Last updated: 12-05-2026 Effective date: 12-05-2026
ScanPerks (“ScanPerks,” “we,” “us,” or “our“) respects your privacy and is committed to protecting the personal information you share with us. This Privacy Policy explains how we collect, use, disclose, and safeguard information when you visit our website, use our platform, or interact with our services (collectively, the “Services“).
By using our Services, you agree to the practices described in this Privacy Policy. If you do not agree, please do not use the Services.
1. Who This Policy Applies To
ScanPerks provides a referral and loyalty marketing platform used by businesses such as restaurants, cafes, bars, venues, salons, fitness studios, and retail businesses (each a “Business Customer“) and their end customers (“Participants“).
- If you are a Business Customer, we act as the data controller of the personal information you provide directly to us when creating an account, managing campaigns, or making payments.
- If you are a Participant who scans a QR code, joins a referral campaign, or earns rewards through a Business Customer using ScanPerks, we generally act as a data processor on behalf of that Business Customer. The Business Customer’s own privacy policy governs how your information is collected and used. We process your information according to our agreements with the Business Customer and as described in this Policy.
2. Information We Collect
We collect information in the following ways.
a) Information You Provide Directly
- Account information: name, email address, phone number, business name, business address, role, and password.
- Billing information: payment card details (processed by our payment processor — we do not store full card numbers), billing address, and transaction history.
- Campaign content: logos, brand assets, reward descriptions, promotional copy, and QR campaign settings.
- Communications: messages you send to support, feedback, survey responses, and information you share when reporting issues.
b) Information Collected Automatically
When you use the Services, we automatically collect:
- Device and technical data: IP address, browser type, operating system, device identifiers, and language preferences.
- Usage data: pages viewed, features used, time spent, click paths, referral chains, scan events, and conversion outcomes.
- Location data: approximate location derived from IP address. We do not collect precise GPS location unless you explicitly enable it.
- Cookies and similar technologies: see our Cookie Policy for details.
c) Information from Participants (Referral & Loyalty Data)
When a Participant scans a ScanPerks QR code or joins a campaign, we may collect:
- Name, email address, or phone number (depending on what the Business Customer requires).
- Referral source, referral link history, and which Participant referred them.
- Reward eligibility, points balance, redemption history.
- Engagement data such as scans, shares, and conversions.
d) Information from Third Parties
We may receive information from:
- Social media platforms when Participants share campaigns publicly.
- Payment processors confirming transaction status.
- Analytics and fraud-prevention providers.
- Business Customers who upload customer lists or import contacts.
3. How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain the Services.
- Create and manage your account.
- Process referrals, calculate rewards, and credit points or perks.
- Generate dashboards, analytics, and reports for Business Customers.
- Process payments and send invoices.
- Send service-related communications (account notifications, security alerts, policy updates).
- Send marketing communications where permitted by law and where you have not opted out.
- Detect, investigate, and prevent fraud, abuse, and security incidents.
- Comply with legal obligations and enforce our Terms of Service.
- Improve our Services, develop new features, and conduct research and analytics.
We do not sell your personal information. We do not use Participant data to train AI models or share it with unrelated third parties for their own marketing.
4. Legal Bases for Processing (GDPR / UK GDPR)
If you are in the European Economic Area, United Kingdom, or another jurisdiction with similar laws, we rely on the following legal bases:
- Contract: to provide the Services you or the Business Customer requested.
- Legitimate interests: to operate, secure, and improve our Services, prevent fraud, and conduct analytics, balanced against your rights.
- Consent: for marketing communications, non-essential cookies, and certain optional features. You can withdraw consent at any time.
Legal obligation: to comply with applicable laws, tax requirements, and lawful requests from authorities.
5. How We Share Information
We share information only as described below.
- With Business Customers: Participant data (such as scans, referrals, contact info, and rewards activity) is shared with the Business Customer running the campaign.
- With service providers: hosting, cloud storage, analytics, email delivery, payment processing, customer support, and fraud prevention vendors who process data on our behalf under contractual safeguards.
- With professional advisors: lawyers, auditors, and accountants when reasonably necessary.
- For legal reasons: to comply with laws, valid legal process, or to protect the rights, property, or safety of ScanPerks, our users, or others.
- In business transfers: in connection with a merger, acquisition, financing, or sale of assets, subject to standard confidentiality protections.
- With your direction: when you instruct us to share information (for example, by posting publicly or sharing a referral on social media).
6. International Data Transfers
ScanPerks may store and process information in countries other than the one in which you live. When we transfer personal data internationally, we use appropriate safeguards such as Standard Contractual Clauses, adequacy decisions, or equivalent legal mechanisms.
7. Data Retention
We keep personal information only as long as necessary for the purposes described in this Policy, including:
- For active Business Customers: for the duration of the account and a reasonable period afterward.
- For Participants: as instructed by the Business Customer, and as needed to administer rewards, prevent fraud, and meet legal obligations.
- For billing records: typically 7 years, or as required by applicable tax and accounting laws.
When data is no longer needed, we delete or anonymize it.
8. Your Rights
Depending on your location, you may have the right to:
- Access the personal information we hold about you.
- Correct inaccurate or incomplete information.
- Request deletion of your information (“right to be forgotten”).
- Restrict or object to certain processing.
- Request a portable copy of your information.
- Withdraw consent at any time.
- Lodge a complaint with a data protection authority.
California residents also have rights under the CCPA/CPRA, including the right to know, delete, correct, and limit the use of sensitive personal information, and the right not to be discriminated against for exercising these rights.
To exercise your rights, email us at privacy@scanperks.com. If you are a Participant in a Business Customer’s campaign, we may direct your request to that Business Customer, who is the controller of your data.
We will respond within the timeframes required by applicable law.
9. Security
We use administrative, technical, and physical safeguards to protect personal information, including encryption in transit, access controls, secure hosting, and regular security reviews. No system is perfectly secure, so we cannot guarantee absolute security, but we work to protect your information using industry best practices.
10. Children's Privacy
The Services are not directed to children under 16, and we do not knowingly collect personal information from children under 16. If you believe a child has provided us with personal information, contact us and we will delete it.
11. Third-Party Links
Our Services may include links to third-party websites or platforms. We are not responsible for the privacy practices of those sites. We encourage you to review their privacy policies before sharing any information.
12. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by posting the updated version with a new “Last updated” date, and where appropriate, through email or in-app notice. Your continued use of the Services after the changes take effect constitutes acceptance of the updated Policy.
13. Contact Us
If you have questions about this Privacy Policy or our data practices, contact us at:
ScanPerks Email: privacy@scanperks.com
For EU/UK residents, you may also contact our Data Protection Officer (if applicable) at dpo@scanperks.com.