Last updated: 3 October 2026 · Developer: Bhaskar Mehra · Contact: lucent.app.support@gmail.com

Lucent is a privacy-first, on-device toolkit. It has no backend server of its own, no user accounts, no advertising, and no analytics or tracking of its own. One library it bundles, Google's ML Kit, sends Google a usage report of its own; what that report carries is set out below. We (the developer) do not collect, store, or receive any of your personal data. This policy explains what stays on your device, what happens when you use a tool that makes an online lookup, and why each permission is requested.

Information stored on your device

Everything Lucent saves is kept locally on your device and is never uploaded to us or synced to any cloud:

You can permanently erase all of this at any time from Settings → Wipe all local data. Uninstalling the app also removes it.

Information sent over the network

Lucent performs its lookups directly against public, keyless third-party services over encrypted (HTTPS) connections — there is no Lucent server in between. When you actively run a tool, the specific value you enter is sent to the relevant public service solely to answer your query. For example:

These lookups are ephemeral: Lucent does not log them, does not retain them, and does not combine them into a profile of you. Once a service returns its answer, Lucent keeps nothing about the request except any result you explicitly save to your Vault. The one qualification is an ordinary HTTP cache: a service's answer may be held for a short time in the app's private storage on your device so that repeating the same lookup does not ask again. That cache never leaves the device, is never read by us, and is emptied by Settings → Wipe all local data (which also removes saved scripts, the stamp logo, an imported comparison model, and any stamped or cleaned copies still in the cache). Each third-party service you query is subject to its own privacy policy. The complete, per-tool list of every service Lucent may contact is shown inside the app under Settings → Data Sources. Every lookup Lucent makes to a service on the internet is HTTPS, and the app is built so the operating system refuses a cleartext connection outright. Three things on your own equipment are deliberately not HTTPS, and none of them carries anything about you: LAN Remote speaks ordinary HTTP to the devices on your own network, because that is what a television or a media player speaks, and it refuses any address that is not a private one; the probing tools (Ping, Traceroute, the Port Scanner, the Network Scanner, Site Status) open plain TCP connections or send ICMP packets to the host or range you named, which is what probing a host means; and an ordinary name lookup goes to whatever resolver your network gives you, in the clear, exactly as it does for every other app on the phone — DNS Control exists to show you that and to help you encrypt it.

The value you look up is the query, so it necessarily reaches the service being asked, in the address of the request: a domain, a handle or an address appears in the URL path or as a parameter, depending on what that service accepts. Nothing else about you is added to those requests — no identifier of you or of your device, and no record of your other lookups. The password check is the one that never sends its value at all: only a short, irreversible hash prefix leaves the device.

Three on-device readers deserve a note. The Compass can ask for coarse location on an explicit tap, used only to evaluate magnetic declination on the device. Device ID asks the platform for the gated identifiers (serial, IMEI, MEID, IMSI, ICCID, GSF id) and displays the operating system's refusal as the answer, storing nothing. What Sites See assembles the signals a website or app could read from this device the moment you connect — including the advertising-adjacent ones such as the Android ID and the GPU's own strings — and shows them to you; that report is built and displayed entirely on the device, and the only thing sent is a lookup of your own public address, asked of two public providers and merged, so the report can show how your connection appears from outside.

Several behaviours deserve to be spelled out:

Device permissions and why they are used

Permissions are requested only when you open the tool that needs them, and are used strictly for that tool's on-device function:

Reading files you choose

File Metadata, and the provenance report inside it, read the file you select and nothing else. The file stays on your device: its metadata, and any Content Credentials (C2PA) it carries, are parsed and their signatures checked on the device against a certificate set bundled in the app, with no lookup and no upload. When you ask the tool to strip metadata, it writes a cleaned copy beside the original in the app's private cache for you to share or save; the original is never altered. Those copies are removed by Settings → Wipe all local data.

Document Check reads a PDF you choose and reports what it holds beyond what a reader shows, such as text still under a redaction box or an earlier revision. Capture Reader reads a packet capture (pcap or pcapng) you choose and lists the connections in it, naming each destination only from what the capture itself contains. Message Inspector reads text you paste into it. All three work on the device, with no lookup and no upload; Message Inspector hands a link to Threat Lookup only when you tap it, and that lookup is the one described above.

Checking whether specific apps are installed

The Device Integrity tool checks your device for signs of rooting or tampering. As part of this, it asks the operating system whether a fixed, built-in list of known root-management, hooking and root-hiding apps is present (for example Magisk, KernelSU, Xposed/LSposed). It can only ask about the specific packages on that list — it cannot and does not enumerate your other installed apps. The result is computed on your device, shown to you, and never transmitted. This is disclosed here because checking for named packages is a form of reading your app inventory.

Data sharing and selling

We do not sell your data, and we do not share it with anyone — because we never receive it in the first place. The only data that leaves your device is the query you personally submit to a public service while using a tool, and ML Kit's usage report to Google, both as described above.

Children

Lucent is a security and privacy utility intended for users aged 16 and over. It is not directed at children under 16, and it does not knowingly collect any information from them.

Security

Lookups to internet services are HTTPS-only, and cleartext connections to the internet are blocked by the operating system at the app's request; see above for the three deliberate exceptions on your own network and equipment. The optional File Encryptor performs AES-256 encryption entirely on your device with a passphrase you choose; the passphrase and files never leave the device, and there is no recovery mechanism. The optional biometric app-lock adds a device-level gate. Because no data is transmitted to or held by us, there is no server-side store to be breached.

Changes to this policy

If this policy changes, the updated version will be posted at this URL with a new "Last updated" date.

Contact

Questions about this policy or Lucent's privacy practices can be sent to lucent.app.support@gmail.com.