Back to PeekInside

Privacy Policy

Last updated 26 July 2026

Plain version: we collect what's needed to run dynamic QR codes and show you who scanned them. We don't sell it.

Who we are

PeekInside (“we”) provides dynamic QR codes at peekinside.io. For privacy questions, email privacy@peekinside.io.

What we collect

Account data

  • Your email address and an authentication record, so you can sign in.
  • Sign-in timestamps and the IP address a sign-in came from, for account security.
  • Billing identifiers from Stripe if you subscribe. We never see or store card numbers.

Content you create

  • Everything you put in a code — titles, checklists, box contents, stock counts, contact details, files you upload, and link destinations.

Scan data

When someone scans one of your codes we record the scan so you can see your own analytics. That record includes:

  • The time of the scan and which code was scanned.
  • The scanner's IP address, and the approximate location derived from it (country, region/state, city, and coarse coordinates).
  • Device type and browser user agent.
  • The referring page, when the scan came from a link rather than a camera.

This is visible to the owner of the code and to nobody else. If you print PeekInside codes on things other people scan, you are the controller of that scan data and should tell them you collect it.

Why we collect it

  • To route a scan to the right destination — the core of the service.
  • To show you analytics for codes you own.
  • To help you identify unauthorised access to something you labelled — for example a container that went missing and was later scanned.
  • To bill you, if you're on a paid plan.
  • To detect abuse and keep the service up.

What we don't do

  • We don't sell personal data.
  • We don't run advertising networks or third-party ad trackers on scan pages.
  • We don't read the contents of your codes except as needed to serve them.

Who we share it with

Only the processors needed to run the product:

  • Supabase — database, authentication and file storage.
  • Vercel — hosting, edge routing and the geolocation attached to a scan.
  • Stripe — payments, for paid plans only.

We also disclose data where we're legally required to.

How long we keep it

  • Account and content data: until you delete it or close your account.
  • Scan records: retained while the code exists. Deleting a code deletes its scans.
  • Billing records: as long as tax and accounting rules require.

Your rights

Depending on where you live you may have the right to access, correct, export or delete your personal data, and to object to certain processing. You can export your scan log from the Reporting page at any time, and delete codes or your whole account from the dashboard. For anything else, email privacy@peekinside.ioand we'll respond within 30 days.

Cookies

We use a session cookie to keep you signed in and a preference cookie to remember light or dark mode. There are no advertising or cross-site tracking cookies.

Children

PeekInside isn't intended for anyone under 13, and we don't knowingly collect their data.

Changes

If we change this policy materially we'll update the date above and notify account holders by email.