Privacy Policy
Effective August 21, 2026
QRoo helps you create, save, organize, and share QR codes. Most QRoo data stays on your device or in a backup or sync service you control.
Who is responsible
QRoo is provided by Andrei Gaivoronskii, an independent developer. Questions and deletion requests can be sent to andrei@gaivoronskii.com.
Data stored on your devices
QR code contents, titles, colors, favorite status, optional validity dates, and app preferences are stored locally. Widgets and the Apple Watch companion use the same data where available.
Apple devices
If you enable iCloud, QRoo syncs your QR codes across your Apple devices through your iCloud account. QRoo does not have access to your iCloud account or synced data.
Android devices
If Android backup is enabled, Android may copy QRoo's local data to the backup account configured on your device. QRoo cannot access that backup.
Optional Google Drive sync
If you enable Google Drive sync, QRoo stores QR code contents and metadata in the private application-data folder of the Google account you choose. This lets you synchronize QR codes between QRoo on iPhone and Android.
- Sync is optional and starts only after you choose a Google account and grant QRoo access.
- QRoo requests access only to files it creates in the hidden Google Drive application-data folder. It cannot read your other Google Drive files.
- Synced QR code data is not end-to-end encrypted by QRoo. Do not use QRoo Drive sync for passwords, access tokens, identity documents, private tickets, or other sensitive information.
- Google processes the account authorization and stores synchronized data under your Google account settings and Google's privacy policy.
- You can disconnect the account or delete QRoo's synchronized data from the Google Drive sync screen in the app.
Wallet passes
QRoo sends no QR code data to our server unless you choose to add a QR code to Apple Wallet or Google Wallet and confirm the transfer notice.
- QRoo sends the selected QR code contents, title, colors, optional validity date, card identifier, and relevant language over HTTPS to the QRoo pass service hosted by Fly.io.
- The service signs and returns an Apple Wallet pass or a Google Wallet save request. It does not store the QR code request in its application database.
- Apple or Google creates and stores the pass only after you confirm it. Wallet pass data is then handled under your Apple or Google account settings and the provider's privacy policy.
- Removing a Google Wallet pass may not immediately remove the issuer-side pass object. Contact us if you want an identifiable Wallet issuer record deleted.
App verification and abuse prevention
Wallet requests use Apple App Attest or Google Play Integrity to confirm that they come from a genuine QRoo installation. Apple or Google processes app, account, and device integrity signals and returns a verification result to the QRoo pass service.
The service temporarily stores one-time challenges, rate-limit counters associated with a one-way hash of the network address, and security verification records. Challenges expire after 2 minutes, rate-limit records after their active window plus up to 24 hours, and inactive verification keys after 180 days.
Permissions
- Camera: used only when you scan a QR code.
- Photos, images, or files: used only for an image you choose to scan or a file you choose to import or export.
- Notifications: used on Android to remind you before a QR code expires, if you enable reminders.
Data we do not collect automatically
The QRoo app does not collect your name, email address, phone number, precise location, contacts, advertising identifiers, or payment information. QRoo contains no advertising and does not use third-party analytics SDKs.
Contacting us
If you email us, we receive your email address and the information you include in the message. We use it only to respond, provide support, or process a deletion request. Support correspondence is retained only as long as reasonably necessary for those purposes or to meet legal obligations, and you may ask us to delete it.
Security
Wallet requests are encrypted in transit using HTTPS. The pass service limits access to production credentials, does not log QR code request bodies, and stores only the temporary security records described above. No method of transmission or storage is completely secure, but we use reasonable technical and organizational safeguards appropriate to the data handled.
Diagnostics and service providers
Apple or Google may provide anonymous, aggregated app and device information, such as app version, operating system version, device type, and reliability information. Fly.io, Apple, and Google may process technical request information according to their own privacy policies when their services are used.
Retention and deletion
- Delete a QR code in QRoo to remove it from the device. iCloud deletions may take up to 7 days to fully sync.
- Delete QRoo to remove its locally stored data. Existing device backups, Google Drive app data, and Wallet passes remain managed through the applicable platform account until you delete them there or through QRoo's sync controls.
- Email us to request deletion of identifiable Wallet issuer records or pass-service security records. We may need information that allows us to identify the applicable record.
Children
QRoo is a general-purpose utility and is not directed to children. We do not knowingly collect personal information from children.
Changes
We may update this policy when QRoo or its services change. The effective date above identifies the latest version.