Freeware for macOS

Turn messy files into meaningful names.

Lumen is a free, local-first AI file renamer for Mac that proposes clean, consistent filenames for supported documents and opted-in photos. Review every change before anything is renamed. Use on-device AI on an Apple-silicon Mac with 24 GB+ memory, or bring your own cloud AI key.

20.7 MB macOS 26.4 or later Universal app

  • Free to use
  • Apple-notarised
  • Sandboxed
  • No Lumen account
Example of Lumen showing three approved filename proposals before a rename.

A calmer file workflow

From mystery scan to useful filename.

Lumen keeps the process simple, inspectable and reversible from the first drop to the final rename.

01

Drop in files or folders

Queue one file, several folders or a whole mixed collection. Quick Look anything before processing.

02

Review meaningful names

Lumen extracts document details and photo metadata to propose consistent filenames. Cloud photo descriptions are optional.

03

Rename with a safety net

Execute only the names you approved. Every successful rename is logged so eligible files can be restored later.

Beforescan_0042.pdf
AfterAlex Morgan - AU - Tax Notice - 2026-03-14.pdf

Lumen 1.2.3 features

Built for the decisions around the name.

These features are included in the current Lumen 1.2.3 release.

Local by default

Use the on-device model for document analysis on an Apple-silicon Mac with 24 GB+ memory. No Lumen account or API key required.

Your choice of provider

For difficult files or cloud-only visual photo descriptions, use your own Ollama Cloud, OpenAI, xAI, Gemini or Claude API key after a clear consent prompt. Test a provider key without sending document data.

Flexible photo names

Choose and reorder Description, Place, Date and an optional Label. Description is cloud-only, and any unavailable or unused field is left out.

Review every change

Compare original and proposed names, then use ⌘-click, ⇧-click or ⌘A to highlight a set. Y/N changes the highlighted rows; ticks still decide what runs.

Powerful batch tools

Send Results or Unprocessed rows into Batch Rename, apply counters and rules, and return them to their original tab until they are renamed or a new processing run starts.

Names database backup

Map name variations once, then export or restore the mappings, ignored names and naming schema as one validated backup.

Session recovery

Lumen can offer to restore saved proposals, approvals, hand edits, photo numbering, Name Review and sent-to-Batch rows after a crash or quit. Restored document proposals are reconciled with your current name mappings.

Crash-safe undo

Rename history restores eligible files, while per-file recovery records help repair an interrupted revert when Revert Renames is revisited.

Clearer diagnostics

After a run, see how many skipped files the AI declined for safety and, for cloud runs, approximate input and output tokens when reported. Share-safe log export omits extracted content and replaces file, folder and path names with extensionless anonymous tokens.

Supported formats

Ready for the files that fill a Mac.

DocumentsPDF · DOCX · XLSX · PPTX · TXT
PhotosJPEG · PNG · HEIC · TIFF · GIF · BMP · WebP
Apple iWorkPages · Numbers · Keynote · via embedded preview

Supported models

One local model. Five optional cloud models.

Choose the privacy, hardware and capability balance that fits each run. Lumen never turns a cloud provider on for you.

On-device · MLX

Phi-4 14B

mlx-community/phi-4-4bit

Lumen's sole local model analyses documents on your Mac. It needs no API key, and local inference has no per-use fee.

Best suited to English-heavy documents; extraction from other languages may be less accurate.

Hardware
Apple silicon · 24 GB+ unified memory
Setup
You start a model download of approximately 8.26 GB before local AI can be used.
Photos
Uses whichever selected Label, location and capture-date fields are available; it does not generate a visual description. Resolved location can contact Apple’s geocoding service after separate consent.

Optional cloud AI

  • Ollama Cloud · Cloud

    Gemma 4 31B (hosted)

    gemma4:31b
    Documents
    Document content is sent as extracted text, not original files. Accepted oversized PDFs use text read locally from a temporary copy of up to the first five pages. An open-weight model that runs on Ollama’s cloud service, not on your Mac; a free Ollama account is enough for a key, and usage is counted against your plan’s limits — Ollama publishes no per-token price.
    Photos
    Visual descriptions for eligible photos.
  • OpenAI · Cloud

    GPT-5.6 Luna

    gpt-5.6-luna
    Documents
    Accepted oversized PDFs use extracted text from a temporary copy of up to the first five pages. A weak result may also send PDF bytes that fit the inline request limit — the original for an ordinary PDF, or that temporary copy for an oversized PDF — or a re-encoded image.
    Photos
    Visual descriptions for eligible photos.
  • xAI · Cloud

    Grok 4.3

    grok-4.3
    Documents
    Document content is sent as extracted text, not original files. Accepted oversized PDFs use text read locally from a temporary copy of up to the first five pages.
    Photos
    Visual descriptions for eligible photos.
  • Gemini · Cloud

    Gemini 3.5 Flash

    gemini-3.5-flash
    Documents
    Document content is sent as extracted text, not original files. Accepted oversized PDFs use text read locally from a temporary copy of up to the first five pages.
    Photos
    Visual descriptions for eligible photos.
  • Claude · Cloud

    Claude Sonnet 5

    claude-sonnet-5
    Documents
    Accepted oversized PDFs use extracted text from a temporary copy of up to the first five pages. A weak result may also send PDF bytes that fit the inline request limit — the original for an ordinary PDF, or that temporary copy for an oversized PDF — or a re-encoded image.
    Photos
    Visual descriptions for eligible photos.
Cloud AI is always opt-in.

Providers are off by default and use your own API key; their API charges may apply. Lumen asks for permission before it first sends file-related content to a provider. A document’s filename and locally extracted text are normally sent. Lumen keeps a list of name mappings so that people’s names are spelt consistently; up to 300 of them are sent with every document, including documents those people do not appear in. For an accepted PDF larger than about 30 MB, Lumen reads text on your Mac from a temporary copy of up to its first five pages; any selected provider may receive that extracted text where text can be extracted. If the text-only result looks weak, Claude or OpenAI may also receive PDF bytes that fit the inline request limit — the original for an ordinary PDF, or that temporary copy for an accepted oversized PDF — or a re-encoded copy of an image document. Gemini, xAI and Ollama Cloud never receive original document files. All five may receive eligible images when visual photo descriptions are enabled and consented. Cloud providers are listed here, and in the app, from lowest to highest typical cost for an ordinary text document at August 2026 list prices.

Privacy that is easy to understand

Local-first by design. Cloud AI only by choice.

In the default configuration, document analysis runs on your Mac and no document content is transmitted. The Lumen app has no account system and includes no analytics, advertising or tracking. Its separate software-update check is described in the User Guide.

If you choose a cloud provider, Lumen asks for permission before it first sends file-related content to that provider. Requests go directly from your Mac to that provider using your own API key; they never pass through the developer.

With cloud photo naming enabled, images containing little or no readable text are sent to the selected provider as a re-encoded copy, not as the original file. If you use Resolved photo location, Lumen separately asks before sending embedded GPS coordinates to Apple’s geocoding service for a place-name lookup.

Lumen stores operational records inside its sandboxed container. It also stores local session-recovery snapshots that can include filenames, paths, proposed names, extracted fields and review state, but contain no API credentials or document content and are never transmitted. The full policy explains their lifecycle and the legacy records used to clean up provider uploads created by earlier versions.

Read the full Privacy Policy
  • On-device defaultLocal extraction, OCR and analysis.
  • Explicit cloud consentPer provider, revoked when its key changes.
  • Keychain protectionAPI keys are stored in the macOS Keychain and sent only to the selected provider to authenticate requests.
  • Sandboxed file accessLumen scans only locations you select.
  • Local session recoveryReview work is saved on your Mac and can be restored after an interruption.
Lumen app icon

Lumen 1.2.3 · Build 7

Download Lumen for Mac.

Free to download and use. Distributed directly as a signed, notarised and Gatekeeper-checked disk image.

Download the 20.7 MB DMG

System requirements

  • macOS 26.4 or later
  • Universal app: Apple silicon or Intel
  • Local AI: Apple silicon with 24 GB+ memory
  • Intel Macs require a configured cloud provider for AI analysis
  • Local model: approximately 8.26 GB before first use

Install in four steps

  1. 1 Open Lumen-1.2.3.dmg.
  2. 2 Drag Lumen into Applications.
  3. 3 Eject the disk image and launch Lumen.
  4. 4 If macOS asks about an app downloaded from the internet, click Open.
Verify the download checksum
SHA-256b28ae077891ab8ee24479d5b4adf024d4d35fcb263f409c019e290ef0555de76

Version history

What changed in Lumen.

Lumen 1.2.3 is the current release, distributed directly from the official Lumen website as a signed and notarised Developer-ID disk image, not through the Mac App Store.

  1. Current releaseCurrent direct download

    Lumen 1.2.3

    Highlights in 1.2.3

    • Ollama Cloud, a fifth cloud provider. Bring your own Ollama key and Lumen names documents and photos with Gemma 4 (31B) hosted on Ollama’s cloud service — not on your Mac. A free Ollama account is enough for a key; usage counts against your plan’s limits rather than a per-token bill, so Lumen shows token counts for it but no cost estimate. Ollama states that prompts and responses are processed transiently and never used for training. As with every cloud provider, you are shown exactly what is sent and asked before the first document goes.
    • Providers listed by cost. Every provider menu and Settings list now runs from lowest to highest typical cost for an ordinary text document — Local AI (free), Ollama Cloud, OpenAI, xAI, Gemini, Claude — at August 2026 list prices; the User Guide says so and why the order can differ for you.
    • Step-by-step provider setup in Help. The User Guide and this site’s help page now walk through getting a key from each of the five providers: the exact page, what to click, whether you need to add credit first, the traps a first-time user hits, and what each provider says about training on your data — stamped “as of August 2026”.
    • Cleaner Name Review. A “name” containing a digit — phone numbers, IDs, product codes — never reaches Name Review any more, whichever provider produced it.

    Privacy policy

    Effective date 17 August 2026. Ollama Inc. (Ollama Cloud) is added to the providers section; each provider entry now also links the document that governs data sent through its API (their consumer privacy policies exclude API traffic); two provider legal names were corrected to what their current policies state (OpenAI OpCo, LLC; X.AI LLC). What Lumen sends, and when it asks, is unchanged.

    Under the bonnet

    • Price defaults refreshed to today’s list prices (Claude Sonnet 5 $2/$10 — its launch price is now permanent; gpt-5.6-luna $0.20/$1.20). Your own overrides in Settings are untouched.
    • Provider dispatch is compiler-checked: a provider without an analyser can no longer fall through to Claude.
  2. Previous releasePrevious direct release

    Lumen 1.2.2

    Highlights in 1.2.2

    • Clearer duplicate selections. When files in different folders share a basename, Lumen now includes the parent folder in their spoken selection labels across Drop Zone, Results, Unprocessed, Batch Rename and Revert Renames.
    • Organisation mappings in filenames. Saved name mappings now also canonicalise extracted organisation names when Lumen composes filenames.
    • Website link in About. Open the Lumen website directly from the About panel.
  3. Previous releasePrevious direct release

    Lumen 1.2.1

    Highlights in 1.2.1

    • Built-in update checks. Automatic checks are on by default and run after launch when a daily check is due. Turn them off under Settings → Advanced → Software Updates, or use Lumen → Check for Updates… at any time. Available updates download from GitHub Releases; downloading and installation remain your choice.

    Large-PDF privacy

    For an accepted PDF larger than about 30 MB, Lumen now reads text locally from a temporary copy of up to its first five pages, whichever of the five providers you use. The whole large PDF is not uploaded. Only when the first result is weak may Claude or OpenAI also receive that temporary excerpt inline, and only where it fits the request limit.

  4. Previous releasePrevious direct release

    Lumen 1.2

    New in 1.2

    • Names database backup and restore. Settings → Advanced → Names Backup exports your name mappings, ignored names, and naming schema to a single file, and imports one back — validated end-to-end before anything changes, with a safety copy taken first. Merge with existing names or replace all.
    • Send files between tabs. Results can send ticked, resolved files to Batch Rename with suggested or original names; Unprocessed can send ticked files, or all visible files when none are ticked. Sent rows can be returned to their source tab until they are renamed or a new processing run starts.
    • Session recovery. If Lumen quits before you rename — after a crash, restart or ordinary quit — the next launch can offer to restore completed results and review state: saved proposals, approvals, hand edits, photo numbering and the Name Review queue; rows previously sent to Batch Rename return to their source tabs.
    • Crash-safe undo. Reverting renames now keeps a per-file recovery record as it works. If the app is interrupted mid-revert, Lumen tries to apply the recorded recovery information on the next visit to Revert Renames — and when an external log is reopened — then reports anything that still needs attention.
    • Multi-select across the working lists. Highlight several rows with ⌘-click, ⇧-click, or ⌘A in Drop Zone, Results, Unprocessed, and Batch Rename — and Y/N ticks or unticks them all at once.

    Clearer and more honest

    • Privacy disclosures corrected. Every statement about what leaves your Mac was re-audited against the code and corrected — including that the original filename, your known-name mappings, and a photo's capture date accompany cloud requests, and removing claims about content that is never sent. Because the wording changed, existing users are shown the corrected disclosure once per provider before the next cloud use. The privacy policy and this website were updated to match.
    • Truthful messages throughout. Failed saves in Name Mappings now say exactly which file failed and keep your typed values on screen; the Progress tab's counters stay honest when files are sent away or trashed mid-run; cloud truncation errors are reported clearly instead of as a generic failure; the in-app User Guide was expanded and corrected to match the app's real behaviour.

    Fixed

    • Keyboard and context-menu actions no longer act on an arbitrary row when several are highlighted (including one destructive case: Move to Trash).
    • The Batch Rename working set survives switching tabs.
    • A fast double-click on "Try with…" could analyse the same file twice and land a duplicate row.
    • Renamed files can be re-checked and renamed again without a restart.
    • A FIFO, symbolic link, or other special file can no longer hang the app.
    • Switching providers can no longer wipe a stored API key.
    • Reverting: importing a log no longer mistakes an I/O error for a corrupt file, and case-only renames revert correctly.
    • Name Review's retry can no longer erode the names-database safety copy; cross-set name edits no longer leave case-variant residue.
    • Settings name counts refresh immediately after Name Mappings edits.
    • CSV exports neutralise spreadsheet formula injection.
    • The completion message no longer tells you to note a rename manually when that rename was in fact saved to the undo log.
    • Photo-naming settings and Help now list the real set of name fields — the optional Label was missing from the descriptions.
    • Each queued image now carries the exact photo permission and location setting it was created with — what the consent dialog described is exactly what can be sent. Changing either setting mid-run affects your next run or re-check, never work already queued, and after a crash recovery Lumen follows your current setting instead of an old saved one.
    • Closing the window and reopening from the Dock now returns you to the same session instead of an empty window with your run still going invisibly.
    • Restoring a saved session now reconciles eligible document proposals with name mappings added in the meantime, while preserving hand-edited filenames.
    • Filenames can no longer keep invisible line separators that some documents carry, including in the file extension.
    • The share-safe log export no longer keeps the original file extension, and a deliberately odd file or folder name can no longer expose text the export is meant to hide.

    Under the bonnet

    • The names database is now served by one shared, gate-checked file module (identical behaviour, mechanically enforced).
    • Revert-status writes are journalled with the same crash-safety as rename logs; every journal has a terminal disposition — nothing can nag forever.
    • Undo logs are now flushed to disk before their temporary recovery records are removed, and recovery refuses a corrupt undo record outright instead of silently dropping it — your rename history survives a power cut or a damaged file rather than being quietly thinned.
    • Debug logs rotate at 50 MB; photo-caption requests are now logged like every other analyser call; share-safe export hardened further.

    Upload safety (Claude)

    When a large PDF has to be uploaded to Claude for analysis, Lumen now records that it is about to send it — before any bytes leave your Mac. If the app is interrupted at exactly the wrong moment, so that the upload may have arrived but Lumen never learned its file identifier, the next launch shows a plain notice explaining that a copy may exist at the provider and that Lumen cannot delete it automatically. The notice is informational and dismissable; nothing about your local files changes.

    Privacy policy

    The policy now describes the session-recovery snapshot introduced by crash recovery: what it holds, when it is replaced or removed, that a snapshot the app cannot read (or that a different app version wrote) may remain in the app's container, and that snapshots are never transmitted or included in the share-safe log export. Settings now names Apple's geocoding service consistently with the rest of the app.

    Name-database safety

    Names now go through one safety check wherever they enter Lumen — imports, the Name Mappings tab, and Name Review. Line breaks, control characters, text-direction overrides and byte-order marks are refused, because a name carrying them could smuggle instructions into the request Lumen sends the AI with every document. Names in Indic, Persian, Arabic and other scripts are unaffected: the joiners and direction marks those languages need are explicitly allowed, as are tabs and ordinary punctuation. If a name already stored on your Mac contains one of the refused characters, the affected rows are flagged in Name Mappings with a Select Affected Rows button so you can find and remove them, and until then the names Lumen sends are escaped so they cannot read as instructions. A detected name that cannot be added safely no longer blocks the rest of your review — it holds its own file back from Execute and tells you to edit that filename or untick the file.

    Undo reliability

    The temporary record Lumen keeps while renaming is now transactional: if writing an entry fails and the rename is put back, the partial bytes are removed, so a rename that was undone can never reappear in Revert Renames and point at the wrong file. If that repair itself fails, Lumen keeps every earlier rename's evidence rather than discarding the whole batch, and says so plainly instead of promising a recovery it cannot make. Recovery folders that cannot be used are listed with a Show in Finder button and honest guidance on whether refreshing will help.

  5. Previous releasePrevious direct release

    Lumen 1.1

    Safer renames, clearer reviews and smoother folder workflows.

    • Strengthened rename and reversion handling with case-only changes, multi-folder access, better collision checks and changed-file warnings.
    • Improved folder intake and Batch Rename responsiveness, reduced memory use for images and oversized PDFs, and made cancellation more reliable.
    • Added provider-key testing and a post-run summary covering named, skipped and AI-declined files plus approximate cloud token usage.
    • Made “Try with…” re-checks clearer, applied accepted Name Review mappings to the current run, and labelled providers in comparison sheets.
    • Added more consistent Space, Y/N and Return keyboard controls, with expanded in-app Help.
    • Added share-safe diagnostic export, protection against corrupt name-mapping files, stronger cloud-upload clean-up, Third-Party Notices and clearer cloud disclosures.
  6. Initial direct freeware release

    Lumen 1.0

    The first Lumen release: meaningful filenames, with you in control.

    • Proposed structured names for supported PDFs, DOCX, XLSX, PPTX, text files, images and iWork embedded previews, with review before renaming.
    • Used Local AI by default on supported Apple-silicon Macs, with optional bring-your-own Claude, OpenAI, Gemini and xAI providers.
    • Added customisable document and photo schemas, metadata-based photo dates and places, optional cloud photo descriptions, and canonical name mappings.
    • Added a multi-folder Drop Zone with Quick Look, grouped queues and per-file inclusion, plus rule-based Batch Rename with regular expressions, dates, counters, case changes and live conflict checks.
    • Added sandboxed access, first-use cloud and location consent, locally stored rename history and eligible-file reversion.

Support Lumen

Enjoying Lumen? Buy the developer a coffee.

Lumen is freeware. If it saves you time, an optional contribution helps support continued development and future releases.

Payments open on Wise.

Good to know

A few straight answers.

Is Lumen really free?

Yes. Lumen is free to download and use, with no Lumen account, subscription or in-app purchase. Local AI has no per-use fee. Optional cloud providers use your own account and may charge for their API usage.

Do my files ever leave my Mac?

Not in the default Local AI configuration. If you enable a cloud provider, Lumen asks for consent before transmitting file-related content. A document’s filename and locally extracted text are normally sent, together with up to 300 of your saved name mappings, including documents those people do not appear in. For an accepted PDF larger than about 30 MB, Lumen reads text locally from a temporary copy of up to its first five pages, whichever provider you use. If the first result is weak, Claude or OpenAI may also receive PDF bytes that fit the inline request limit — the original for an ordinary PDF, or that temporary excerpt for an accepted oversized PDF — or a re-encoded copy of an image document. The whole original large PDF is not uploaded. Cloud photo naming sends a re-encoded copy of qualifying images, never the original file. Resolved photo location separately sends embedded GPS coordinates to Apple’s geocoding service after another consent prompt.

What can Lumen rename?

PDF, DOCX, XLSX, PPTX and TXT documents; JPEG, PNG, HEIC, TIFF, GIF, BMP and WebP images; plus Pages, Numbers and Keynote files read through their embedded previews. Unsupported files remain visible with a reason. Files over 500 MB are not processed and are listed in Unprocessed with a reason.

Can I undo a rename?

Lumen keeps rename history on your Mac. Select a previous run in Revert Renames to restore eligible files that remain accessible when their original names are available.

Why is Lumen not in the Mac App Store?

Lumen is distributed directly as freeware. The download is signed with Developer ID, notarised by Apple, sandboxed and checked by Gatekeeper before release.