Security

Built like the platform it protects.

Lumenet enforces with the same machinery Windows itself trusts, and treats your data like it is none of our business — because it is not.

Windows Filtering Platform

Enforcement uses WFP — the kernel packet-decision layer built into Windows — not driver hacks or proxies. Decisions happen where Windows makes its own, with the reliability that implies.

Verified app identity

Prompts and rules identify apps by executable path and Authenticode signer, so a renamed binary cannot borrow another app’s permission, and trusted apps keep their rules across updates.

Local-only data

History, rules, and usage live in a local database under ProgramData. Country lookups for the map run offline on your machine. Nothing is uploaded, ever.

Fail-safe by choice

You choose what happens if the enforcement engine is ever unavailable: fail open (keep the network up) or fail closed (block until it recovers). The default keeps you online; the paranoid setting keeps you sealed.

Coexistence, not conflict

If another security product also installs network filters, Lumenet detects the overlap and reports which product is arbitrating, instead of silently fighting it.

Signed and inspectable

The installer and service are digitally signed. What the service stores is a plain local database you can open, inspect, and delete at any time.