Summary

TL;DR What stays, what leaves

  • Stays on device: the text you encode, your generated codes, your scan/create history (stored locally), and any code you scan with the camera.
  • Leaves the device, only when you act: the single photo you submit for an Authenticity Check (sent to our analysis service to build your report), and your App Store purchase receipt (sent to validate a subscription or purchase).
  • We do not ask you to create an account, and we do not use your data to track you across other apps or websites. We show no ads, do not use the advertising identifier (IDFA), and no advertising or attribution SDK runs or sends data in the app.
  • iOS permissions we may request: Camera, Photos (Add Only), Contacts, and Calendar — each only for the action you choose.

Effective date: June 8, 2026

Details

1. On-device by default

Creating QR codes and barcodes, scanning codes with the camera or from a photo, and your history all run on your iPhone. The text you type (URLs, Wi-Fi passwords, contact details, etc.), the codes you generate, and the codes you scan are processed locally and saved only in a local Realm database inside the app's sandbox. They are never uploaded and are removed when you delete the app.

2. Data we send off your device

Authenticity Check photo When you use the Authenticity Check, you take or choose a photo, crop the item, and tap Submit. At that moment — and only then — the app sends that single cropped image (plus a request type) to our automated, AI-assisted image-analysis service, operated by LeadSphere at www.leadsphere.app, so it can generate your report. We do not attach your name, account, device identifier, IDFA, or contacts. Live camera frames are never recorded or uploaded automatically.

Purchase receipt If you buy a subscription or the lifetime option, Apple processes the payment. To confirm and restore your purchase, the app sends your App Store receipt, the app's bundle identifier, and your App Store country/region code to our server at www.leadsphere.app. We never receive your card number or full Apple ID.

App configuration & diagnostics The app uses Google Firebase to fetch remote configuration for the subscription screen, and Firebase Analytics to collect usage data, diagnostic / crash information, and a Firebase installation / app-instance identifier. We use this only to understand how the app is used and to improve it — never to build an advertising profile, and never shared with data brokers.

We ask our analysis service to process your submitted photo only to produce your report and not to use it to identify you. To request deletion of a submitted photo or receipt record, email us (see "Contact").

3. iOS permissions we use

  • Camera — to scan QR codes / barcodes and to capture a photo for an Authenticity Check.
  • Photos · Add Only — requested only when you tap "Save", to write a generated code image to your library. We do not read your existing photos.
  • Contacts — only if you choose to add a scanned or created contact card.
  • Calendar — only if you choose to add an event from a QR code.

Choosing a photo from your library uses the system photo picker, which hands the app only the single image you select — the app never browses your library.

4. We do not track you

QBCode does not show the App Tracking Transparency prompt, does not read the advertising identifier (IDFA), and does not link an advertising or attribution profile to you. We do not sell your data, and we do not combine it with data from other companies' apps or websites for advertising.

5. Service providers & third parties

  • LeadSphere, Inc. — our own backend, which receives the Authenticity Check photo and the purchase receipt described in section 2.
  • Apple — processes subscription and in-app purchases and provides the App Store receipt.
  • Google Firebase — Remote Config (subscription screen settings) and Firebase Analytics (usage data, diagnostics, and an app-instance identifier) described in section 2.

On-device open-source libraries (e.g. SnapKit, RealmSwift, lottie-ios, Alamofire, the QRCode renderer) run locally; Alamofire is the networking library that carries the uploads in section 2.

6. Children's privacy

QBCode is rated 4+ and is not directed to children. We do not knowingly collect personal information from children. Please submit only photos of products/items for an Authenticity Check, not photos of people.

7. Data retention & deletion

Everything stored locally (history, settings) is deleted when you delete the app. For data sent to our server (a submitted photo or a purchase receipt record), you can request deletion by emailing us. Purchase records may be retained as needed to support refunds, fraud prevention, and legal obligations.

8. Changes to this policy

If we change what QBCode does with your data, we will update this page and the effective date above, and highlight material changes in the app.

9. Contact

Questions, or a deletion request? Email support@leadsphere.app. We typically reply within two business days.

一句话总结

TL;DR 什么留下、什么离开

  • 留在设备:你编码的文本、生成的码、扫码 / 创建历史(本地保存),以及你用相机扫到的任何码。
  • 仅在你操作时离开设备:你提交「正品验真」的那一张图片(发送到我们的分析服务以生成报告),以及你的 App Store「购买收据」(用于校验订阅 / 购买)。
  • 我们要求你注册账号,用你的数据在其他 App 或网站上追踪你。不展示广告,不使用广告标识(IDFA),App 内也没有任何广告或归因 SDK 在运行或发送数据。
  • 可能申请的 iOS 权限:相机照片(仅添加)通讯录日历 —— 每项都只为你选择的那个动作。

生效日期:2026 年 6 月 8 日

详细说明

1. 默认在本机运行

生成二维码 / 条码、用相机或相册图片扫码、以及历史记录,均在你的 iPhone 上完成。你输入的文本(网址、Wi-Fi 密码、联系人信息等)、你生成的码、你扫到的码,都在本地处理,仅保存在 App 沙盒内的本地 Realm 数据库中,永不上传,卸载即清除。

2. 会离开你设备的数据

验真图片 使用「正品验真」时,你拍照或选图、裁出物品、点「提交」。就在那一刻(且仅在那一刻),App 会把那一张裁剪后的图片(外加一个请求类型)发送到我们由 LeadSphere 运营、位于 www.leadsphere.app 的自动化 AI 图像分析服务,以生成你的报告。我们附带你的姓名、账号、设备标识、IDFA 或通讯录。相机预览帧绝不会被自动录制或上传。

购买收据 当你购买订阅或终身版时,由 Apple 处理付款。为确认与恢复购买,App 会把你的 App Store收据、App 的包标识符、以及你的 App Store国家 / 地区码发送到我们位于 www.leadsphere.app 的服务器。我们绝不会收到你的卡号或完整 Apple ID。

配置与诊断 App 使用 Google Firebase 拉取订阅页的远程配置,并通过 Firebase Analytics 收集用量数据、诊断 / 崩溃信息,以及一个 Firebase 安装 / 应用实例标识。我们仅用其了解 App 的使用情况并加以改进 —— 绝不用于构建广告画像,也绝不提供给数据商。

我们要求分析服务仅为生成报告而处理你提交的图片,不用其识别你本人。如需删除已提交的图片或收据记录,请来信(见「联系我们」)。

3. 我们使用的 iOS 权限

  • 相机 —— 用于扫描二维码 / 条码,以及拍摄正品验真照片。
  • 照片 · 仅添加 —— 仅在你点「保存」时申请,把生成的码图写入相册;我们不读取你的现有照片。
  • 通讯录 —— 仅当你选择添加扫描到或创建的联系人名片时。
  • 日历 —— 仅当你选择由二维码添加事件时。

从相册选图使用系统照片选择器,只把你选中的那一张交给 App —— App 不会浏览你的相册。

4. 我们不追踪你

QBCode 不弹出 App 追踪透明度(ATT)提示,不读取广告标识(IDFA),不把广告或归因画像关联到你本人。我们不出售你的数据,也不会为广告目的把它与其他公司 App 或网站的数据合并。

5. 服务提供方与第三方

  • LeadSphere, Inc. —— 我们自有的后端,接收第 2 节所述的验真图片与购买收据。
  • Apple —— 处理订阅与内购,并提供 App Store 收据。
  • Google Firebase —— 远程配置(订阅页设置)与第 2 节所述的 Firebase Analytics(用量数据、诊断,以及一个应用实例标识)。

本机运行的开源库(如 SnapKitRealmSwiftlottie-iosAlamofire、二维码渲染库)在本地运行;Alamofire 是承载第 2 节上传的网络库。

6. 未成年人隐私

QBCode 分级为 4+,并非面向儿童。我们不会在知情下收集儿童个人信息。请仅提交物品 / 商品的照片用于正品验真,而非人物照片。

7. 数据保留与删除

所有本地保存的数据(历史、设置)会在你删除 App 时一并删除。对于发送到我们服务器的数据(已提交的图片或收据记录),你可来信申请删除。购买记录可能因退款支持、反欺诈与法律义务而在必要范围内保留。

8. 政策变更

若我们对数据的使用方式发生变化,会更新本页与上方「生效日期」,并在 App 内显著提示重大变更。

9. 联系我们

有疑问或删除请求?请邮件至 support@leadsphere.app,我们通常在两个工作日内回复。