Privacy Policy
Last updated 2026-05-10
What we collect
- Account data, email address, hashed password, workspace metadata.
- Link data, short codes, target URLs, titles, and the user/workspace that owns them.
- Scan events, timestamp, hashed visitor IP (IPv4 truncated to
/24, IPv6 to/48), country code, coarse user-agent class. We do not store raw IP addresses. - API audit log, for keys you mint, we log request route, status, and timestamp to help you investigate issues.
What we do not collect
- We do not sell or share scan-event data with advertisers.
- Qrindo itself places no tracking cookies on visitors of your short links. If you connect your own Google Analytics, Google Tag Manager, Meta Pixel or TikTok Pixel to a link, that vendor's script runs on your page and their cookies are theirs, under your own privacy notice. A visitor whose browser sends Global Privacy Control or Do Not Track is excluded from those vendors entirely; your own scan analytics still counts them, without their address.
- We do not store full user-agent strings or precise locations.
Data retention
- Scan-event analytics, retained for up to 12 months (365 days) on every plan.
- Account & link data, retained while your account is active and deleted within 30 days of account closure.
- Encrypted database backups, retained for 30 days, then rotated out.
Subprocessors
A current list of subprocessors is available in the DPA.
Your rights
You may request export or deletion of your account data at any time by emailing [email protected]. We will respond within 30 days.
Who we are
Qrindo is operated under the Folowise name and acts as the data controller for account data and as a processor for the scan data you collect. For privacy questions or to exercise your rights, contact [email protected].