Privacy Policy
Effective Date: 30 November 2025
Lucius Ltd ("we," "us," or "our") is committed to protecting the privacy of our customers and users of our platform ("you," "your"). This Privacy Policy outlines how we collect, use, and protect your information when you use our AI-powered ERP platform and associated services.
2. How We Use Your Information
We collect information to provide and improve our services, including:
Account Information: Names, email addresses, business names, contact details, and payment information when you register or subscribe.
Financial Data: Transaction data, payroll information, tax details, and other financial records you upload or integrate with the platform.
Usage Data: Information about how you use the platform, such as log-in details, device information, IP address, and browser type.
Communication Data: Emails, support tickets, or other correspondence with us.
We use the information we collect for the following purposes:
To provide and maintain our platform and services.
To process financial data, including bookkeeping, payroll, tax calculations, and reporting.
To communicate updates, respond to inquiries, and provide customer support.
To improve our platform’s features, security, and user experience.
To comply with legal obligations, such as tax regulations and anti-fraud measures.
For marketing communications, with your consent, to share product updates or offers.
3. Sharing Your Information
We may share your information in the following circumstances:
Service Providers: With trusted third-party providers who help us operate the platform (e.g., cloud hosting, payment processors).
Compliance and Legal Requirements: When required by law, regulation, or legal process to protect against fraud or unauthorized activities.
Business Transfers: If we are involved in a merger, acquisition, or sale of assets, your data may be transferred to the new entity.
4. Data Security
We implement industry-standard security measures to protect your information against unauthorized access, loss, or misuse. These include encryption, secure servers, and regular security assessments. However, no system can guarantee absolute security, and you are responsible for safeguarding your access credentials.
5. Data Retention
We retain your data only for as long as necessary to fulfill the purposes outlined in this policy or to comply with legal and regulatory obligations. Upon request or account termination, we will securely delete or anonymize your information, subject to any retention requirements.
6. Your Rights
You have the following rights regarding your information:
Access and Portability: Request access to or a copy of the information we hold about you.
Correction: Update or correct inaccurate information.
Deletion: Request deletion of your personal data, subject to legal obligations.
Objection: Object to certain uses of your information, such as marketing communications.
To exercise your rights, contact us at ryan@lucius.finance
If you have any questions, concerns, or requests regarding this Privacy Policy, please contact us at:
Lucius Ltd
ryan@lucius.finance
7. Cookies and Tracking Technologies
We use cookies and similar technologies to improve your experience on our platform. Cookies help us track usage, remember preferences, and personalize content. You can manage your cookie settings through your browser, though some features may be affected if cookies are disabled.
8. Third-Party Links
Our platform may contain links to third-party websites or services. We are not responsible for the privacy practices of these external platforms and encourage you to review their policies before sharing your data.
9. Gmail Data Access
Lucius connects to your Gmail account only after you explicitly grant permission using Google’s OAuth 2.0 flow. We request the gmail.readonly scope solely to:
Locate purchase invoices, receipts, and billing emails relevant to your business; and
Extract transaction details (supplier, date, amount, invoice number, line items where possible) to help you categorize expenses and keep your books up to date.
We do not:
Send Gmail content to third parties for advertising or marketing purposes.
Sell or share Gmail data with data brokers.
We do:
Store only the minimum information required to provide bookkeeping functionality.
Encrypt data in transit and at rest.
Limit access to production data to a small number of authorised employees for support and maintenance.
Delete stored Gmail-derived data on request when a customer closes their account, or in accordance with our data retention policy.
Our use of Google APIs complies with the Google API Services User Data Policy, including the Limited Use requirements.
This Privacy Policy is designed to comply with applicable privacy laws, including the GDPR and UK Data Protection Act. Your trust is important to us, and we are committed to safeguarding your information.
10. Updates to This Policy
We may update this Privacy Policy from time to time. Any changes will be posted on this page with a revised effective date. We encourage you to review the policy regularly to stay informed about our practices.