πŸ›‘οΈ

Privacy First Design

QRScannerPro is built with privacy as a core principle. We collect minimal data, encrypt everything, and give you complete control over your information. Your data never leaves your device.

Overview

QRScannerPro ("App", "we", "us", "our") is committed to protecting your privacy. This Privacy Policy explains our practices regarding data collection, usage, and your rights as a user of the QRScannerPro application.

The App is designed with privacy as a core principle. We collect minimal data necessary to provide core functionality and comply with platform requirements.

πŸ”

Encrypted Storage

All your data is encrypted with AES-256 on your device. No external servers involved.

πŸ“±

Local Processing

Your scan history stays on your phone. Complete control. Complete privacy.

πŸ‘€

No Tracking

We don't track you, identify you, or build profiles. Ever.

βœ‚οΈ

Instant Deletion

Delete any data instantly. No waiting, no questions asked.

Data Collection & Usage

What Data We Collect

πŸ“‹ Scan History (Local Storage)

What: QR/Barcode content, URLs, decoded data, timestamps

Where: Stored locally on your device using SQLCipher encryption

Why: Allow you to view, search, and organize your scan history

Control: Delete anytime through Settings β†’ Data β†’ Clear History

βœ“ QR content & URLs
βœ“ Scan timestamps
βœ“ Format type
βœ“ Scan results

βš™οΈ App Preferences & Settings

What: Language, theme, feature settings

Where: DataStore Preferences (encrypted)

Why: Personalize your app experience

βœ“ Language choice
βœ“ Theme preference
βœ“ Feature config

πŸ” Biometric Data (Pro Features)

What: Fingerprint/Face Recognition

Where: Never leaves your device; processed by Android's API

Why: Optional secure app access

Control: Optional feature - enable/disable anytime

πŸ“± Device Information

What: Device model, OS version, API level

Why: Improve compatibility and crash reporting

Sharing: Only with Google when errors occur

Data We Don't Collect

❌ Names, emails, phone numbers
❌ Location or GPS data
❌ Contacts or call logs
❌ Usage analytics/behavior
❌ Browsing history
❌ Profile information
❌ Passwords or credentials

Third-Party Integrations

πŸ”— Google Safe Browsing API

Purpose: Detect malware and phishing in QR codes

Data Shared: Only the URL content (not your identity)

Encryption: HTTPS encrypted transmission

Opt-Out: Settings β†’ Scanning β†’ Safe Browsing

βœ“ What's Protected: Your personal information is never associated with these checks

πŸ“Ί Google Mobile Ads (Free Version)

Purpose: Display non-intrusive ads to free users

Data Shared: Anonymized Advertising ID, general location, ad interactions

User Consent: UMP consent flow on first launch with full opt-out options

Pro Version: No ads for premium users

βœ… Google User Messaging Platform (UMP)

Purpose: Manage GDPR/CCPA compliance for regulated regions

Control: Transparent consent with easy opt-out

Storage: Consent stored locally on your device

πŸ’³ Google Play Billing

Purpose: Process Pro membership purchases (one-time)

Security: Google Play Billing Client handles all sensitive data

Protection: Compliant with PCI DSS standards

Your Privacy Rights

πŸ‡ͺπŸ‡Ί If You're in the EU/EEA (GDPR)

You have comprehensive rights under GDPR Articles 15-22:

βœ“
Access: Know what data we hold
βœ“
Deletion: Erase your data anytime
βœ“
Rectification: Correct inaccuracies
βœ“
Restriction: Limit processing
βœ“
Portability: Export your data
βœ“
Object: Opt-out anytime
βš–οΈ How to Exercise: Use Settings β†’ Data β†’ Export (CSV/JSON), or email nexeldor@gmail.com

πŸ›οΈ If You're in California (CCPA)

You have the following rights under CCPA and CalOPPA:

βœ“
Know: What we collect
βœ“
Delete: Your personal data
βœ“
Opt-Out: Data sale/sharing
βœ“
Non-Discrimination: Equal service

Important: We don't sell personal data. Your data rights can be exercised through in-app settings or by contacting us.

Data Retention & Deletion

Data Type Storage Duration Deletion Method
Scan History Local device Until deleted Settings β†’ Data β†’ Clear
App Preferences Encrypted storage While app installed Settings β†’ Apps β†’ Clear Data
Ad Data (Google) Google servers ~13 months Google Account Settings
Consent (UMP) Local device Until withdrawn Settings β†’ Privacy β†’ Consent
πŸ’‘ Pro Tip: App uninstall automatically deletes all local data. No manual cleanup needed.

Data Security

Encryption & Protection

πŸ”’

AES-256 Encryption

SQLCipher encrypts your local database with military-grade encryption

πŸ”

Secure Storage

DataStore uses encrypted SharedPreferences for all settings

πŸ‘†

Biometric Lock

Optional fingerprint/face recognition for app access

πŸ”

API Security

All external calls use HTTPS with TLS 1.2+ encryption

Your Responsibility

  • Keep your Android device updated and patched
  • Use a strong device PIN/password
  • Install only from official Google Play Store
  • Maintain physical device security
  • Disable app when concerned about privacy
πŸ›‘οΈ Note: No system is 100% secure. We implement industry-standard protection, but your device security is the final layer.

App Permissions Explained

Required Permissions

πŸ“· CAMERA

Used for QR code and barcode scanning. No recordings, transfers, or background access.

🌐 INTERNET

Used for Google Safe Browsing, ads delivery, UMP consent, and crash reporting.

πŸ“³ VIBRATE

Used for haptic feedback on successful scan completion.

Optional Permissions

πŸ–ΌοΈ Gallery Access

Uses modern photo picker on Android 13+. No explicit permission needed.

πŸ‘† Biometric

Optional for Pro app lock feature. Only for local authentication.

Permissions We Never Request

❌ Phone numbers or call logs
❌ Contacts or SMS
❌ Location or GPS
❌ Calendar or reminders
❌ Social media accounts

Global Privacy Compliance

We Comply With:

πŸ‡ͺπŸ‡Ί

GDPR

General Data Protection Regulation (EU/EEA)

πŸ›οΈ

CCPA

California Consumer Privacy Act

πŸ‘¨β€πŸ‘©β€πŸ‘§

COPPA

Children's Online Privacy Protection Act

πŸ“‹

CalOPPA

California Online Privacy Protection Act

Other Jurisdictions

  • China (PIPL): Minimal data collection with all data stored locally
  • Brazil (LGPD): Transparent consent management via UMP
  • South Korea (PIPA): Full data protection compliance
  • Canada (PIPEDA): Privacy practices aligned with standards

Contact & Data Requests

πŸ“§ Get In Touch

Questions about our privacy practices? We're here to help.

GitHub

Report Issue

Response Time

14-30 days

Data Subject Access Request (DSAR)

  1. Send written request to nexeldor@gmail.com
  2. Include: App version, usage period, device info
  3. Response within 30 days (as required by law)
  4. Most data is stored locallyβ€”use app export feature first
  5. We may request proof of identity for verification

Deletion Request

  1. Delete all local data: Settings β†’ Data β†’ Clear All
  2. For cloud data: Email nexeldor@gmail.com
  3. Confirmation provided within 14 days

Quick Reference Guide

Common tasks and how to complete them:

Action How to Do It
Delete History Settings β†’ Data β†’ Clear History
Export Data Settings β†’ Data β†’ Export (CSV/JSON)
Manage Ads Settings β†’ Advertising β†’ Manage Ads
Disable Biometric Settings β†’ Security β†’ App Lock (toggle off)
Reset Advertising ID Settings β†’ Google β†’ Ads Settings
Withdraw Consent Settings β†’ Privacy β†’ Consent Preferences
Opt-Out Personalized Ads Settings β†’ Privacy β†’ Ad Personalization (toggle off)
Report Privacy Issue Settings β†’ Help & Feedback β†’ Report Issue

Policy Versions

Version Date Changes
1.3.0 June 9, 2026 UMP integration, GDPR/CCPA enhancement, AdMob v23.6.0, security improvements, comprehensive data deletion options
1.2.0 May 30, 2026 Initial comprehensive privacy policy
πŸ” Your privacy is our priority.
QRScannerPro respects your data by collecting only what's necessary. We've designed this app with privacy-first principles. If you don't agree with our privacy practices, please do not use the app. We welcome feedback at nexeldor@gmail.com.

πŸ“„ Latest Version: QRScannerPro Privacy Policy Repository

Document ID: QSP-PP-1.3.0-2026-06-09 | Next Review: June 9, 2027