Privacy Policy & Zero-Data Guarantee
Last Updated: August 21, 2026 • Plain-language explanation of our strict 100% client-side privacy architecture.
1. Introduction & Privacy Ethos
At UPI QR Code Generator (operated under the WebPress Hub digital utility initiative by Laba Das), we believe financial utilities should treat user privacy as a fundamental engineering requirement, not an optional afterthought.
This Privacy Policy explains how our website handles your information when you access, generate, preview, and download UPI payment QR codes, as well as when you contact us for technical support.
2. 100% Client-Side Architecture (Zero Server Storage)
Traditional web applications send your form inputs to a remote server where backend scripts render images and store your data in a database.
Our generator is engineered with an entirely different architecture:
- Local Execution: When you enter your Virtual Payment Address (VPA / UPI ID), payee name, preset amount, or transaction memo, the compiled
upi://payURI and corresponding QR matrix are created entirely by your device's browser using local, self-hosted JavaScript (qrcode.min.js). - Zero API Network Calls: Not a single byte of your financial input is transmitted over the internet to our web server, cloud databases, or third-party analytics endpoints.
- Offline Functionality: Once the webpage assets are loaded into your browser cache, you can turn on Airplane Mode or disconnect from the internet and continue generating, customizing, and downloading QR codes indefinitely.
3. No Financial Intermediation or Payment Interception
We are strictly an independent open-standard utility. We do NOT act as a payment gateway, payment aggregator, or banking intermediary:
- When a customer scans your printed or digital QR code using Google Pay, PhonePe, Paytm, BHIM, or any bank app, the payment executes directly across the NPCI UPI switch into your linked bank account.
- No customer funds ever pass through our accounts or intermediary escrows.
- We never receive transaction confirmation notices, settlement webhooks, customer phone numbers, or account balances.
4. Information We Do NOT Collect
To maintain our zero-data commitment, we actively avoid collecting any of the following:
- We do not collect or store UPI IDs (VPAs).
- We do not collect or store merchant personal names or trading entity names.
- We do not record billed amounts, transaction remarks, or invoice numbers.
- We do not use persistent advertising cookies, cross-site trackers, or marketing pixels.
- We do not require user registration, email logins, password credentials, or OTP verification.
5. Contact Form Submissions
If you voluntarily submit an inquiry, bug report, or feature suggestion via our Contact Page, we collect the submitted name, email address, topic, and message text.
This communication data is handled strictly as follows:
- Used exclusively to reply to your technical question or address your feedback.
- Never added to any promotional email marketing list or newsletter.
- Never sold, rented, leased, or shared with any third-party marketing entities.
6. Standard Technical Web Server Logs
Like almost all websites on the internet, our hosting infrastructure automatically records basic technical connection logs when your browser requests static asset files (HTML, CSS, JS, SVG icons).
These logs may include your IP address, browser user-agent, referring URL, and timestamp. These logs are used purely for:
- Diagnosing server performance bottlenecks and network latency.
- Protecting against automated DDoS attacks and malicious web scrapers.
- Maintaining general server uptime and HTTP error tracking.
Technical server logs are never linked to individual user identities or QR generation activity and are periodically purged during routine server log rotations.
7. Compliance with Indian Digital Privacy Standards (DPDPA 2023)
In accordance with the Digital Personal Data Protection Act (DPDPA 2023) of India and international data minimization principles, our service is designed from the ground up on the principle of Data Minimization by Default. By processing financial parameters exclusively in client memory, no personal digital data is retained or processed on our backend.
8. External Links & Third-Party Applications
Our website may contain references or links to external websites and resources (such as NPCI documentation, bank portals, or tutorials). When you interact with third-party payment applications (such as Google Pay, PhonePe, Paytm, or BHIM) to scan and pay, your interactions are governed by their respective privacy policies and terms of service.
9. Policy Updates and Inquiries
We reserve the right to modify or refine this Privacy Policy as new browser capabilities or features are introduced. Any amendments will be reflected on this page with an updated revision date.
If you have any questions or privacy concerns regarding this policy, please reach out directly through our Contact Page.