Dotwoven / Legal
Privacy Policy
Last updated September 27, 2026
This policy explains what information Dotwoven collects when you use the website and how it is used. Dotwoven is designed to collect as little as possible.
Your logo and link stay in your browser
QR codes are generated, checked, and exported entirely in your browser. The logo you upload and the URL you encode are never sent to our servers.
Information we collect
- Account information. When you sign up with email we store your email address and a securely hashed password. When you sign in with Google we receive your name, email address, and profile picture from Google.
- Session cookies. Cookies keep you signed in. They are required for sign-in to work and are not used for advertising.
- Server logs. Our hosting provider records standard request data such as IP address, browser type, and time of request for security and reliability.
Information stored on your device
If you click Generate before signing in, your current design (link, logo, and settings) is saved in your browser's local storage so it can be restored after sign-in. It is deleted after your QR code is generated and expires after 24 hours. It never leaves your device.
How we use information
We use your information only to provide sign-in, send account emails (such as confirmation and password reset), keep the service secure, and respond to you. We do not sell your information or use it for advertising.
Service providers
- Supabase — authentication and account storage.
- Vercel — website hosting.
- Google — only if you choose to sign in with Google.
Retention and your choices
We keep account information while your account exists. You can ask us to access, correct, or delete your account and its data at any time by contacting us.
Changes
If we change this policy, we will update the date at the top of this page.
Contact
Questions? Reach out on X.