QR Guardian Privacy Policy
Effective Date: 04/04/2026
Last Updated: 04/04/2026
1. Introduction
Welcome to QR Guardian (“we,” “our,” or “us”). This Privacy Policy explains how we collect, use, disclose, and protect your personal data when you use our mobile application (the “App”).
We are committed to complying with the UK GDPR and the EU General Data Protection Regulation (GDPR), as well as Google Play Developer Policy requirements.
2. Data Controller
For the purposes of data protection laws, the data controller is:
Company Name: qr-guardian.com
Email: qrguardianapp@gmail.com
3. Personal Data We Collect
3.1 Data You Provide
- Email address (only if you contact support or submit feedback)
- Any information included in support requests
3.2 Automatically Collected Data
- Device type, operating system, and version
- App interactions (features used, scan frequency)
- Diagnostic data (crash logs, performance data)
3.3 QR Code Scan Data
- QR Guardian scans and processes QR codes to evaluate safety risks.
- This may include URLs or encoded text within the QR code.
- We do not store scanned QR content permanently unless explicitly stated and consented to.
- Processing is typically done in real-time.
4. Legal Bases for Processing (GDPR)
We process your personal data under the following legal bases:
- Legitimate Interests (Article 6(1)(f))
To ensure app security, prevent fraud, and improve functionality. - Consent (Article 6(1)(a))
Where required (e.g., analytics, optional features), we will request your consent. - Legal Obligation (Article 6(1)(c))
Where processing is necessary to comply with applicable laws.
5. How We Use Your Data
We use your data to:
- Provide QR scanning and threat detection services
- Identify malicious or unsafe QR code content
- Improve app performance and usability
- Respond to user support requests
- Maintain security and prevent abuse
6. Data Sharing
We do not sell personal data.
We may share data with:
- Service providers (e.g., hosting, analytics, security services)
- Legal authorities when required by law
- Third-party threat intelligence services to analyze potentially harmful URLs (only where necessary and proportionate)
All third parties are required to process data in compliance with GDPR.
7. International Data Transfers
If data is transferred outside the UK or European Economic Area (EEA), we ensure appropriate safeguards are in place, such as:
- Standard Contractual Clauses (SCCs)
- Transfers to countries with adequacy decisions
8. Data Retention
- Personal data is retained only as long as necessary for the purposes outlined
- QR scan data is processed transiently and generally not stored
- Analytics and diagnostic data may be retained for a limited period for improvement purposes
9. Your Rights Under GDPR
You have the right to:
- Access your personal data
- Rectify inaccurate data
- Request erasure (“right to be forgotten”)
- Restrict or object to processing
- Data portability
- Withdraw consent at any time
To exercise your rights, contact: qrguardianapp@gmail.com
You also have the right to lodge a complaint with a supervisory authority, such as the UK Information Commissioner’s Office (ICO).
10. Data Security
We implement appropriate technical and organisational measures to protect personal data, including encryption and secure processing practices. However, no system is completely secure.
11. Children’s Privacy
The App is not intended for children under 16 (or the applicable minimum age in your jurisdiction). We do not knowingly collect personal data from children.
12. Google Play Specific Disclosures
In compliance with Google Play policies:
12.1 Data Safety Disclosure
We clearly disclose:
- What data is collected
- How it is used
- Whether it is shared
This information is also provided in the Google Play Data Safety section.
12.2 Permissions
QR Guardian may request the following permissions:
- Camera Access – required to scan QR codes
- Internet Access – required to analyze QR code content and check safety
Permissions are only used for their stated purpose and are not used for tracking without consent.
12.3 No Unauthorized Data Collection
- We do not collect personal or sensitive data unrelated to the app’s core functionality
- We do not access background data unnecessarily
12.4 No Sale of Personal Data
We do not sell user data to third parties.
13. Third-Party Services
The App may use third-party services (e.g., analytics providers). These services may process data according to their own privacy policies. We ensure such providers are GDPR-compliant where required.
- Analytics – Posthog
- Entitlement/Device Authentication – Revenue Cat
- Device verification for security – Google Play
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. Updates will be indicated by revising the “Last Updated” date. Where required, we will notify users or request renewed consent.
15. Contact Us
If you have any questions or concerns:
Email: qrguardianapp@gmail.com
Company Name: qr-guardian.com
16. Consent
By using QR Guardian, you acknowledge that you have read and understood this Privacy Policy.