Privacy Policy
Last updated: January 1, 2025
1. Information We Collect
1.1 Account Information (Required)
To create and manage your account, we collect:
- • Full name (first and last)
- • Email address
- • Password (encrypted)
- • Two-factor authentication (2FA) settings - encrypted backup codes (optional)
1.2 Google Authentication Information (Optional)
If you choose to sign in with Google, we also collect:
- • Google ID
- • Google email
- • Google profile photo
1.3 Digital Cards Information (Optional)
When you create digital cards, you may include:
- • Contact information (email, phone numbers)
- • Professional information (title, company, description)
- • Physical address (optional)
- • Social media links
- • Images (avatar, logo, cover image)
- • Customizable design (colors, templates)
1.4 Automatic Technical Information
We automatically collect technical information for the service operation:
- • IP address and approximate geographic location
- • Device type, browser and operating system
- • Visited pages and time spent
- • Actions performed on cards (clicks, downloads)
2. How We Use Your Information
We use the collected information solely for:
- • Creating and managing your user account
- • Providing the digital card service
- • Generating customized QR codes
- • Processing payments and managing subscriptions
- • Providing usage analytics and statistics
- • Sending important service notifications
- • Improving and optimizing our platform
3. Sharing Information
We do not sell, rent or share your personal information with third parties, except in the following cases:
- • With your explicit consent
- • With essential service providers (Stripe for payments, Google for authentication)
- • When legally required by competent authorities
- • To protect our legal rights or the safety of other users
4. Data Security
We implement technical and organizational security measures to protect your information:
- • SSL/TLS encryption for all communications
- • Bcrypt-hashed passwords
- • Optional two-factor authentication (2FA) for enhanced security
- • Restricted access to personal data
- • Continuous security monitoring
5. Data Retention
We retain your personal information only for as long as necessary:
- • Account data: As long as your account remains active
- • Digital cards: Until you delete them or close your account
- • Analytics: Maximum 2 years for trend analysis
- • Payment data: According to legal and accounting requirements
6. Your Rights
You have the right to:
- • Access your personal information
- • Correct inaccurate or incomplete data
- • Request the deletion of your information
- • Export your data in standard format
- • Withdraw consent at any time
- • File a complaint with the data protection authority
7. Cookies and Similar Technologies
We use cookies and similar technologies to:
- • Keep your session active
- • Remember your preferences
- • Analyze the usage of the service
- • Improve the functionality of the platform
8. International Transfers
Your information may be processed on servers located in the European Union. We ensure these transfers comply with the GDPR and use appropriate safeguards.
9. Minors
Our service is not directed at persons under 18 years of age. We do not knowingly collect personal information from minors. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.
10. Changes to this Policy
We may update this privacy policy occasionally. We will notify you of any significant changes by email or through a notice on our website. We recommend reviewing this policy periodically.
11. Contact
If you have any questions about this privacy policy or your rights, please contact us:
Data Protection Officer
Main Email: privacy@card-qr.com
Support Email: support@card-qr.com
Legal Email: legal@card-qr.com
Administrative Email: admin@card-qr.com
Important note: For ARCO rights requests (Access, Rectification, Cancellation, Opposition), use privacy@card-qr.com exclusively. For general legal inquiries, you can use legal@card-qr.com.
GDPR Form: To exercise your data protection rights more easily, you can use our online GDPR request form which will guide you step-by-step.