Privacy Policy

Last updated: August 13, 2025

At QRcodgen, we build privacy-first QR tools. We collect the minimum data necessary to operate our services and we secure it using industry best practices.

Data we process

Scan analytics

Our scan analytics are designed to minimize personal data. We capture event time, approximate geo (country / city), device/OS, referrer, and a truncated/anonymized IP for deduplication and fraud prevention. We do not build personal profiles from scan data.

Default retention for scan events is 13 months unless your organization configures a different policy.

Cookies

We use essential cookies for authentication/session management via Clerk and for CSRF protection. Optional analytics or marketing cookies are not used without consent. See our Cookie Policy for details.

Legal basis

We rely on legitimate interests to secure and operate the service, and on contract to provide paid features. Where consent is required (e.g., optional analytics cookies), we obtain it.

Your rights

Depending on your jurisdiction, you may have rights to access, correct, delete, or restrict processing of your personal data. To exercise these rights or request data portability, contact us at privacy@qrcodgen.com.

International transfers

We may process data in the US and EU depending on our infrastructure and subprocessors. We implement appropriate safeguards for cross-border transfers.

Contact

Questions about this policy? Email privacy@qrcodgen.com.