LURAEA Privacy Policy
Privacy Policy
Version 1.0 | Effective Date: 01 June 2026
IntraVanTech Pvt Ltd
LURAEA
Women Safety Application
PRIVACY POLICY
Version 1.0 | Effective Date: 01 June 2026
IntraVanTech Pvt Ltd
This Privacy Policy explains how Luraea, operated by IntraVanTech Pvt Ltd, collects, uses, stores, shares, and protects your personal data when you use the Luraea Women Safety Application. Please read this document carefully. By using the App, you agree to the practices described herein.
1. Who We Are
Luraea is a women's safety application developed and operated by IntraVanTech Pvt Ltd, a company incorporated in Sri Lanka. We are committed to protecting your privacy and handling your personal data responsibly, transparently, and in full compliance with applicable data protection laws.
For the purposes of data protection law, IntraVanTech Pvt Ltd acts as the Data Controller in respect of personal data collected through the App.
Contact Details
- Company: IntraVanTech Pvt Ltd
- Registered Address: 338/B, Batuwatta, Ragama, Gampaha
- General Support: support@luraea.com
- Issue Reports: issues@luraea.com
2. Scope of This Privacy Policy
This Privacy Policy applies to all personal data collected, processed, and stored through:
- The Luraea mobile application (Android and iOS).
- Account registration and identity verification processes.
- SOS, alert, and real-time location sharing features.
- SOS video and audio recording feature.
- Shake detection and shake sensitivity calibration feature.
- The SafeChat AI assistant.
- Wellness and health tracking features.
- Community safety reporting features.
- Any communications between you and Luraea (email, in-app support).
- Nearby User Assistance feature, where enabled by the user in App settings.
This Policy does not apply to third-party websites, services, or applications that may be linked to or integrated with the App. We encourage you to review the privacy policies of any third-party services you access through the App.
3. Personal Data We Collect
Luraea collects the following categories of personal data. Where data is classified as a 'special category' under the Sri Lanka PDPA No. 9 of 2022, this is indicated below.
| Data Category | Specific Data Points | Classification | When Collected |
|---|---|---|---|
| Identity & Contact Data | Full name, email address, mobile number, birthday, under 16 years users Parent/guardian full name, Parent/guardian mobile number | Standard personal data | Account registration |
| Government ID Data | NIC, passport, or driving licence number and image, user 16 years’ users their Parent/guardian IDs. | Special category (PDPA) | Identity verification |
| Biometric Data -Facial | Facial scan image for liveness detection and identity verification | Special category (PDPA) | Account registration |
| Location Data | Real-time GPS coordinates, route history during SOS and route planning | Standard personal data (sensitive in context) | During App use / SOS activation |
| SOS Recording Data | Video and audio recordings during SOS activation | Standard personal data (sensitive in context) | Upon SOS activation |
| SOS Trigger Data | Trigger method (shake or manual), countdown outcome (cancelled or confirmed) | Standard personal data (functional) | Upon SOS activation or cancellation |
| Health & Wellness Data | Menstrual cycle dates, symptoms, mood logs, health-related inputs | Special category (PDPA) | When using wellness features |
| Device & Usage Data | Device model, OS version, App version, crash logs, usage patterns, device identifiers | Standard personal data | Automatically on App use |
| Shake Calibration Data | Accelerometer sensitivity threshold value set by the user during shake calibration (a numeric value only — no raw sensor signals are stored or transmitted) | Standard personal data (functional preference) | When user performs shake calibration in App settings |
| Credits & Usage Data | SMS credit balance, credits deducted per SOS, transaction history | Standard personal data | Upon SOS SMS activation |
| Community Safety Data | Anonymized danger zone reports, place safety ratings submitted by you | Anonymized / non-personal | When submitting community reports |
| Communications Data | Messages sent to our support team | Standard personal data | When you contact us |
We do not knowingly collect personal data from children under 16 without verified parental or guardian consent. See Section 13 for our policy on minors.
4. How We Collect Your Data
4.1 Data You Provide Directly
We collect data you actively provide when you:
- Register an account and complete identity verification.
- Configure trusted contacts and emergency settings.
- Log health and wellness information in the cycle tracker or symptom logger.
- Submit community safety reports or danger zone ratings.
- Contact our support team.
4.2 Data Collected Automatically
When you use the App, we automatically collect:
- Device identifiers (device ID, OS type and version, App version).
- App usage patterns, feature interactions, and session data.
- Crash reports and diagnostic data to improve App performance.
- Real-time GPS location data when SOS, route planning, or location-sharing features are active.
4.3 Data from Third-Party Services
Certain features rely on third-party services that may collect data on our behalf or in conjunction with their own privacy policies:
- Google Firebase: for authentication, cloud database, and push notifications.
- Google Gemini: for AI-powered SafeChat responses and safety route analysis.
- Google Maps: for route planning, mapping, and location display.
- RevenueCat: for subscription management and in-app purchase processing.
- Apple App Store / Google Play Store: for app delivery and payment processing.
5. Legal Basis for Processing
Luraea processes your personal data on the following lawful bases under the Sri Lanka Personal Data Protection Act No. 9 of 2022 (PDPA) and, where applicable, the EU General Data Protection Regulation (GDPR):
| Processing Purpose | Legal Basis |
|---|---|
| Account registration and identity verification | Consent (Schedule I(a) / Schedule II(a) PDPA) + Contractual necessity |
| Biometric and government ID verification (NIC, facial) | Explicit consent - special category (Schedule II(a) PDPA) |
| SOS alert transmission and real-time location sharing with trusted contacts, nearby app users | Consent + Contractual necessity + Vital interests (emergency situations) |
| AI route planning, danger zone analysis, and safety assessments | Consent + Legitimate interests |
| Health and wellness tracking (cycle tracker, symptom logger) | Explicit consent - special category (Schedule II(a) PDPA) |
| Community safety reporting (anonymized danger zone data) | Consent + Legitimate interests |
| App performance monitoring, crash reporting, and improvements | Legitimate interests |
| Customer support and DPO communications | Contractual necessity + Legal obligation |
| Compliance with legal obligations and law enforcement requests | Legal obligation |
| Subscription and payment management via RevenueCat and app stores | Contractual necessity |
| SOS video and audio recording upon SOS activation | Consent + Contractual necessity + Vital interests (emergency situations) |
| SOS SMS credit deduction and usage tracking | Contractual necessity |
You have the right to withdraw consent at any time for any processing based on consent, without affecting the lawfulness of processing carried out before withdrawal. See Section 11 for how to exercise your rights.
6. How We Use Your Personal Data
6.1 Core Safety Features
- To transmit SOS alerts, real-time GPS coordinates, and safety notifications to your pre-registered trusted contacts.
- To enable shake-triggered and manual SOS panic features, each with a built-in countdown timer allowing the user to cancel an accidental activation: • Shake-Triggered SOS: When a shake gesture meets your configured sensitivity threshold, a 10-second countdown begins before the SOS alert is dispatched. This extended window helps prevent accidental triggers from everyday movement. • Manual SOS Trigger: When you manually activate the SOS button within the App, a 3-second countdown begins before the alert is dispatched. The shorter window reflects the urgency of a deliberate manual activation.
- During either countdown, you may: • Cancel the activation by tapping the cancel option on screen to stop the SOS alert from being sent. • Skip the countdown by tapping the skip button to immediately trigger the SOS alert without waiting for the countdown to complete. If neither cancel nor skip is tapped, the SOS alert is automatically dispatched once the countdown reaches zero. Upon dispatch, trusted contacts are notified, real-time location sharing is activated, and audio/video recording begins automatically.
- To store and apply your shake sensitivity calibration preference, ensuring the shake detection feature responds accurately to the threshold you have personally configured. This value is stored locally on your device and in your account profile solely to preserve your setting across sessions and devices. It is never used for any purpose beyond calibrating your individual shake detection trigger.
- To facilitate AI-powered safe route planning and danger zone identification.
- To power the SafeChat AI assistant for safety advice and emotional support.
- To automatically record video and audio through your device's camera and microphone upon SOS activation, as evidence of your surroundings and circumstances at the time of the emergency.
- To temporarily broadcast your approximate location and SOS alert status to nearby Luraea users who have completed the App's identity registration process, during an active SOS event, where you have enabled the Nearby User Assistance feature in App settings.
6.2 Identity Verification & Account Security
- To verify your identity using government-issued ID, facial data, and OTP authentication.
- To protect against fraudulent account creation and misuse of safety features.
- To authenticate your identity when accessing sensitive account settings.
6.3 Health & Wellness Features
- To provide cycle tracking, symptom logging, and personalized health insights within the App.
- Health data is used solely within the App for your personal benefit and is never shared with third parties for commercial purposes.
6.4 App Improvement & Safety of the Community
- To analyze anonymized community safety reports to improve danger zone accuracy and route safety ratings.
- To monitor App performance, diagnose technical issues, and improve the reliability of safety features.
- To conduct security audits and protect the App against unauthorized access.
6.5 Legal & Compliance
- To comply with applicable laws, regulations, and legal obligations.
- To respond to lawful requests from government authorities, courts, or law enforcement agencies.
- To enforce our Terms and Conditions and protect the rights of Luraea and our users.
6.6 Communications
- To send you important service notifications, security alerts, and updates about the App.
- To respond to your support requests, privacy queries, and data subject requests.
- To notify you of material changes to this Privacy Policy or our Terms and Conditions.
WHAT WE DO NOT DO: Luraea does not sell, rent, or lease your personal data to any third party. We do not use your data for targeted advertising, commercial profiling, or any purpose not described in this Privacy Policy. We will only use your personal data as described in this Privacy Policy or where required by applicable law.
6.7 SOS SMS Credits & Usage
Luraea's SOS SMS alerts are sent directly from the user's device using the device's native SMS functionality. As a result, each SOS SMS sent may deduct from the user's SIM card credit balance or consume SMS units from their mobile network plan, depending on their mobile carrier and plan. Luraea does not charge, manage, or have any visibility into the user's SIM card balance or mobile network charges. Any SMS costs incurred are solely between the user and their mobile network operator.
8. Special Category Data - Enhanced Protections
The following categories of data collected by Luraea are classified as special category personal data under Schedule II of the Sri Lanka PDPA No. 9 of 2022 and are subject to enhanced protections:
| Special Category | Data Collected | Protection Measures |
|---|---|---|
| Government Identity Documents | NIC, passport, or driving licence number and images | AES-256 encryption at rest; TLS 1.3+ in transit; RBAC access controls; processed solely for identity verification |
| Facial Data | Facial scan and liveness detection images | AES-256 encryption at rest; TLS 1.3+ in transit; not shared with any third party except for verification processing |
| Health & Wellness Data | Menstrual cycle dates, symptoms, mood logs | AES-256 encryption at rest; data isolated from other categories; never shared with advertisers or data brokers |
| SOS Recording Data | Video and audio recordings captured upon SOS activation | AES-256 encryption at rest; TLS 1.3+ in transit; strictly access-controlled; never shared for commercial purposes; retained for duration of active account + 30 days after account deletion |
All special category data is processed only on the basis of your explicit, informed, freely given consent. You may withdraw consent for the processing of any special category data at any time by contacting support@luraea.com, which may result in certain features of the App becoming unavailable to you.
9. Data Security
Luraea implements robust technical and organizational security measures to protect your personal data against unauthorized access, disclosure, alteration, or destruction, in compliance with Section 10 of the Sri Lanka PDPA No. 9 of 2022.
9.1 Technical Security Measures
- End-to-End Encryption (E2EE): All SOS alerts, real-time location data, and personal communications are transmitted using end-to-end encryption, ensuring that only intended recipients can access the data.
- Encryption at Rest: All personal data stored on Luraea's servers is encrypted using AES-256 encryption.
- Encryption in Transit: All data transmitted between the App and our servers uses TLS 1.3 or higher.
- Role-Based Access Controls (RBAC): Internal access to personal data is restricted to authorized personnel on a strict need-to-know basis.
- Data Isolation: Health and biometric data are stored in isolated data environments, separate from other data categories, to prevent unauthorized cross-use.
- Regular Security Audits: Luraea conducts regular security audits, vulnerability assessments, and penetration testing to identify and remediate security weaknesses.
- SOS Recording Protection: All video and audio recordings captured during SOS events are encrypted at rest using AES-256 and in transit using TLS 1.3 or higher. Access is strictly limited to the account holder and, where legally required, to authorized law enforcement or legal authorities acting under lawful order.
9.2 Organizational Security Measures
- All employees and contractors with access to personal data are subject to confidentiality obligations and data protection training.
- Access to production data is restricted and logged.
- A Data Protection Impact Assessment (DPIA) is conducted for all high-risk processing activities, as required by Section 24 of the PDPA.
9.3 Data Breach Response
In the event of a personal data breach that poses a risk to your rights and freedoms, Luraea will:
- Notify the Sri Lanka Data Protection Authority within the timeframe required under Section 23 of the PDPA.
- Notify affected users without undue delay where the breach is likely to result in a high risk to their rights and freedoms.
- Take immediate steps to contain, investigate, and remediate the breach.
To report a suspected security vulnerability, please contact: support@luraea.com or issues@luraea.com
10. Account Deletion, Data Deletion & Data Retention
10.1 How to Delete Your Account
You may delete your Luraea account at any time directly within the App by following these steps:
- 1. Open the Luraea App and go to Settings
- 2. Tap Delete Account
- 3. Complete the short deletion survey
- 4. Once the survey is submitted, your account will be successfully deleted
Account deletion is permanent and cannot be undone.
10.2 What Happens to Your Data After Deletion
Once your account is deleted, all personal data is permanently and securely removed from our servers within 30 days, as outlined in the retention table in Section 10.3. After this 30-day window, your data cannot be recovered under any circumstances.
Anonymized data such as community safety reports may be retained indefinitely as it cannot be linked back to you.
10.3 Data Retention
Luraea retains your personal data only for as long as necessary to fulfill the purposes for which it was collected, or as required by applicable law. The following retention periods apply:
| Data Category | Retention Period | Reason |
|---|---|---|
| Account & Identity Data | Duration of active account + 30 days after account deletion | Legal obligations, fraud prevention, dispute resolution |
| Government ID Images | Duration of active account + 30 days after account deletion | Data minimization; retained only as long as needed for verification |
| Facial Data | Duration of active account + 30 days after account deletion | Legal obligations, fraud prevention, dispute resolution |
| Location Data (SOS events) | Duration of active account + 30 days after account deletion | Safety review and incident documentation |
| Health & Wellness Data | Duration of active account + 30 days after account deletion | Required for wellness feature functionality |
| Usage & Device Data | Duration of active account + 30 days after account deletion | App performance analysis and improvement |
| Support Communications | Duration of active account | Legal record-keeping and dispute resolution |
| Community Safety Reports (anonymized) | Indefinitely (as anonymized data, not personal data) | Ongoing safety community benefit |
| SOS Recording Data | Duration of active account + 30 days after account deletion | Evidence retention for safety review; earlier deletion available on request |
11. Your Privacy Rights
Under the Sri Lanka Personal Data Protection Act No. 9 of 2022 and other applicable data protection laws, you have the following rights in relation to your personal data:
| Your Right | What It Means | How to Exercise |
|---|---|---|
| Right of Access (S.13 PDPA) | Request confirmation of whether we process your data and obtain a copy of your personal data in a clear, understandable format. | Email support@luraea.com with subject: 'Data Access Request' |
| Right to Withdraw Consent (S.14 PDPA) | Withdraw consent for any processing based on consent at any time, without affecting the lawfulness of prior processing. | Email support@luraea.com or use in-app settings |
| Right to Rectification (S.15 PDPA) | Request correction of inaccurate, incomplete, or outdated personal data we hold about you. | Email support@luraea.com or update via in-app profile settings |
| Right to Erasure (S.16 PDPA) | Request deletion of your personal data in prescribed circumstances (e.g., data no longer needed, consent withdrawn, unlawful processing). | Email support@luraea.com with subject: 'Data Erasure Request' |
| In-App Account Deletion (App Store / Play Store) | You may delete your account directly from within the App at any time via Settings → Account → Delete Account. All associated personal data will be deleted within 30 days. | In-app: Settings → Account → Delete Account |
| Automated Decision Review (S.18 PDPA) | Request human review of any decision made solely through automated processing that significantly affects you. | Email support@luraea.com with subject: 'Automated Decision Review' |
| Right to Appeal (S.19 PDPA) | Appeal any refusal of a data subject request to the Sri Lanka Data Protection Authority. | Contact the Sri Lanka Data Protection Authority directly |
| Right to Data Portability (GDPR, where applicable) | Receive your personal data in a structured, commonly used, machine-readable format (for EEA/UK users). | Email support@luraea.com with subject: 'Data Portability Request' |
| Right to Lodge a Complaint | Lodge a complaint with your local data protection supervisory authority if you believe your rights have been violated. | Contact your national data protection authority |
Response Timeline: All data subject requests will be acknowledged within 5 working days and responded to in full within 21 working days of receipt, in accordance with Section 17 of the Sri Lanka PDPA. Requests should be submitted in writing to support@luraea.com. We may ask you to verify your identity before processing your request.
To request early deletion of an SOS recording, contact support@luraea.com with the subject line "SOS Recording Deletion Request," specifying the date and approximate time of the recording.
12. International Data Transfers
Luraea is based in Sri Lanka. However, certain third-party services we use (such as Google Firebase and Google Gemini) may process your personal data on infrastructure located outside Sri Lanka. Where personal data is transferred outside Sri Lanka, Luraea ensures that appropriate safeguards are in place in compliance with Section 26 of the Sri Lanka PDPA No. 9 of 2022.
Safeguards we implement for international transfers include:
- Binding data processing agreements with all third-party service providers that receive personal data.
- Ensuring that recipient countries or organizations provide an adequate level of data protection.
- Standard contractual clauses or equivalent mechanisms where required by applicable law.
- Your explicit consent where required for specific cross-border transfers of special category data.
You may request details of the specific safeguards in place for any international transfer of your personal data by contacting support@luraea.com.
13. Children and Minors
The Luraea App is primarily designed for adult women. We define a minor as any person under the age of 18, or such higher age as defined as a minor under applicable law in their jurisdiction.
- Users under the age of 13 are strictly prohibited from creating an account or using the App.
- Users under 16 must not use the App without verified parental or guardian consent.
- Users aged 13-15 are required to provide a parent's or guardian's government-issued ID during account registration as confirmation of parental consent. By submitting this ID, the parent or guardian affirms their knowledge and approval of the minor's use of the App, including the collection of location data and SOS audio/video recording.
- We do not knowingly collect personal data from children under 16 without appropriate parental or guardian consent.
- If we become aware that personal data has been collected from a minor without appropriate consent, we will promptly delete that data.
Luraea complies with applicable child protection laws including COPPA (USA), GDPR (EU/UK), and the Sri Lanka Personal Data Protection Act No. 9 of 2022. Parents or guardians who believe their child's data has been collected without consent should contact support@luraea.com immediately.
13.1 Teen Users (Ages 13–17)
Luraea is open to users aged 13 and above, subject to the age-specific conditions described in this Section.
Ages 13-15: Users in this age group may create an account only with verified parental or guardian consent, confirmed through the submission of a parent's or guardian's government-issued identity document during the registration process. All processing of personal data for users aged 13-15 is carried out on the basis of explicit parental consent.
Ages 16-17: Users aged 16 and above may register with their own consent, subject to the Terms and Conditions and this Privacy Policy.
Special data handling for teen users - Precise Location and Audio/Video Recording:
- Precise location data (real-time GPS coordinates) is collected from teen users solely for the purpose of activating SOS alerts and sharing location with pre-registered trusted contacts during an emergency. This data is not used for commercial profiling, advertising, or any purpose beyond core safety features.
- Audio and video recording is activated only upon SOS alert trigger. Teen users (and, for ages 13–15, their parent/guardian) are informed of this feature at the point of registration and must provide explicit consent before the feature is enabled.
Parents or guardians of users aged 13-15 may review, withdraw consent for, or request deletion of their child's data at any time by contacting support@luraea.com.
15. Global Privacy Compliance Framework
Luraea is committed to respecting the privacy rights of users worldwide. In addition to the Sri Lanka PDPA (our primary governing law), we endeavor to comply with the following international data protection frameworks:
| Jurisdiction | Applicable Law | Key User Rights Honored |
|---|---|---|
| European Union / EEA | GDPR 2016/679 | Access, rectification, erasure, portability, objection, restriction of processing |
| United Kingdom | UK GDPR & Data Protection Act 2018 | Same as EU GDPR rights above |
| United States (California) | CCPA / CPRA | Right to know, delete, opt-out of sale (we do not sell data), non-discrimination |
| Malaysia | PDPA 2010 (2024 Amendments) | Access, correction, mandatory breach notification, DPO requirements |
| India | Digital Personal Data Protection Act 2023 | Consent-based processing, right to erasure, data fiduciary obligations |
| Canada | PIPEDA | Access, correction, withdrawal of consent |
| Brazil | LGPD | Access, correction, deletion, portability, consent withdrawal |
| Singapore | PDPA 2012 | Access, correction, withdrawal of consent, data portability |
| UAE | Federal Law No. 45 of 2021 | Access, correction, erasure, objection to processing |
| Australia | Privacy Act 1988 | Access, correction, complaint to OAIC |
| Japan | APPI | Disclosure, correction, cessation of use |
| South Korea | PIPA | Access, correction, deletion, opt-out of automated processing |
If you are located in a jurisdiction not listed above and wish to exercise data protection rights under your local law, please contact support@luraea.com and we will endeavor to accommodate your request in accordance with applicable law.
16. AI Features & SafeChat Privacy
Luraea incorporates AI-powered features including the SafeChat assistant, AI safe route planning, danger zone analysis, and safety predictions. This section explains how your data is handled in the context of these AI features.
16.1 SafeChat AI Assistant
- SafeChat is powered by Google Gemini AI infrastructure.
- Inputs submitted to SafeChat are anonymized before transmission to Gemini's servers to remove directly identifying information.
- Luraea does not permanently store SafeChat conversation transcripts on its own servers beyond the active session.
- SafeChat is not a licensed mental health professional or emergency service. Do not share sensitive personal identifying information in SafeChat.
- SafeChat responses are AI-generated and may not always be accurate. Always contact official emergency services in a genuine emergency.
16.2 AI Route Planning & Danger Zone Analysis
- AI route safety ratings and danger zone assessments are generated from anonymized community reports and AI analysis.
- Your location data used for route planning is not retained beyond the active session.
- Route and danger zone data is not shared with any commercial third parties.
16.3 Nearby User Assistance Feature - Data Handling
When this opt-in feature is enabled, your approximate GPS location and SOS alert status are temporarily broadcast to nearby Luraea users who have completed the App's identity registration process, for the duration of the active SOS event only. When a nearby user accepts your assistance request, their basic profile information is displayed to you solely to help you identify who is offering assistance and to facilitate your decision to accept or decline their offer of help. This does not constitute disclosure of identity documents or a guarantee of that user's character, background, or intentions.
- Location data shared with nearby users is approximate and is not retained by Luraea beyond the active SOS event.
- Your basic profile information may be partially visible to a responding user solely to facilitate the assistance interaction.
- Data processed under this feature is never used for commercial purposes, advertising, or profiling.
- This feature is opt-in and disabled by default. You may enable or disable it at any time through App settings.
- Luraea does not retain records of which nearby users viewed your SOS alert unless they actively accepted the assistance request.
- Nearby users who respond to your alert are independent platform users and are not agents or representatives of IntraVanTech Pvt Ltd. Luraea accepts no liability for their conduct or actions.
16.4 SOS Video and Audio Recording - Data Handling
When an SOS alert is activated, the App automatically initiates video and audio recording through your device's camera and microphone. The following data handling practices apply:
- Recordings are encrypted at rest using AES-256 and in transit using TLS 1.3 or higher.
- Access is strictly limited to you and, where legally required, to authorized law enforcement or legal authorities acting under lawful order.
- Recordings are retained for the duration of the active account and are permanently deleted within 30 days of account deletion, unless earlier deletion is requested or retention is required by applicable law or an active legal proceeding.
- Recordings are never sold, shared with advertisers, used for AI training, or used for any commercial purpose.
- You may manually stop the recording at any time during an active SOS event using the stop control within the App interface.
- To request early deletion, contact support@luraea.com with the subject line "SOS Recording Deletion Request."
- SOS recordings may be disclosed to law enforcement or legal authorities only under a lawful court order, warrant, or legal obligation. Luraea will not voluntarily disclose recordings to any third party outside the circumstances described in Section 7.
17. Data Protection Officer (DPO)
Luraea has appointed a Data Protection Officer as required under Section 21 of the Sri Lanka Personal Data Protection Act No. 9 of 2022. Our DPO is responsible for overseeing Luraea's data protection strategy, compliance, and implementation of this Privacy Policy.
You may contact our Data Protection Officer directly for any privacy concerns, data subject requests, or questions about this Privacy Policy:
- Email: support@luraea.com
- Response time: Within 5 working days for acknowledgement; within 21 working days for full response.
Our DPO operates independently and confidentially. You will not face any adverse consequences from Luraea for exercising your data protection rights or contacting our DPO.
18. Changes to This Privacy Policy
Luraea reserves the right to update or modify this Privacy Policy at any time to reflect changes in our data processing practices, legal requirements, or App features. When we make material changes, we will:
- Provide at least 30 days' advance notice via in-app notification, push notification, or email to your registered address.
- Update the 'Effective Date' at the top of this Privacy Policy.
- Where required by law, seek your renewed consent for any new processing activities.
Your continued use of the App after the effective date of any updated Privacy Policy constitutes your acceptance of the revised policy. If you do not agree to the changes, you must cease using the App and delete your account. Previous versions of this Privacy Policy are available upon request by emailing support@luraea.com.
19. How to Contact Us
If you have any questions, concerns, or requests relating to this Privacy Policy or the way we handle your personal data, please contact us at support@luraea.com, issues@luraea.com with the relevant subject line as indicated below:
| Purpose | Subject Line | |
|---|---|---|
| General Privacy Enquiries | "Privacy Enquiry" | support@luraea.com |
| Data Protection Officer (DPO) | "DPO Request" | support@luraea.com |
| Data Subject Requests (Access, Erasure, Portability, etc.) | "[Request Type] Request" | support@luraea.com |
| Legal & Compliance Enquiries | "Legal Enquiry" | support@luraea.com |
| General Support | "Support" | support@luraea.com |
| Beta Feedback | "Beta Feedback" | support@luraea.com |
| Security Vulnerability Reports | "Security Vulnerability" | issues@luraea.com |
| Report App Issues | "App Issue Report" | issues@luraea.com |
© 2026 Luraea - Women Safety Application, IntraVanTech Pvt Ltd. All Rights Reserved.
Empowering safety. Protecting privacy. Serving the world.
Version 1.0 | 01 June 2026