Trust center
Security, privacy and reliability
A public summary of current security controls, data handling, operating limits, legal documents and third-party service roles.
Security controls
- Private R2 objects delivered by short-lived signed URLs
- HttpOnly Cookie + BFF trust boundary for production sessions
- Creem webhook signature verification and idempotent entitlement grants
- Automated multi-decoder scan validation at original and the selected validation size before delivery
- Blind watermarking for traceability before delivery validation
- Feedback form anti-abuse throttling and operator audit records
Privacy controls
- Trial QR payload points to Magic QR Studio; formal payload is locked until unlock
- Formal payloads are encrypted at rest when stored internally
- Purchase-consent records keep the legal version, accepted wording, timestamp, IP/location when available and a hashed user agent
- Retention cleanup removes expired works and time-limited operational records; billing, refund, dispute and legal evidence is retained only as needed
Operating limits
- Uploads are limited to 30 MB, 6000×6000 pixels and 36 megapixels.
- GIF processing is limited to 30 seconds and 600 frames; anything beyond the supported range is disclosed before processing.
- Static batch requests are capped at 100 items, and the current plan may impose a lower limit.
- Private downloads use short-lived links, and work retention varies by plan.
Compliance documents
Service providers, independent controllers and optional integrations
This list reflects the current project architecture. Optional services operate only when enabled in deployment configuration.
- Cloudflare: DNS, CDN, WAF, Turnstile, R2 private storage and optional Workers AI safety screening
- Zeabur: Web, API, workers, PostgreSQL and Redis hosting
- Creem: Merchant of record for checkout, tax, invoices, refunds, chargebacks and payment webhooks
- Zoho: Transactional email and magic-link login via [email protected]
- Google: Optional Google OAuth sign-in, optional Vision image safety screening and optional Safe Browsing URL checks
- Sentry: Optional minimised error and performance monitoring when configured
- Brevo: Optional transactional-email provider when configured