QRQRKEEP
HOME/DOCS

PRIVACY POLICY

DOCS & UTILITY

Last updated: October 2026

Privacy Policy & Data Protection Commitments

QRKeep is architected with a strict zero-data-collection philosophy for all QR generation.

1. Zero Data Collection on QR Inputs

When you enter a URL, alphanumeric text string, contact card details, or Wi-Fi credentials into QRKeep, none of your input data is ever transmitted to, processed by, or stored on our servers.

All QR matrix generation calculations and image rendering occur entirely within your browser using client-side JavaScript. When you export a PNG or SVG, the file is created locally in memory on your device. We do not maintain any database of generated codes, destination links, or user inputs.

Because we do not operate an intermediary redirect proxy, we never sit between your audience and your target destination. When a user scans a QR code you generated with QRKeep, their mobile device connects directly to your target server without pinging QRKeep, ensuring complete telemetry privacy for both you and your end users.

2. Infrastructure & Cloudflare Workers Hosting

QRKeep is hosted on Cloudflare Workers and Cloudflare Edge Infrastructure. Cloudflare serves static application assets and provides DDoS protection and DNS resolution. Cloudflare may process standard technical request headers (such as IP address and user agent) solely to deliver web assets and protect against cyberattacks. No QR generation payloads are logged or retained by our serverless workers.

These serverless edge nodes serve pre-compiled HTML, CSS, JavaScript, and static icons. Transient connection logs generated by edge routing are maintained strictly for network diagnostics, security threat mitigation, and geographic routing optimization, and are automatically purged in accordance with standard data retention protocols.

3. Google AdSense & Advertising Cookies

QRKeep is supported by minimal third-party advertising served by Google AdSense to cover hosting and domain expenses so that the service remains 100% free forever.

Google AdSense uses cookies and web beacons to serve advertisements based on your prior visits to this website or other sites across the internet:

  • Google's use of advertising cookies enables it and its partners to serve ads based on your visits to our site and/or other sites on the web.
  • Third-party vendors, advertising networks, and partners may also place third-party ad cookies on your browser to measure ad performance and deliver relevant advertising content.
  • You can opt out of personalized advertising by visiting Google Ads Settings.
  • Alternatively, you can opt out of third-party vendor cookies for personalized advertising by visiting aboutads.info or the European Interactive Digital Advertising Alliance (EDAA) consumer choice page at youronlinechoices.eu.

4. Email Communications & Routing (hello@qrkeep.xyz)

If you contact us directly via email at hello@qrkeep.xyz, your email address, message body, and any attachments are routed through Cloudflare Email Routing to our support mailbox. We use this information solely to respond to your inquiries, bug reports, or feature requests. We do not sell, rent, or use your email address for marketing campaigns.

Inquiries and support emails are retained only as long as necessary to address your request or fulfill legal record-keeping obligations. You may request the deletion of your past email correspondence at any time by messaging us from the relevant email address.

5. Privacy-First Analytics & Telemetry

We believe website usage metrics should never compromise visitor anonymity. QRKeep may utilize privacy-preserving, aggregate web analytics (such as Cloudflare Web Analytics or anonymized Google Analytics 4) to monitor operational health:

  • We do not perform invasive cross-site user fingerprinting.
  • We do not record session replays, mouse movements, or personal identifiers.
  • IP addresses collected for diagnostic performance are truncated or hashed to prevent individual identification.
  • Aggregate metrics include total daily page views, top referrers, device categories (mobile vs desktop), and general regional country statistics.

6. Children's Privacy (COPPA Compliance)

QRKeep is a general audience technical utility and is not directed at children under the age of 13. We do not knowingly collect, solicit, or maintain personally identifiable information from children. If you believe that a child has provided us with personal information through email correspondence, please contact us immediately at hello@qrkeep.xyz, and we will promptly delete such records from our systems.

7. International Data Transfers & Your Legal Rights (GDPR & CCPA/CPRA)

Depending on your geographic jurisdiction, you hold specific legal rights concerning your personal data under regulations such as the General Data Protection Regulation (GDPR) in the European Economic Area, the UK GDPR, and the California Consumer Privacy Act (CCPA/CPRA):

  • Right to Access: You have the right to request confirmation of whether we process any personal data regarding you (e.g. prior email communications).
  • Right to Rectification & Erasure: You may request correction or permanent deletion of any personal data we hold.
  • Right to Opt-Out of Sale or Sharing: QRKeep does not sell personal information. For advertising cookies, you can exercise your opt-out rights via the cookie preference links provided above.
  • Non-Discrimination: We will never deny services, charge different prices, or provide a degraded experience because you exercised your statutory privacy rights.

8. Changes to This Privacy Policy

We may update this policy periodically to reflect operational, legal, or regulatory reasons. Any changes will be posted on this page with an updated “Last updated” timestamp. We encourage users to review this page periodically to remain informed about our data protection commitments.

9. Contact Information & Data Inquiries

For any questions or privacy inquiries, please visit our contact page or email us directly at hello@qrkeep.xyz. We endeavor to respond to all legitimate privacy inquiries within 48 business hours.