← Back to sign in

How we handle your data

Plain answers about where your numbers live, who can reach them, and how your credentials are kept.

Your warehouse

Your data lands in a warehouse, not in Lucen

Lucen reads your marketing and sales accounts and writes the results into a BigQuery warehouse. The portal, Ask and Blocks all query that warehouse. There are two setups.

Option A

Your own BigQuery

The warehouse lives in your Google Cloud project, on your billing. You grant Lucen access and you can remove it whenever you want.

Option B

Blumie-managed

We run the warehouse for you, so there is nothing to set up. You can take a full copy of your tables, or move to your own project later.

Isolation

How organizations stay separate

Every organization in Lucen is its own boundary. Nothing is queried across organizations.

  • On your own BigQuery, the warehouse is your project. No other client's data can be in it.
  • On the managed warehouse, each organization gets its own dataset prefix and its own service account. One organization's account cannot read another's tables.
  • Ask, Blocks and any connected assistant run against the organization you are signed into, and only that one. Switching organizations switches the whole scope.
Access

Who can see your data

  • Your team. Owners manage connections, members and invites. Members read dashboards and ask questions. You add and remove people in Settings.
  • A small Blumie team. Engineers who run and repair your pipelines can reach your warehouse to do that work, and nothing else.
  • Nobody else. We do not share your data with other clients, sell it, or use it to train models.
Credentials

How we store your credentials

When you connect an account, the token or key goes straight into Google Secret Manager. The portal keeps only a label, the account name and the connection status.

  • Secret values are never shown in Lucen, not even to owners, and not to us in the app.
  • There is no way to read a secret back out. If a credential expires, you reconnect and the old value is replaced.
  • Disconnecting an account removes its credential along with it.

Privacy·Terms·Questions? Ask your Blumie contact.