LUCCA
How it works Features Your Year Story Privacy Download Private Beta
Security

Your privacy is our foundation

Last updated: March 24, 2026

Lucca was built from the ground up with one belief: therapy data is the most private information a person can have. That's why every piece of your data stays on your device. Your therapy content — transcripts, insights, and session data — never leaves your device.

Local-first architecture

All AI processing runs on your device. Your therapy data never leaves your computer.

Unlike most AI-powered applications that send your data to cloud servers for processing, Lucca runs AI models directly on your hardware. When Lucca analyzes your session, generates summaries, or detects patterns, it's happening right on your machine — not on a distant server.

This means there is no network transmission of your therapy content. No API calls carrying your transcripts. No cloud provider with access to your most private thoughts.

Encryption at rest

All therapy transcripts are encrypted using AES-256-GCM, the same encryption standard used by governments and financial institutions worldwide. Each transcript is encrypted with a unique initialization vector, ensuring that even identical content produces different ciphertext.

  • Algorithm: AES-256-GCM (authenticated encryption)
  • Key storage: Encryption key stored locally on your device with restricted file permissions
  • Scope: All session transcripts are encrypted before being written to the database

Audio handling

Audio is never stored permanently. We stream, transcribe, and discard.

When you record a therapy session, Lucca captures the audio stream, transcribes it locally using on-device speech recognition, and then discards the audio data. No audio files are saved to your hard drive. Only the text transcript is retained (encrypted).

This approach means that even if someone gained access to your device, there would be no audio recordings to find — only encrypted text.

Data storage

All your data lives in a single database stored locally in your application data folder. There are no external database servers, no cloud storage buckets, and no remote backups.

  • Database: A self-contained, file-based database on your device
  • Location: Your operating system's standard application data directory
  • Access: Only the Lucca application can read the database, and transcripts within it are encrypted

What we don't do

We believe it's just as important to be clear about what we don't do:

× We never send your therapy data to cloud AI services (your transcripts and session content never leave your device)
× We never sell or share your data with third parties
× We never use your data to train AI models
× We never sell or share your therapy data with advertisers or data brokers
× We never store your audio recordings permanently
× We never have access to your encryption keys

Your control

Because your data lives entirely on your device, you have complete control:

  • View everything: All your data is accessible within the app at any time
  • Export your data: Download all your data in standard formats from Settings
  • Delete anything: Remove individual sessions or all data — deletion is immediate and permanent
  • No cloud to worry about: When you delete data, it's gone. There are no remote copies, backups, or caches to track down.

Open-source AI models

Lucca uses open-source AI models that run entirely on your device. These models are:

  • Open source: The model architecture and weights are publicly available and auditable
  • Locally executed: Models run directly on your hardware — no API calls, no cloud inference
  • Size-adaptive: Lucca automatically selects the best model for your device's capabilities
  • Offline-capable: Once downloaded, models work without any internet connection

Compliance roadmap

Lucca's local-only architecture provides inherent privacy advantages that align with major compliance frameworks. Because no therapy data leaves your device, many traditional cloud-security concerns simply don't apply.

We are actively working toward:

  • SOC 2 Type II certification — to formally validate our security practices and controls (planned)
  • HIPAA alignment — Lucca's architecture is designed with HIPAA's data security principles in mind. Formal certification is on our roadmap.

We follow the FTC Health Breach Notification Rule and will notify users within 60 days in the unlikely event of a data breach affecting health information.

Report a vulnerability

We take security seriously. If you discover a security vulnerability in Lucca, please report it responsibly so we can address it promptly.

Contact us at security@meetlucca.com with details of the vulnerability. Please include steps to reproduce the issue if possible. We will acknowledge your report within 48 hours and work to resolve confirmed vulnerabilities as quickly as possible.

Frequently asked questions

No. All transcripts are stored locally on your device and encrypted with AES-256-GCM. Lucca App has no servers that store or access your therapy data. We literally cannot see your data.

Your transcripts are encrypted at rest, so they cannot be read without your encryption key. We recommend using full-disk encryption (FileVault on macOS, BitLocker on Windows) and a strong login password for additional protection.

Your therapy data (transcripts, insights, session content) never leaves your device. The app may check for software updates and validate subscriptions, but no therapy content is ever transmitted.

The AI models run entirely on your device using local inference. Your transcripts are processed by a model running on your own hardware — the data never passes through any external server or API.

Lucca stores your preferences (name, settings) and session data (transcripts, insights, goals) locally on your device. We may collect limited, anonymous usage analytics (such as app opens and feature usage) to improve the product, but your therapy content is never included. See our Health Data Privacy Policy for complete details.

Yes. You can delete individual sessions or all data from Settings. Deletion is permanent and immediate. Because your data is stored locally, once deleted from your device, it is gone — there are no cloud backups to worry about.

Lucca's local-only architecture provides strong privacy protections that align with HIPAA's data security requirements. Formal HIPAA compliance certification is on our roadmap. Because no Protected Health Information (PHI) leaves your device, many traditional HIPAA cloud-security concerns do not apply.

Terms of Service · Health Data Privacy Policy
LUCCA

A calm, trustworthy companion for your therapy journey.

hello@meetlucca.com

Product

  • Features
  • How it works
  • Privacy
  • Download for Mac

Resources

  • Getting started
  • Recording guide
  • Support
  • FAQ

Legal

  • Privacy policy
  • Terms of service
  • Security
© 2026 Lucca, LLC · Made with love in California
Privacy Terms