Privacy Policy
Last updated: 24 September 2026
This Privacy Policy explains how IMQRScan ("IMQRScan", "we", "us" or "our") collects, uses, shares, retains and protects personal data when you visit IMQRScan.com, create an account, purchase a subscription, create or manage QR codes, use hosted pages or forms, contact support, or otherwise use our services.
1. Scope
This Privacy Policy applies to IMQRScan.com and the online services controlled by IMQRScan. It does not govern third-party websites or services that you choose to link to through a QR code or integration.
2. Personal Data We May Collect
2.1 Account and Profile Data
This may include your name, email address, organization name, account identifiers, login information, plan information and settings.
2.2 QR Code, Hosted Page and User Content Data
We process information you submit when creating QR codes or related assets, such as destination URLs, contact-card details, page content, uploaded files, forms, catalogue content, logos, images or other material needed to provide the feature you choose.
2.3 Scan and Usage Analytics
Depending on the feature and plan, we may process QR scan and usage information such as scan time, approximate location derived from network information, device or browser type, operating system, referrer information, QR identifier and aggregated usage statistics. We use this data to provide analytics, detect abuse, secure the Services and improve performance.
2.4 Technical and Log Data
When you use the Services, our systems may automatically process IP address, browser and device information, timestamps, server logs, authentication events, error logs and security signals.
2.5 Billing and Transaction Data
We may receive billing contact information, subscription status, transaction identifiers, payment status, invoice information, currency and limited payment metadata from our payment processor. Full payment-card numbers are generally processed by the payment provider rather than stored by IMQRScan.
2.6 Support and Communications
If you contact us, we may process your email address, message contents, attachments, troubleshooting information and related correspondence.
2.7 Cookies and Similar Technologies
We may use cookies or similar technologies for authentication, security, preferences, functionality, analytics and, where enabled, marketing. Where consent is legally required for non-essential cookies, we will seek it through the relevant consent mechanism.
3. Why We Use Personal Data
We may process personal data to:
- create and administer accounts;
- provide, maintain and personalize QR code and related Services;
- process subscriptions, payments, invoices and refunds;
- provide scan analytics and dashboards requested by users;
- respond to support requests and service communications;
- detect fraud, phishing, malware, prohibited content and security threats;
- enforce our Terms and Acceptable Use Policy;
- maintain logs, backups and service reliability;
- improve product functionality and user experience;
- comply with legal obligations, lawful requests and dispute-resolution requirements; and
- send marketing communications where permitted, with an unsubscribe option where required.
4. Legal Bases Where Applicable
Depending on your location and applicable law, we rely on one or more recognized legal bases for processing, including performance of a contract, your consent, compliance with legal obligations, and legitimate interests such as securing and improving the Services, preventing abuse and communicating with customers. Where consent is the applicable basis, you may withdraw it subject to lawful limitations.
5. How We Share Personal Data
We may share personal data only as reasonably necessary with:
- service providers and processors supporting hosting, infrastructure, email, analytics, security, customer support and similar operations;
- payment processors, including providers such as Stripe where used, to process transactions and subscription billing;
- professional advisers such as accountants, auditors, insurers or legal advisers where necessary;
- authorities or other parties where disclosure is required by law, court order, lawful request, fraud prevention, security protection or enforcement of legal rights; and
- business successors in connection with a merger, acquisition, restructuring or sale of assets, subject to applicable privacy requirements.
We do not authorize service providers to use personal data for unrelated purposes beyond their contractual or legal role.
6. Public and User-Directed Information
Some IMQRScan features are designed to make information publicly accessible, for example a digital business card, multi-link page, catalogue, event page or public file destination. Information you intentionally publish through such features may be accessible to anyone who has the QR code or page link. Review content carefully before publishing.
7. International Data Transfers
Our service providers and technical infrastructure may process data in countries other than the country where you live. Where applicable data protection law restricts international transfers, we use legally recognized safeguards or other permitted transfer mechanisms as required.
8. Data Retention
We retain personal data only for as long as reasonably necessary for the purpose for which it was collected, including account operation, contractual obligations, fraud prevention, security, backups, accounting, dispute resolution and legal compliance. Retention periods may differ by data category. When data is no longer required, we may delete, anonymize or securely isolate it, subject to lawful retention requirements and backup cycles.
9. Data Security
We use reasonable technical and organizational measures intended to protect personal data against unauthorized access, alteration, loss, misuse or disclosure. No internet or storage system can be guaranteed to be completely secure, so users should also protect their passwords, devices and account access.
10. Your Privacy Rights
Depending on applicable law, you may have rights to request access to personal data, correction, deletion, restriction of certain processing, data portability, objection to certain processing, or withdrawal of consent. You may also have the right to complain to a competent data protection authority.
To make a privacy request, email support@imqrscan.com. We may need to verify your identity before fulfilling a request and may retain information where legally permitted or required.
11. UAE Personal Data Protection
Where the UAE Federal Decree-Law No. 45 of 2021 Concerning the Protection of Personal Data applies to our processing, we process personal data in accordance with the obligations and data-subject rights required by that law and its applicable implementing requirements.
12. EEA, UK and Other Regional Rights
If you are located in a jurisdiction with additional privacy requirements, such as the European Economic Area or United Kingdom, additional mandatory rights may apply to you. Nothing in this Privacy Policy is intended to reduce rights that cannot lawfully be waived.
13. Children's Privacy
IMQRScan is not intended for children under 18 to create paid accounts independently. We do not knowingly seek to collect personal data from children in violation of applicable law. If you believe a child has provided personal data unlawfully, contact us so we can review and take appropriate action.
14. Third-Party Destinations
QR codes created by users may lead to third-party websites, apps, forms, files or services. Those destinations are controlled by the relevant user or third party, not IMQRScan, and their privacy practices are governed by their own policies.
15. Changes to This Privacy Policy
We may update this Privacy Policy to reflect legal, technical, security or service changes. The revised policy becomes effective when posted unless a later date is stated. Where required by law, we will provide additional notice for material changes.
16. Contact Us
For privacy questions or requests, contact support@imqrscan.com.