Privacy Policy
Last updated:
This policy explains how MBVNC Ltd., a Colorado-based company operating QRiscover ("we", "us", or "our"), processes personal data when you use our website, mobile applications, and QR portals. It also covers visitors who open a QRiscover link without an account. MBVNC Ltd. is responsible for the processing described here. Contact us at [email protected].
1. Information We Process
- Account and sign-in information: Your email address, account identifier, verification status, sign-in requests, authentication tokens, and session information.
- Content you provide: Portal titles, destinations, configuration, uploaded images, and other content you choose to save or publish. A QR payload can contain personal information, so consider what you encode and who can access it.
- Support and communications: Your name, email address, message, and any attachments or diagnostic information you choose to share with us.
- Purchases: Account and purchase identifiers, product and plan information, purchase history, and subscription status received through RevenueCat and Google Play. Google Play handles card and other payment credentials; QRiscover does not receive your full card details.
- Technical and security information: IP addresses, request times, browser and device information, security challenge results, and service logs used to deliver requests, prevent abuse, and investigate failures.
- Usage and diagnostics: Website visits, app screens and feature events, installation identifiers, and crash information, subject to the controls in section 4. Portal scan statistics are described separately in section 5.
2. How and Why We Use Information
We use account and content information to authenticate you, save and deliver portals, synchronize your account, and provide the features you request. We use purchase information to validate subscriptions, grant Pro access, restore eligible purchases, and resolve billing issues. We use contact information to deliver sign-in emails and respond to your requests.
Where EU or UK data protection law applies, our legal bases are performance of our contract with you for account, content, and subscription services; legitimate interests in operating and securing the Service, responding to inquiries, and providing portal statistics; consent for optional analytics storage and mobile analytics and crash reporting; and compliance with legal obligations where we must retain or disclose records. Where consent is legally required for a particular activity, it takes precedence over reliance on legitimate interests.
You can withdraw consent through the controls below without affecting earlier lawful processing, and you can object to processing based on legitimate interests by contacting us. Without information needed for sign-in or a purchase, we may be unable to provide that feature.
3. Providers That Help Operate QRiscover
Providers receive information needed for their role. Some process data on our behalf; others, including the store handling your purchase, also have their own responsibilities under their terms and privacy policies. The relevant providers are:
- Google Cloud: Cloud Run hosts our services, Cloud SQL stores account-related service data and portals, and Cloud Storage stores uploaded files. These services process hosted content and operational data. See the Google Cloud Privacy Notice.
- Firebase Authentication (Google): Processes email addresses, user identifiers, authentication data, and technical information to manage accounts and sign-in. See Firebase privacy information.
- RevenueCat and Google Play: RevenueCat processes an app user identifier (associated with your QRiscover account when signed in), purchase records and tokens, subscription status, and app and device metadata to verify and restore Pro access. Google Play processes the store transaction and payment information. This subscription processing is separate from optional product analytics and remains necessary when you disable analytics. See the RevenueCat Privacy Policy and Google Privacy Policy.
- Resend: Delivers transactional emails, including sign-in codes and support messages, and processes recipient addresses, message content, and delivery information. See the Resend Privacy Policy.
- Cloudflare Turnstile: Helps protect sign-in and forms from automated abuse. It processes IP addresses, browser and device signals, and challenge interactions for security verification. See the Cloudflare Privacy Policy and Turnstile addendum.
- Google Analytics 4, Google Analytics for Firebase, and Firebase Crashlytics: Provide website and app usage measurement and Android crash diagnostics as described in section 4. See the Google Privacy Policy and Firebase privacy information.
- ipapi.co (Kloudend, Inc.): When IP location lookup is enabled and hosting headers do not supply location, our server sends the visitor's IP address to ipapi.co to obtain approximate location for portal statistics. See the ipapi.co Privacy Policy.
- Google Fonts: Our website requests fonts from Google's servers. These requests expose your IP address and browser request information to Google independently of your analytics choice. See the Google Privacy Policy.
4. Cookies, Analytics, and Crash Reporting
Necessary storage: We use cookies and local device storage for sessions, security, portal access, and preferences. The qriscover-analytics-consent cookie records your analytics choice for up to one year. A local-storage copy may persist until cleared and is used as a fallback. You can delete stored data in your browser, although removing necessary cookies may sign you out or interrupt features.
Website analytics: Where configured, Google Analytics 4 helps us understand visits and navigation. When you allow analytics, it can use cookies such as _ga and _ga_* and process page URLs (including query parameters), referrers, interaction events, and browser and device information. Do not put sensitive information in URLs you share.
Analytics cookie storage is denied by default. Our website loads Google's tag with Consent Mode, so Google may still receive limited signals without analytics cookies before you allow analytics or after you decline, including consent state and technical request information. Declining analytics is therefore not a block on all connections to Google. See Google's Consent Mode explanation. We keep advertising storage, advertising user data, and ad personalization disabled in our website consent configuration.
Your website choice: Use Allow analytics or Decline analytics in the banner. Reopen it at any time using Cookies in the footer. Changing this setting controls analytics storage and our consent-gated page-view reporting, and does not limit access to the Service. You can also remove previously stored cookies using your browser settings.
Mobile analytics: Google Analytics for Firebase is disabled until you opt in through the app's consent prompt or settings. It measures screens and feature events, such as creating a code or completing a purchase, along with app and device information and installation identifiers. Our custom events use categories and counts rather than your email address, portal titles, or scanned QR payloads. We record whether a user is signed in, without setting their account identity as an analytics user ID.
Android crash reporting: Firebase Crashlytics uses the same in-app consent setting. It processes crash and error reports, stack traces, installation identifiers, and device and app information to help diagnose faults. You can turn analytics and crash reporting off in the app's settings at any time. Website and app choices are separate; withdrawing consent does not automatically delete records already received by a provider.
5. Portal Scan Statistics and Local App Data
When someone opens a dynamic QR portal, our backend records an open event for portal statistics. It processes the event time, portal identifier, browser and operating-system category, device type, and approximate country, region, city, and coordinates where available. Location comes from network information, not a request for your device's GPS.
We derive a pseudonymous source fingerprint from the IP address and browser information to help distinguish scan sources. Pseudonymous data is not necessarily anonymous. Portal owners can see summaries such as scan counts, locations, and device categories. This service-level measurement is separate from Google Analytics and is not switched off by declining website analytics cookies or mobile product analytics. Contact us to ask about or object to this processing where applicable.
The app stores preferences, sessions, recent scan history, and cached content on your device. Camera access is used for scanning, and selected images may be processed for QR creation or uploaded when you choose to attach them to online content. You can manage camera and photo permissions through your operating system. Opening a scanned destination sends a request to that destination, whose operator may process data under its own policy.
6. Sharing and Public Content
Content published through a public QR portal can be viewed by people with its code or link. External destinations and services embedded or linked by a portal owner have their own privacy practices. We share data with the providers above to operate the Service, with authorized people responding to support requests, and where necessary to comply with law, protect rights and security, or handle a business transfer subject to applicable safeguards.
7. International Processing
We and our providers may process data in the United States and other countries outside your country of residence, whose privacy laws may differ. Where EU, UK, or other applicable law requires safeguards for an international transfer, these may include an applicable adequacy decision or standard contractual clauses. Contact us for information about the safeguards applicable to your data and how to obtain a copy where available.
8. Retention and Account Deletion
We retain account and portal data while needed to provide the Service. Support messages, security logs, and transaction records may be kept as necessary for their purpose, security investigations, disputes, or legal obligations. Provider-held analytics and diagnostics follow the applicable service settings and retention rules; these periods can differ from the lifetime of your QRiscover account.
Delete your account in the app or follow our account deletion instructions. After deletion is completed, your Firebase Authentication account, portals, associated scan statistics, and uploaded QR and portal images are removed from active systems. The in-app flow also clears local session data, cached portals, and recent scan history. An email request cannot remotely erase copies on your devices or content other people have saved.
Limited Google Play and RevenueCat records may remain for billing, fraud prevention, accounting, disputes, and legal requirements. Backup copies and logs may remain until removed under their applicable retention cycles. Contact us for requests concerning provider-held analytics or diagnostics. Deleting your QRiscover account does not cancel a Google Play subscription; cancel it separately in Google Play.
9. Your Rights and Choices
Depending on the law that applies to you, you may request access to or a copy of your personal data, correction, deletion, restriction of processing, or portability. You may withdraw consent, object to processing based on legitimate interests, and complain to your local data protection authority. Where applicable, you may appeal a denied privacy request by replying to our response. We do not penalize you for exercising applicable rights.
Send requests to [email protected]. We may ask for information needed to verify your identity or authority and will respond within the timeframe required by applicable law. If you have no account, describe the relevant interaction so we can assess whether we can identify the data without collecting unnecessary additional information.
10. Children and Security
QRiscover is not intended for children under 13 or a higher minimum age required locally. If you believe a child has provided personal information without required authorization, contact us so we can investigate and take appropriate action, including deletion.
We use authentication, access controls, and transport security to protect information. No online service or storage method can guarantee complete security. Keep your devices, email account, and sign-in links secure, and report suspected unauthorized access to us.
11. Policy Updates and Contact
We will update this page and its date when our practices change, and provide additional notice or request consent when required. Using the Service does not replace consent required for optional processing. For privacy questions, contact MBVNC Ltd. at [email protected] or through our contact page.