex's Privacy Policy, revised May 6, 2026, covers Plex GmbH and its affiliates, including Plex, Inc. It states that Plex and its authorized data processors process personal data primarily in the United States. When you use Lumen's optional Plex features, the information sent to Plex as described above may therefore be processed outside your country or region. The location and data handling of a media server you select depend on its operator.
Plex Privacy Policy: https://www.plex.tv/about/privacy-legal/
Plex account services use HTTPS. Lumen's API client validates the selected server's identity, sends authorization tokens in headers and disables redirects. Local HTTP is optional and unencrypted. HarmonyOS's native media player makes its own playback requests, so this policy does not promise that every media connection is encrypted. App-private storage restricts ordinary access by other apps, but downloaded files and cache contents have no additional encryption from Lumen.
Privacy questions and requests
Contact admin@lumenapp.tv with privacy questions or requests concerning Lumen. Please describe the feature involved and do not include your Plex password, authorization tokens, or private media files. The controls above manage information stored by the app. Information held independently by Plex or your media-server operator must also be addressed with that provider; Lumen's local deletion controls cannot erase their records.
Changes to this policy
The last-updated date identifies this version of the policy. Changes to Lumen's features or data handling may require an updated policy.