Legal

Privacy Policy

Last updated: May 23, 2026

The short version: We do not collect, store, or transmit any content you enter into the QR code generator. All QR code creation happens in your browser. We do not sell your data.

1. Overview

QuickResponseCode.com ("we," "us," or "our") is operated as a personal project by an individual based in the Commonwealth of Massachusetts, United States. We are committed to protecting your privacy. This Privacy Policy explains what information we collect, how we use it, and your rights with respect to that information. For the purposes of the EU and UK General Data Protection Regulation, the individual operator of QuickResponseCode.com is the data controller. By using the Service, you agree to the practices described in this policy.

2. Information We Do Not Collect

QuickResponseCode.com is a client-side application. QR code generation happens entirely in your browser using JavaScript. We do not:

  • Store or transmit the URLs, text, WiFi credentials, contact details, or any other content you enter into the generator.
  • Store QR code images or download history.
  • Require or collect account registration information.
  • Use advertising trackers or sell data to third parties.

3. Information We May Collect Automatically

Like most websites, our web server may automatically log certain technical information when you visit, including:

  • Your IP address (typically retained in server logs for up to 30 days)
  • Browser type and version
  • Operating system
  • Pages visited and time of visit
  • Referring website (if any)

This information is used solely for security and operational purposes (such as identifying and responding to technical errors or abuse). Server log entries are not combined with other data to identify individual users and are not shared with third parties for marketing purposes.

4. Cookies and Local Storage

We do not use advertising cookies or cross-site tracking cookies. We use the following browser storage:

  • Cookie consent preference: We store your analytics consent choice (accepted or declined) in your browser's localStorage under the key qrc_consent. This is never transmitted to any server and is used solely to remember your preference on return visits.
  • Google Analytics cookies: If you accept analytics, Google Analytics sets first-party cookies (such as _ga and _gid) to distinguish visitors and measure engagement. These cookies do not identify you personally. You can delete them at any time by clearing your browser cookies.

If you decline analytics, no Google Analytics cookies are set and no analytics data is collected from your session. You can change your preference at any time by clearing your browser's local storage and cookies for this site.

5. Third-Party Services

The Service loads the following third-party resources:

  • Google Analytics 4 (optional, consent required): We use Google Analytics to understand aggregate traffic patterns and page engagement - for example, which pages are visited most and which QR code types are most popular. Google Analytics only collects data if you consent via the cookie banner. It operates in Consent Mode v2, meaning analytics cookies are not set and no analytics identifiers are sent to Google without your consent. Google processes this data in accordance with Google's Privacy Policy. We do not use Google Analytics for advertising or remarketing.

All fonts and JavaScript libraries used by the Service are hosted on our own servers, so no requests are made to external font or content delivery networks when you use the Service. We do not use Meta Pixel, advertising networks, or any other cross-site tracking or advertising services.

6. Data Security

Since QR code data is processed entirely in your browser and never transmitted to our servers, the primary security consideration is your own device and browser environment. We serve all pages over HTTPS to protect data in transit. We do not store personal data, so there is no database of user information that could be breached.

7. Data Retention

We retain information only for as long as needed to operate and secure the Service:

  • Server logs (IP address, browser type, pages visited, timestamps): retained for up to 30 days, after which they are automatically deleted.
  • Cookie consent preference: stored in your browser's local storage until you clear it. Nothing is transmitted to us.
  • Google Analytics data (only if you consent): retained by Google for the periods configured in our Google Analytics 4 property - currently 2 months for both event data and user data (the shortest retention period available). The "reset on new user activity" setting is disabled, which means data is deleted at the end of the retention period regardless of whether the user returns to the Service. Aggregated reports may be retained for longer by Google in accordance with Google's own policies.
  • Email correspondence: messages you send to our contact address are retained only for as long as needed to respond to your inquiry, then archived or deleted.

8. Children's Privacy

QuickResponseCode.com is not directed at children under the age of 13. Our Terms of Service require all users to be at least 13 years old. We do not knowingly collect personal information from anyone under 13. If you believe a child under 13 has provided personal information through the Service, please contact us and we will take steps to delete it.

9. Your Privacy Rights

Because we do not collect or store personal data associated with your QR code content, there is generally no personal data for us to provide, correct, or delete. If you have questions about data that may have been collected through server logs or contact messages, you may submit a request to hello@quickresponsecode.com and we will respond promptly. Residents of the European Economic Area, the United Kingdom, and Switzerland have additional rights under European privacy law, described in the next section. Information specific to California residents follows.

10. Your Rights Under European Privacy Law (EU and UK GDPR)

If you are located in the European Economic Area (EEA), the United Kingdom, or Switzerland, you have the following rights with respect to your personal data under the EU General Data Protection Regulation (GDPR) and the UK GDPR:

  • Right of access - to ask whether we hold personal data about you and to receive a copy.
  • Right to rectification - to ask us to correct inaccurate or incomplete personal data.
  • Right to erasure - to ask us to delete your personal data, subject to certain legal exceptions.
  • Right to restrict processing - to ask us to limit how we use your personal data.
  • Right to data portability - to receive your personal data in a structured, commonly used, machine-readable format.
  • Right to object - to object to processing based on our legitimate interests (for analytics, see the right to withdraw consent above).
  • Right to withdraw consent - where we rely on your consent (such as for Google Analytics), you may withdraw it at any time by declining analytics in our cookie banner or by clearing your browser's local storage and cookies for this site.
  • Right to lodge a complaint - with your local data protection authority. In the UK this is the Information Commissioner's Office. In the EU you can find your national authority via the European Data Protection Board.

The legal bases on which we process personal data are: (a) legitimate interests - for minimal server logs used to secure and operate the Service, and for responding to email correspondence you send us; (b) consent - for Google Analytics, which only loads if you accept the cookie banner; and (c) legal obligation - where we process personal data to comply with our obligations under the GDPR or UK GDPR, including responding to rights requests. To exercise any of these rights, contact us at hello@quickresponsecode.com. We aim to respond within one month for requests from EEA, UK, and Swiss data subjects, consistent with Article 12(3) GDPR, which permits a two-month extension where requests are complex or numerous.

EU/UK representative. We have not appointed a representative in the European Union or the United Kingdom under Article 27 of the GDPR or the UK GDPR. Given the limited and occasional nature of our processing - short-term server logs and consent-gated analytics, with no special-category data and no large-scale or systematic processing - and given that this processing is unlikely to result in a risk to the rights and freedoms of natural persons, taking into account its nature, context, and purposes, we consider that the Article 27 exemption applies. If you disagree with this position or have concerns, please contact us using the email above.

11. California Residents

QuickResponseCode.com is a small, personally operated service that does not meet any of the thresholds that would make us a "business" subject to the California Consumer Privacy Act (CCPA), as amended by the California Privacy Rights Act (CPRA). We do not sell or share personal information as those terms are defined under the CCPA/CPRA, and we do not use cross-context behavioral advertising. Because we do not store QR code content and do not maintain user accounts, the personal information we may hold about you is generally limited to short-term server log entries (which include your IP address) and any email correspondence you initiate. If you are a California resident and believe we hold personal information about you, you may contact us at hello@quickresponsecode.com and we will respond as a matter of good practice. Nothing in this section is intended to subject us to the CCPA/CPRA or to create any right of action that would not otherwise exist.

12. Changes to This Policy

We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated "Last updated" date. We encourage you to review this policy periodically.

13. Contact

If you have any questions or concerns about this Privacy Policy, please contact us at hello@quickresponsecode.com.

See also: Terms of Service