⚠ Short version Required cookies and browser storage keep sign-in, check-in, theme, drafts, and other core flows working. Optional browser telemetry stays off until you opt in. Server-side security logs and feature processing may still run when they are necessary to deliver the action you requested.
This notice explains how NiceQR.me collects, uses, shares, and retains personal data when you browse the site, sign in, create QR codes, buy a plan or design, or use public QR/check-in flows.
For users in the EEA, UK, and Switzerland, we rely on consent for optional browser telemetry and on contract, legal obligations, or legitimate interests for the rest of the service operations.
For applicable U.S. state privacy laws, we do not sell personal information for money and we do not switch on optional browser telemetry until you accept it.
Depending on how you use the product, we may collect:
• Account and profile data, such as your name, email address, avatar, authentication status, subscription records, and team membership. • QR and design data, such as payloads, templates, styling choices, uploaded assets, generated files, and related metadata. • Product and scan analytics, such as QR scan timestamps, country, browser, device type, referrer, and aggregated usage metrics used in dashboards. • Event check-in data, such as guest name, notes, session identifier, and location/network fields including country, region, city, ASN, and network organization when check-in analytics or anti-fraud flows use them. • Payment and purchase records, such as checkout intent data, provider, transaction identifiers, support/billing metadata, and purchase analytics events. • Technical and security data, such as request metadata, abuse-prevention signals, diagnostics, and server-side error traces.
We use data to provide and secure the service, authenticate users, generate QR assets, keep purchases attached to the right account, render analytics dashboards, prevent fraud and abuse, send operational emails, support customers, and comply with legal obligations.
If you accept optional telemetry, we also use browser-side error and performance data to diagnose issues faster and improve reliability.
We do not enable optional browser telemetry for first-time visitors by default.
NiceQR.me uses cookies and local browser storage.
• Strictly necessary items help keep sign-in, secure public check-in flows, cookie choices, and requested product behaviors working. • Current first-party auth/check-in cookies can include items such as `niceqr_token`, `niceqr_refresh`, and `checkin_sid` when those features are used. • Local browser storage can be used for theme preference, cookie preferences, banner dismissal state, studio drafts, and duplicate-submission protection on public check-in pages. • Optional browser telemetry for error and performance monitoring stays off until you choose “Accept all”.
You can change your choice at any time from the Cookie settings link in the footer.
We share data only when needed to operate the service, fulfill your request, or comply with the law. This can include hosting/CDN and infrastructure providers, email delivery vendors, authentication providers, error-monitoring vendors, and payment partners.
If you choose Google sign-in, Google processes data according to Google’s own terms and privacy notice.
If you start a checkout, LemonSqueezy and/or PayOS may collect payment and fraud-prevention data under their own policies. NiceQR.me does not store full payment card numbers on its own systems.
We keep account, design, purchase, and analytics data for as long as needed to provide the service, maintain records, resolve disputes, and meet legal obligations.
Items stored only in your browser remain there until you clear them, replace them, or the app removes them.
Current check-in privacy automation anonymizes older check-in network/device data after about 90 days, and temporary check-in export files are cleaned up after about 72 hours.
We may keep aggregated or de-identified statistics for product reporting even after underlying records are removed.
Depending on where you live, you may have rights to access, correct, delete, export, restrict, or object to certain processing, and to withdraw consent for optional telemetry.
If you are in the EEA/UK/Switzerland, you may also complain to your local supervisory authority. If you are covered by applicable U.S. state privacy laws, you may request disclosure, correction, deletion, or portability subject to legal exceptions.
Where available inside the product, deleting your NiceQR.me account starts removal of related account data subject to backups, fraud-prevention, and legal retention needs.
We use HTTPS, access controls, hashed passwords, rate-limiting, monitoring, and other technical and organizational safeguards designed to protect personal data.
No system is completely risk free, so you should also protect your device, use strong passwords, and sign out of shared computers when appropriate.
We may update this notice when product flows, vendors, or legal requirements change. Material changes take effect when posted, and we may provide an additional in-product or email notice when appropriate.
If you have a privacy request or question, contact us at:
Email: privacy@niceqr.me
✓ End of document