This policy explains what data QRLumen collects and how we use it. We keep it minimal by design.
What we collect
- Static QR codes: generated entirely in your browser. The content you type (a URL, Wi-Fi password, contact details, etc.) is never sent to our servers.
- Dynamic / trackable codes: if you create one, we store the destination URL and scan events (timestamp, coarse country, and browser type) so the code can redirect and show you scan counts.
- Account data: if you sign in, our authentication provider (Clerk) stores your email address to manage your account.
- Analytics: we use Google Analytics (which sets cookies) and Cloudflare Web Analytics (cookieless) to understand aggregate, non-identifying usage.
- Payments: if you subscribe, payment is processed by Stripe. We never see or store your card details.
How we use it
To run the service (generate and redirect codes), improve the site, keep it secure, and process subscriptions. We do not sell your personal data.
Third parties
We rely on Clerk (accounts), Stripe (payments), Google (analytics), and Cloudflare (hosting, security, and cookieless analytics). Each processes data under its own privacy policy.
Cookies
See our Cookie Policy for what cookies are set and how to control them.
Data retention
Account and dynamic-code data are kept while your account is active. Scan analytics are retained in aggregate. You can request deletion at any time.
Your rights
Depending on where you live (e.g. the EU or California), you may have the right to access, correct, or delete your data, or to object to processing. To exercise any of these, contact us at support@qrlumen.com.
Children
QRLumen is not directed to children under 13 and we do not knowingly collect their data.
Changes
We may update this policy; material changes will be reflected by the date above.
Contact
Questions? Email support@qrlumen.com.
This document is a good-faith summary, not legal advice. Have counsel review it before relying on it commercially.