Privacy Policy
Last updated: February 2026
Contents
Introduction
NutriLuma ("we", "our", "us") is committed to protecting your privacy and personal data. This Privacy Policy explains how we collect, use, store, and protect your information when you use our nutritional education platform.
We are fully compliant with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. Your privacy is not just a legal requirement-it's fundamental to our values as nutrition educators.
Data Controller
The data controller responsible for your personal data is:
NutriLuma (a product of Plaskett International College Ltd)
The Cottage Calamazag Nursery, St Martin's, Looe, Cornwall, PL13 1NX, United Kingdom
For data protection inquiries, contact: privacy@nutriluma.co.uk
Data We Collect
Account Information
- Name and email address
- Password (encrypted)
- Profile information (height, weight, age, activity level) for personalized educational ranges
Nutritional Data
- Meal logs and food descriptions
- Photos of meals (if you choose to use photo logging)
- Calculated nutrient intake data
- Pattern analysis and reports
Usage Data
- App usage patterns and features accessed
- Device information and browser type
- IP address (anonymized for analytics)
Payment Information
- Billing details are processed by our payment provider (Stripe)
- We do not store full payment card details
How We Use Your Data
We use your personal data to:
- Provide our service: Process meal logs, calculate nutrient analysis, generate educational insights
- Personalize your experience: Customize educational ranges based on your profile
- Improve our platform: Understand usage patterns to enhance features
- Communicate with you: Send service updates, respond to inquiries
- Process payments: Manage subscriptions and billing
- Comply with legal obligations: Meet regulatory requirements
We never sell your personal data or nutritional information to third parties.
Legal Basis for Processing
Under UK GDPR, we process your data based on:
- Contract: Processing necessary to provide our service to you
- Legitimate interests: Improving our platform and preventing fraud
- Consent: For optional features like marketing communications
- Legal obligation: Where required by law
Data Sharing
We only share your data with:
- Service providers: Cloud hosting (UK-based servers), payment processing (Stripe), analytics (anonymized only)
- Your nutritional therapist: Only if you're part of a professional plan and have consented to sharing
- Legal authorities: When required by law
All service providers are bound by data processing agreements and must meet our security standards.
Data Retention
We retain your data for:
- Active accounts: As long as your account is active
- Closed accounts: Up to 30 days after deletion request
- Billing records: 7 years (legal requirement)
- Anonymized analytics: Indefinitely
You can request deletion of your account and data at any time.
Your Rights
Under UK GDPR, you have the right to:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate data
- Erasure: Request deletion of your data
- Portability: Export your data in standard formats
- Restriction: Limit how we process your data
- Object: Object to certain processing activities
- Withdraw consent: Where processing is based on consent
To exercise these rights, contact privacy@nutriluma.co.uk or use the data export/deletion features in your account settings.
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) if you're unhappy with how we handle your data.
Security
We implement robust security measures:
- 256-bit TLS encryption for all data in transit
- AES-256 encryption for data at rest
- UK-based servers
- Regular security audits
- Access controls and authentication
- Employee security training
While no system is 100% secure, we take every reasonable measure to protect your data.
Changes to This Policy
We may update this Privacy Policy from time to time. We'll notify you of significant changes via email or in-app notification. The "Last updated" date at the top shows when this policy was last revised.
Contact Us
For any privacy-related questions or concerns:
Email: privacy@nutriluma.co.uk
Or use our contact form.