Privacy Policy
Last updated: 30 September 2026
Lire cette politique en français
This policy explains what QR Coder, published by N7 Data, actually collects. We've tried to write it to match the real behavior of the tool rather than generic boilerplate.
1. Generating a QR code
Wi‑Fi and contact-card (vCard) codes are built entirely in your browser using JavaScript. Nothing you type into those fields is sent to our server — unless you choose to order printed stickers for that code, in which case Section 5 applies.
2. Tracked link types (website, email, phone, SMS)
For these code types, the content you enter (e.g. a URL, email address, or phone number) is sent to our server to create a short redirect link (/r/CODE) so scans can be counted. We store:
- the destination content itself, so we can redirect scanners to it;
- an optional label, if you set one;
- the date the link was created.
When someone scans the code and is redirected, we log:
- the date and time of the scan;
- the referring page, if the scan came through a link rather than a camera (often blank);
- a coarse device type, browser, and operating system, parsed from the browser's User-Agent header (e.g. "mobile / Safari / iOS").
We do not log IP addresses or precise location for scans. We have no way to identify who scanned a code.
3. The admin dashboard
Scan statistics are visible only to us, behind a password-protected dashboard. Signing in sets a session cookie used solely to keep that login active; it is not used for tracking visitors of the main site, and only our own staff sign in.
4. Third-party services
This site loads fonts from Google Fonts (fonts.googleapis.com / fonts.gstatic.com), which involves your browser making a request to Google's servers. It may also display advertisements served by a third-party network (such as Google AdSense), which can set their own cookies for ad delivery and, where applicable, personalization. Where required by law, we only load those third-party cookies after you've given consent. We don't control what those third parties do with data collected through their own cookies; see their respective privacy policies.
5. Printed sticker orders
If you order printed stickers, we collect and store:
- your email address, name, delivery address and phone number, as entered on the payment page (collected by Stripe Checkout and passed to us once your payment succeeds);
- the content of the QR code you ordered — for a Wi‑Fi or contact-card code this includes its text, such as the network name and password — and its design, which we need to produce the print file and to send it again if the printer rejects it;
- the order itself: date, pack, amount, payment reference, print-job reference and status.
We use this to fulfil your order, to keep the accounting records the law requires, and to help you if something goes wrong. If you are signed in, the order is also linked to your account and listed under "My orders".
Who receives it. Stripe processes your payment (we never see your card number). Our print partner, Prodigi, receives your name, delivery address, phone number, email address and the print file so it can print and ship your stickers. Prodigi currently produces in the United Kingdom, so this data may be processed outside the EU/EEA, on the basis of the European Commission's adequacy decision for the United Kingdom or, failing that, appropriate safeguards. Our hosting provider stores our database (see the Legal Notice). The print file is stored at an unguessable web address so that our print partner can download it.
How long. Delivery details and the encoded content (including the print file) are erased automatically 60 days after the order is sent to print or closed. The order record itself — date, amount and references, without your contact details or the encoded content — is kept for 10 years, as accounting rules require. You can ask for earlier erasure at any time; we will erase everything we are not legally required to keep.
When you pay, you are on Stripe's own page, which has its own cookies and privacy policy.
6. Data retention
We keep tracked links and their scan logs for as long as the link is in use, or until deletion is requested. Sticker orders follow the schedule in Section 5. To request deletion of a link and its scan history, contact us using the details in our Legal Notice.
7. Your rights
If you're in the EU/EEA, you have rights under the GDPR to access, correct, or request deletion of personal data we hold about you (for example, a destination URL you submitted that identifies you). Contact us using the details in our Legal Notice to exercise these rights. You can also lodge a complaint with your data protection authority (in France, the CNIL).
8. Changes to this policy
We may update this policy as the Service changes. The "last updated" date at the top reflects the latest revision.