Last updated: September 27, 2026
This Privacy Policy explains how QRfarm collects, uses, stores and protects information when you visit qrfarm.io, use its QR code tools or contact us.
1. Who We Are
QRfarm provides browser-based tools for creating, customizing and downloading static QR codes.
For the purposes of applicable data protection law, the operator responsible for processing personal data is:
Data controller: [FULL LEGAL NAME OR REGISTERED BUSINESS NAME]
Postal address: [BUSINESS ADDRESS]
Country: [COUNTRY]
Contact: Please use the Contact page on QRfarm.
The information above must be completed with the operator’s legal details before this Privacy Policy is published.
2. QR Code Content
QRfarm is designed to generate and customize QR codes directly in your browser.
Content entered into the QR code generator—such as URLs, text, email addresses, Wi-Fi credentials, phone numbers, contact details and geographic coordinates—does not need to be sent to our server to generate the QR code.
Uploaded logos and selected customization settings are also intended to be processed within your browser during the QR code creation and export process.
Unless you separately submit information through the contact form or another server-based feature, QRfarm does not intentionally store the content encoded in your QR codes.
You are responsible for deciding what information to place inside a QR code. Do not encode passwords, confidential information or sensitive personal data unless you understand that anyone who scans the QR code may be able to access it.
3. Information We May Process
3.1 Technical and Server Information
When you visit QRfarm, our server and hosting infrastructure may automatically process technical information needed to deliver and protect the website, including:
- Your Internet Protocol address
- Browser and device type
- Operating system
- Requested pages and files
- Date and time of requests
- Referring page, when supplied by your browser
- HTTP status and diagnostic information
- Security and error logs
This information is used to operate the website, diagnose technical problems, prevent abuse and maintain security.
3.2 Contact Form Information
If you use the QRfarm contact form, we collect the information you provide, including:
- Your name
- Email address
- Message subject
- Message content
- Submission date and time
- Browser user-agent information
- Message read or unread status
To limit spam and repeated submissions, QRfarm also stores a pseudonymous one-way hash derived from the submitting IP address. The message database does not intentionally store the raw IP address in this field.
The technical web server or hosting provider may still process the original IP address as part of ordinary request and security logging.
Please do not include passwords, private Wi-Fi credentials, payment information, confidential documents or unnecessary sensitive personal information in your message.
3.3 Cookies and Session Data
QRfarm may use strictly necessary session cookies to:
- Protect forms against cross-site request forgery
- Maintain temporary form status
- Display success or error messages
- Protect administrative access
- Support essential website security
These cookies are used for functional and security purposes. They are not intended for behavioral advertising.
Temporary form values may be stored in the active session when a submission fails validation so that you do not need to re-enter the entire message.
3.4 Browser Storage
Some generator preferences or interface settings may be temporarily maintained by your browser to provide the requested functionality.
You can clear browser storage and cookies through your browser settings. Doing so may reset preferences or active form sessions.
4. How We Use Information
Information processed through QRfarm may be used to:
- Provide and operate the website
- Generate and display requested pages
- Respond to contact messages
- Investigate technical problems
- Prevent spam, fraud and abuse
- Protect the security and availability of the service
- Maintain administrative records
- Comply with legal obligations
- Establish, exercise or defend legal claims
QRfarm does not use the content entered into the browser-based QR generator to create advertising profiles.
5. Legal Bases for Processing
Where the General Data Protection Regulation or similar law applies, personal data may be processed on the following legal bases:
Performance of a Request
We process information you submit when it is necessary to provide a feature you requested or respond to your enquiry.
Legitimate Interests
We may process limited technical and security information where necessary for our legitimate interests in:
- Operating and securing QRfarm
- Preventing spam and abuse
- Diagnosing errors
- Improving reliability
- Responding to communications
We consider the nature and impact of this processing before relying on legitimate interests.
Legal Obligations
We may process or retain information when required to comply with applicable law, court orders or lawful requests from public authorities.
Consent
Where processing legally requires consent, we will request it before carrying out that processing. You may withdraw consent at any time, without affecting processing that lawfully occurred before withdrawal.
6. Sharing of Information
We do not sell contact form information or QR code content.
Information may be shared only when reasonably necessary with:
- Hosting and infrastructure providers
- Security, maintenance and technical service providers
- Professional advisers where necessary
- Public authorities when disclosure is legally required
- A successor operator in connection with a legitimate business transfer
Service providers may process information only as necessary to provide their services and must handle it according to applicable contractual and legal requirements.
7. Third-Party Resources
Some QRfarm pages may load technical resources—such as fonts, scripts or other website assets—from third-party providers.
When your browser requests a resource from a third-party provider, that provider may receive technical information such as your IP address, browser details, requested resource and request time.
QRfarm currently uses Google Fonts on certain pages. Google’s handling of information is governed by its own privacy terms.
We may replace, remove or self-host third-party resources as the website develops. Material changes will be reflected in this Privacy Policy where appropriate.
8. External Links and QR Destinations
QR codes created with QRfarm may point to websites, applications, maps, social platforms or other services operated by third parties.
QRfarm does not control those third parties and is not responsible for their privacy or security practices. You should review the privacy policy of any external service before providing personal information.
9. International Data Transfers
Some hosting or technical service providers may process information in countries outside your country of residence.
Where required by applicable law, international transfers will be protected using an appropriate legal mechanism, such as:
- An adequacy decision
- Standard contractual clauses
- Another legally recognized safeguard
You may contact us for more information about safeguards relevant to your personal data.
10. Data Retention
We retain information only for as long as reasonably necessary for the purpose for which it was collected.
In general:
- QR code content processed only in your browser is not intentionally retained by QRfarm
- Contact messages are retained while needed to respond, manage follow-up communication, prevent abuse or meet legal requirements
- Pseudonymous submission identifiers may be retained with contact records for security and abuse prevention
- Session data is temporary and normally expires when the session ends or is otherwise cleared
- Technical and security logs are retained according to operational, security and hosting requirements
Information may be retained for a longer period where necessary to comply with law, resolve disputes or establish, exercise or defend legal claims.
When information is no longer required, it may be deleted, anonymized or securely overwritten in accordance with operational procedures.
11. Data Security
We use reasonable technical and organizational measures intended to protect personal information, including:
- Restricted administrative access
- Authentication and session protections
- Form validation
- Cross-site request forgery protection
- Spam and rate-limit controls
- Secure HTTPS connections
- Access-controlled storage
- Software and infrastructure maintenance
No internet service or storage system can guarantee absolute security. You should avoid sending information that is not necessary for your enquiry.
12. Your Privacy Rights
Depending on your location and applicable