Data & privacy
Esta página aún no está disponible en tu idioma.
What AuthPlus records, where it goes, and how long it stays. Read this before deploying the app to customers.
What a verification records
Section titled “What a verification records”Every completed scan or transfer writes one permanent line to the audit trail:
| Recorded | Detail | Visible to |
|---|---|---|
| What was scanned | The code, and the item it belongs to when it is recognised | The code’s owner, administrators |
| The result | Authentic, a warning, or the reason it failed | Same |
| When | Server timestamp | Same |
| Who | The verifier profile | Same |
| The device | A stable device identifier, plus manufacturer, model and operating system | Same |
| Where | Network address, resolved town or city, and precise coordinates when location is used | Same |
How location is determined
Section titled “How location is determined”| Source | When used | Precision |
|---|---|---|
| Device location (GPS) | When the verifier type requires it, and permission is granted | Precise — the actual position of the scan |
| Network address | Otherwise | Approximate — typically the town or the internet provider’s location |
Files and documents
Section titled “Files and documents”- Uploaded files — logos, product images, certified documents — are stored unchanged, in their original form. They are not resized or re-encoded, so any metadata they contain (including photograph location data) is preserved.
- Certified content is additionally fingerprinted, and that fingerprint is what verification compares.
- When you verify a file from your own device, the file is not uploaded — only its fingerprint is sent. Verifying a link is different: the server downloads the file to fingerprint it.
Retention, archiving and deletion
Section titled “Retention, archiving and deletion”AuthPlus is built to preserve evidence. The audit trail, in particular, is never edited or removed by the application.
| Record | Can be removed? |
|---|---|
| Operations (verifications and transfers) | No — permanent |
| Brands, products, assets, contents, items, issuances, codes | Archived only, never deleted |
| User accounts | Archived only |
| Warnings | Closed, not deleted |
| Verifier accounts | Archived only |
| Code types, print templates, verifier types | Archived only |
| Generated label documents | Yes — deleted along with the stored file |
| Prohibited-name entries | Yes |
Only two things can be removed outright, and neither is a record of anything: a generated PDF or CSV, which you can produce again at any time, and an entry on the prohibited-name blocklist. Everything else is archived.
Records are otherwise kept indefinitely: AuthPlus applies no automatic retention limit, and there is no self-service account deletion. Erasure requests are handled manually by the platform operator.
What is stored on your device
Section titled “What is stored on your device”| Stored | Why |
|---|---|
| A device identifier | Identifies the automatic verifier profile so scan history is continuous. |
| Verifier profiles and the active one | So you do not re-enter credentials at every launch. |
| Sign-in tokens | Keeps you signed in to the dashboard. |
| Language, theme, and the administrator’s owner filter | Preferences, per device. |
AuthPlus uses no analytics, no advertising and no tracking cookies, and loads no third-party fonts or scripts. The only external call made by the app is the location lookup described in How location is determined.
Removing a verifier profile in the app removes it from that device only; the account and its history remain on the server.
Getting your data out
Section titled “Getting your data out”Codes can be exported as CSV per issuance (Labels & exports), and label sheets as PDF. There is no bulk export of operations, catalogue or account data from the interface — an operator with database access can produce one on request.