Privacy Policy
Last updated 15 July 2026 — current as of the personal test phase (Hushbridge v0.1, "only me"). Controller: Ashwani Sharma, Kreuzhofstraße 10, 81476 München, Germany — see the Imprint for full legal details.
This policy covers the service as it runs today for a small group of testers. It will be expanded (billing, additional sub-processors, formal DPIA/ROPA) before any public multi-user launch.
What Hushbridge does
Hushbridge lets object owners create QR codes so that anyone can contact them without either side revealing personal contact details. To provide this, we relay messages between visitors and owners.
- Visitors don't need an account. We don't store your raw IP address.
- Messages are encrypted in transit and at rest and are automatically deleted (default: 90 days).
- We only store a visitor's contact details if the visitor types them in.
- Hushbridge is a relay, not end-to-end encrypted — our systems process message content to deliver it and to filter spam.
- We host in AWS Frankfurt (Germany, eu-central-1) and sell no data to anyone.
If you are a visitor (you scanned a tag)
| Data | Purpose | Retention |
|---|---|---|
| Message text you send | Delivering your message to the tag owner | Until owner deletes, max. retention set by owner (default 90 days) |
| Contact details you optionally enter | Letting the owner contact you back | Same as the message; you choose whether to provide it at all |
| Photos, videos, or PDFs you attach | Delivery to the owner. Photos/videos are re-encoded and stripped of embedded metadata (e.g., GPS/EXIF) before delivery | Same as the message |
| Rate-limit signal: salted, daily-rotating hash of your IP | Abuse and spam prevention | Hash rotates daily; never stored as raw IP |
| Anti-bot check (Cloudflare Turnstile) | Blocking automated abuse before your message is accepted. Your browser connects directly to Cloudflare, which receives your IP address for this check | Processed by Cloudflare, not stored by us |
| Email address (coming-soon waitlist) | Notifying you when public signup opens. Joining the waitlist does not create an account or grant access | 12 months, then automatically deleted — or sooner on request via the contact below |
We do not set advertising/analytics cookies, fingerprint your device, store your raw IP address, or require any identity from you.
If you are an owner
| Data | Purpose | Retention |
|---|---|---|
| Email address, passkey login data | Account and message notifications | Life of account |
| Tag configuration, incl. any contact values you choose to disclose | Providing your contact page — anything set to "disclose" is public to anyone who scans that tag | Life of tag |
| Received messages | The service itself | Per your retention setting |
No billing or payment data is collected yet — accounts are free during this test phase. This section will be updated before any paid plan is introduced.
What "anonymous" means here — and its limits
We shield both sides' contact details in relay mode. Relay content is encrypted at rest; our systems can technically decrypt it to deliver notifications and filter spam. Hushbridge is not end-to-end encrypted. We may be legally required to disclose stored data to authorities upon valid legal order — because we minimize what we store, what can be disclosed is correspondingly minimal.
Where data is stored
All service data is stored with Amazon Web Services in the eu-central-1 (Frankfurt, Germany) region, encrypted at rest and in transit.
Sub-processors
| Provider | Purpose | Location |
|---|---|---|
| Amazon Web Services EMEA SARL | Hosting, storage, email delivery | EU (Frankfurt) |
| Cloudflare, Inc. (Turnstile) | Bot protection on the send form | EU/US; SCCs + EU–US Data Privacy Framework |
Current list always at this page; updated as sub-processors (e.g. a payments provider) are added in later phases.
Your rights (GDPR Art. 15–21, 77)
Access, rectification, erasure, restriction, portability, objection, and withdrawal of consent — contact privacy@zxcv32.com. You may lodge a complaint with a supervisory authority; for Bavaria, the responsible authority is the Bavarian State Office for Data Protection Supervision (BayLDA), Ansbach.
Children
The service is not directed at children under 16.