Privacy Policy
Effective August 9, 2026
This Privacy Policy describes how CareOfID collects, uses, discloses and protects information through careofid.com, the CareOfID Android WebView application, QR codes, forwarding links and related administration tools.
Information you provide
- Account information, including name, email address, password hash and acceptance of current terms.
- Your chosen COID, public-profile settings, provider handles and website destinations.
- An optional E.164 phone number and optional profile image, together with your choices about making them public.
- Ownership-claim statements, evidence references, support communications and rights complaints.
- Payment and subscription references when paid services become available. Complete card details will be handled by the payment provider rather than stored by CareOfID.
Information collected automatically
Our servers receive IP address, browser or WebView user-agent, timestamps, requested pages, referral and operational information. We use these records for sessions, security, rate limiting, troubleshooting and audit purposes. For profile views, searches, provider forwarding and QR downloads, CareOfID stores event details and a salted daily pseudonymous visitor key derived from IP address and user-agent. The current analytics event does not store the text entered in the public search box.
Android WebView application
The CareOfID Android application loads the CareOfID website in a WebView and therefore processes the same information described here. The intended wrapper uses internet access and does not independently collect contacts, precise location, microphone recordings or advertising identifiers. Profile-image selection may invoke an Android system file or photo picker. The published app’s manifest, SDKs and Google Play Data safety declaration must be reviewed before every release and must match actual behavior.
How information is used
- Provide, authenticate and secure accounts and administrator access.
- Create, display, search and share COID profiles and destinations according to visibility choices.
- Deliver verification, password-reset, claim and operational messages.
- Review ownership, impersonation, fraud, infringement and policy complaints.
- Measure aggregate use, maintain reliability, prevent abuse and comply with law.
Public information
Your COID, display name and destinations are public unless the profile is restricted. A phone number or profile image is public only when you enable its public setting. Public information can be viewed, copied or indexed by others. Removing it from CareOfID may not remove copies made by third parties.
Disclosure and sale
CareOfID does not sell personal information and does not use it for interest-based advertising. Information may be disclosed to hosting, email, storage, security, analytics, customer-support and payment processors acting for CareOfID; to professional advisers; in a business transaction; to protect users, rights and service security; or when legally required. A rights complaint may be shared with the affected account holder to permit a fair response.
Cookies
CareOfID uses first-party session cookies needed for login, administrator authentication, security and CSRF protection. These cookies are not used for interest-based advertising. The current service does not require third-party advertising cookies.
Retention
Account, COID and public-profile information is retained while active and is removed or de-identified following verified account deletion, subject to limited legal, security, dispute and financial exceptions. Routine application logs are generally retained for 90 days; login and routine security events for 12 months; raw pseudonymous analytics for 13 months; ordinary support messages for two years; and administrator audits, closed claims and complaints, policy acceptance, privacy-request evidence, and transaction records for seven years. Daily backups expire after 35 days and monthly backups after 12 months.
After the applicable period, personal data is securely deleted or de-identified. Minimal anonymous complaint-decision, ownership-history, accounting and statistical records may be retained longer. Records within a documented legal hold are restricted and retained until the hold is released. CareOfID does not store complete payment-card numbers, CVV/CVC values or PIN data.
Security and international processing
CareOfID uses measures including HTTPS, password hashing, access controls, administrator MFA, private image storage and audit logging. No system is completely secure. Information may be processed in the United States and other locations used by service providers, subject to appropriate legal safeguards where required.
Your choices and rights
You can update profile information and public visibility from your dashboard. Depending on your location, you may have rights to access, correct, delete or obtain information, object to or restrict certain processing, or appeal a privacy decision. Identity verification may be required before fulfilling a request. To request account deletion, visit Account deletion.
Children
CareOfID is not directed to children under 13 and does not knowingly collect their personal information. Higher minimum ages or parental-consent requirements may apply in some countries. Contact CareOfID if you believe a child has submitted personal information.
Changes and contact
Material changes will be identified by a revised effective date and, where appropriate, an account notice or renewed consent. Privacy questions may be sent by email to info@careofid.com or through the Contact CareOfID form.