QWANTI TRUST CENTER

Privacy policy

How this individually owned portal handles visits, inquiries, product waitlists and account security.

Version:

Data controller and scope

The individual named in the owner/contact section below is the controller. This policy covers qwanti.app and its Control Center, not the separate operation of Kid Shield or an external advertiser's service.

What we collect and why

Website delivery and security: hosting providers process network data such as IP address and request information to deliver the site and prevent abuse. The basis is our legitimate interest in a secure website (GDPR Article 6(1)(f)).

Waitlists: email, product, language, consent version, status and time are recorded when you request that product's updates. Product ideas/feature requests: your text, priorities, approximate budget and optional email help us assess the requested solution. Sponsor inquiries: the name, email, partnership category and message you provide let us respond. These forms use your specific consent (Article 6(1)(a)), not permission for unrelated marketing. Required fields are marked; you may browse without submitting anything.

Inquiry text is not automatically published. Contact emails are encrypted separately. Do not include sensitive information, other people's data or children's details in free text. Submission is not a purchase or contract.

Affiliate attribution

After you deliberately follow a labelled advertisement link, QWANTI records an opaque click reference, offer/program, source page, permitted campaign labels, language and time. Commission reconciliation and abuse prevention are legitimate interests (Article 6(1)(f)). The application's click record does not include an IP address, email or visitor cookie. Hosting infrastructure and external advertisers may still process network data.

Partner-ads supplies program information, clicks and transaction/commission status for reconciliation; cancellations reduce attributed earnings. Advertisers and networks process visits under their own notices, including any consent needed for their cookies. We do not send them QWANTI waitlists or inquiry mailing lists.

Owner login

Control Center stores account details, password hashes, sessions, passkey public keys and security/audit records to protect administration (Article 6(1)(f)). Your device handles Face ID, fingerprint or PIN. QWANTI never receives or stores face images, fingerprints, device PINs or biometric templates. Owner recovery codes are hashed and shown once.

Providers and international processing

Cloudflare provides website delivery, security and encrypted backup storage; Neon provides PostgreSQL configured in Frankfurt, Germany. Both use their published data-processing terms and subprocessors. Cloudflare's edge network is global; Frankfurt database placement does not mean all processing stays in the EEA. Applicable transfer safeguards include the contractual protections and transfer mechanisms in the providers' data-processing agreements. Contact the controller for the applicable safeguards.

No sale of contact lists, external social publishing or advertising pixel is enabled by this policy. External services have their own privacy notices.

Retention and deletion

Requests are retained while their purpose remains current: while a waitlist is relevant, an inquiry is handled or a submitted need is under review. The owner reviews identifiable records when a purpose ends or consent is withdrawn and deletes or anonymises unnecessary contact data and identifying free text. Security/commission records may be retained where necessary to investigate abuse, reconcile transactions or meet a specific legal duty; they must not become an unrelated marketing list.

Encrypted operational backups expire after seven days; Neon Free recovery history is configured to six hours. Deleted data can remain in protected backups until expiry. After restoring a backup, recorded deletions must be reapplied before normal use. Backups are not used for ordinary marketing or analytics.

Your choices and rights

Withdraw consent at any time through the contact email; this does not affect lawful processing before withdrawal. Request access, correction, deletion, restriction or portability where applicable, or object to processing based on legitimate interests. Include the relevant reference or contact email, not ID documents by default. We normally respond within one month, subject to the GDPR's permitted extensions. You may complain to Datatilsynet (datatilsynet.dk) or your competent supervisory authority.

The portal makes no solely automated decisions with legal or similarly significant effects on you. Internal demand scoring suggests product priorities, not decisions about your rights. Forms target adults; children are not invited to create accounts or submit personal information.

Individual owner / data controller

Bill Harlsby
Vemmedrupvej 199
4632 Bjæverskov
Danmark
harlsbybill@gmail.com