Payment Options & Security

Payment Options & Security

Updated on 15 May 2026

This page explains the payment methods we accept at Luma & Home, the security measures we apply to keep your payment information safe, and what to do if you suspect unauthorised use of your card on our site. We take payment security extremely seriously and use industry-leading providers to process every transaction.

Accepted Payment Methods

We accept the following payment methods at checkout. All payments are processed in British Pounds Sterling (GBP) and include all applicable UK VAT and import duties.

  • Visa — credit and debit cards
  • Mastercard — credit and debit cards
  • American Express
  • Apple Pay — on supported iOS and macOS devices
  • Google Pay — on supported Android devices and Chrome browsers
  • Link by Stripe — one-click checkout if you have used Link before with any participating merchant

Where available, your browser or device may automatically surface saved cards or wallet options at checkout. We do not currently accept bank transfers, cheques, PayPal, Klarna, or cash on delivery.

Payment Processor

All payments on Luma & Home are processed by Stripe Payments UK Ltd, a UK-regulated payment service provider authorised and regulated by the Financial Conduct Authority under the Payment Services Regulations 2017 (FRN 900461). Stripe is a global leader in online payments, used by millions of businesses worldwide, and is certified to the highest level of the Payment Card Industry Data Security Standard (PCI DSS Level 1).

When you enter your card details at checkout, your information is transmitted directly to Stripe through a secure, encrypted connection. Luma & Home never sees, processes, or stores your full card number, CVV, or any other sensitive authentication data. We only ever see what is required to fulfil your order — the card brand, the last four digits, and whether the payment succeeded.

Security Measures

1. SSL / TLS Encryption

Our entire website is served over HTTPS using up-to-date TLS encryption. This means that every piece of information you send to us — including your name, address, email, and payment details — is encrypted in transit and cannot be intercepted by a third party. You can verify the secure connection by looking for the padlock icon in your browser's address bar.

2. PCI DSS Compliance

The Payment Card Industry Data Security Standard (PCI DSS) is a set of rigorous security standards designed to ensure that companies that process card payments maintain a secure environment. Stripe is certified to PCI DSS Level 1 — the highest possible level. Because we use Stripe to handle all card data, Luma & Home inherits Stripe's PCI DSS scope, and we never store or process raw card data on our own systems.

3. 3-D Secure 2 / Strong Customer Authentication

UK and EU rules under the Payment Services Directive 2 (PSD2) require Strong Customer Authentication (SCA) on most online card transactions. This typically involves an extra verification step — such as a one-time code from your bank, biometric authentication via your banking app, or a card reader — before payment is approved. We implement 3-D Secure 2 through Stripe to protect both you and your card issuer from unauthorised transactions.

4. Fraud Detection

Stripe Radar continuously analyses billions of data points across the global Stripe network to detect and block fraudulent transactions in real time. Risk signals such as unusual purchase patterns, mismatched billing/shipping addresses, suspicious IP geolocation, and card-testing attempts are used to score each transaction and either allow, challenge, or block it. Legitimate orders are processed seamlessly; suspicious orders may require an extra verification step or may be declined.

5. Limited Data Retention

We retain only the minimum payment-related information needed to fulfil your order, handle returns and refunds, and meet our accounting obligations. After a transaction, your private payment information (full card numbers, CVVs, full bank account numbers) is never kept on file by Luma & Home. Order records that include the card brand and last four digits are retained for the period required by Swedish bookkeeping law (7 years).

What You Should Do to Protect Yourself

  • Always check that the URL in your browser's address bar is lumaandhome.co.uk with a padlock icon before entering payment information.
  • Never share your card details, CVV, or one-time codes with anyone — we will never ask for them by email, phone, or chat.
  • Use strong, unique passwords for your customer account and your email account. Where available, enable two-factor authentication on your bank and email accounts.
  • Be sceptical of unsolicited emails, calls, or messages claiming to be from Luma & Home, especially if they ask you to follow a link, log in, or provide payment information. When in doubt, navigate to lumaandhome.co.uk directly.
  • Check your card statements regularly and report any unauthorised charges to your bank immediately.

Refunds and Chargebacks

Refunds are processed back to the original payment method used at checkout, in accordance with our Refund Policy. We aim to process all approved refunds within 14 days of receiving the returned goods or proof of return.

If you believe a charge on your card is unauthorised or incorrect, please contact us first at support@lumaandhome.co.uk so we can investigate. In most cases we can resolve the issue quickly and avoid the need for a formal chargeback. If we cannot resolve it to your satisfaction, you remain entitled to raise a chargeback through your card issuer.

Reporting Suspicious Activity

If you suspect that someone has used your card to place an unauthorised order on Luma & Home, please:

  1. Contact your card issuer immediately to report the unauthorised transaction and freeze or cancel the card if necessary.
  2. Notify us at support@lumaandhome.co.uk . Provide the order number (if known), the date and amount of the transaction, and any other details you have. We will investigate and cooperate fully with your card issuer and law-enforcement authorities where appropriate.
  3. Report fraud to Action Fraud, the UK's national reporting centre for fraud and cybercrime, at actionfraud.police.uk or 0300 123 2040.

Data Protection

All payment-related personal data is processed in accordance with our Privacy Policy, the UK General Data Protection Regulation (UK GDPR), and the Data Protection Act 2018. Stripe acts as an independent data controller for the payment information it processes; their privacy policy is available at stripe.com/privacy .

Contact

  • Email: support@lumaandhome.co.uk
  • Address: Fredriksdalsgatan 4B, 412 85 Gothenburg, Sweden
  • Hours: Monday–Friday, 09:00–17:00 (GMT+01:00, Stockholm)

Last updated: 15 May 2026.