Last updated: October 6, 2026
QRAFT ("the app") is a QR code generator published by Essential Dev Team. This policy explains exactly what data the app does and does not handle. The short version: your QR codes are made entirely on your device, nothing you type is ever sent to us, and the app shares only anonymous usage statistics, which you can switch off.
QRAFT has no advertising and no third-party analytics or advertising SDKs. An account is only needed for the optional dynamic-codes subscription (section 8). We do not sell or share personal information, and we do not track you across apps or websites.
Every QR code (URL, text, Wi-Fi, email, phone, SMS, contact, location, calendar event) is created entirely on your device. The content you type to build a static code stays on your device unless you choose to sync or save it to your account (section 3). Only the optional dynamic-codes feature uses a hosted backend, as described in section 8.
Codes you save are stored on your device. They are only uploaded if you are signed in and turn on Settings → Privacy → Sync my saved codes (off by default). With sync on, each saved code — its name, type, content (which can include things like a Wi-Fi password or contact details), style and folder — is stored in your account so it appears on qrft.app and your other devices. Turn sync off at any time; Remove synced copies from server deletes the uploaded copies and keeps everything on your phone. Codes you save on qrft.app are stored in your account in the same way. Folders you create are stored in your account. Deleting a code, or deleting the app, removes the local copy.
If you export a QR code to your Photos, the app requests permission to add that single image. QRAFT never reads, browses, or uploads your existing photos.
If you create a location-type QR code, the app can ask for permission to use your location while the app is in use, solely to fill in your current coordinates for that code. This is optional — you can always enter coordinates manually — and your location is used on-device to build the code; it is not sent to us.
The one-time Design Tools Unlock and the optional subscriptions are processed entirely by Apple via the App Store. We never see or store your payment details. Apple’s privacy policy governs those transactions.
Static QR codes are created entirely on your device (or in your browser on qrft.app). Nothing you enter to build them is transmitted to us unless you turn on sync or save them to your account (section 3).
If you choose to create dynamic codes (an optional, subscription feature), the following applies:
This data exists only to power your editable redirects and scan analytics, and is tied to an anonymous code identifier. If you only ever make static codes, none of this applies to you.
To learn which features help people and to find crashes, QRAFT sends anonymous usage statistics to our own server (hosted on Supabase). This is our own first-party system — no third-party analytics or advertising SDK is involved. The app identifies itself only with a random installation ID that is created on your device and is deleted together with the app.
What is sent:
What is never sent: your name, email, phone number or address; your location; the advertising identifier (IDFA) or vendor identifier (IDFV); prices, receipts or transaction IDs; and anything you type or create — QR content, labels, URLs, contacts or Wi-Fi passwords. Your IP address is not stored or used.
Retention: usage statistics are kept for 13 months (crash and performance diagnostics for 6 months), then deleted.
Turn it off: Settings → Privacy → Share Usage Data. When off, nothing is collected or sent, and anything not yet sent is deleted from your device.
Delete it: copy your Installation ID from Settings → Privacy and email it to essentialdevteam@gmail.com; we will delete everything linked to it.
The app includes an in-app delete account function that permanently removes your account, your dynamic codes, and their scan analytics from our backend. You can also request deletion at any time by emailing essentialdevteam@gmail.com.
QRAFT is not directed at children under 13 and does not knowingly collect data from them.
If this policy changes, the updated version will be posted at this URL with a new date.
Questions? Email essentialdevteam@gmail.com.