Camera and QR Policy
This policy explains how Toqen.app uses the device camera and processes QR codes for authentication and access.
TL;DR
- The camera is used only for scanning QR codes required for authentication.
- No photos, videos, or audio are recorded, stored, or transmitted.
- QR codes contain temporary authentication data and are processed securely.
- User interaction is required for all access confirmations.
- Camera access can be denied, but QR-based authentication will not be available.
No Recording
Toqen.app does not record, capture, store, or share photos, videos, or audio. The camera is used strictly for real-time QR code scanning.
Background Usage
The camera is never accessed in the background. Camera usage occurs only when the user explicitly opens the QR scanning feature.
Camera Data Processing
Camera input is processed in real time on the device and is not used to collect personal data. No visual data is stored, transmitted, or analyzed beyond QR decoding.
Camera Usage
Toqen.app uses the device camera exclusively for scanning QR codes as part of the authentication and access flow.
- The camera is activated only when the user initiates a scan.
- Camera input is processed in real time solely to detect and decode QR content.
- The application does not capture, store, or transmit photos or video recordings.
- Camera access is not used for background activity.
QR Code Processing
QR codes scanned within Toqen.app contain structured data used to initiate authentication requests.
- QR codes may include request identifiers, temporary challenges, and service-related metadata.
- QR data is processed locally on the device to initiate the authentication flow.
- Authentication requires explicit user confirmation before any action is performed.
- QR codes are designed to be short-lived and valid only for a limited time.
Data Handling
QR-related data is handled securely and only used for the purpose of authentication.
- QR content is not stored after processing unless required for active authentication.
- Only minimal authentication data required to complete the request is transmitted. No raw camera data or images are ever transmitted.
- Sensitive operations require explicit user interaction and confirmation.
Permissions
Camera access requires user permission granted through the operating system. Camera permission is requested solely to enable QR-based authentication functionality.
- Users can grant or deny camera access at any time through device settings.
- If camera access is denied, QR-based authentication features will not be available.
- The application does not attempt to bypass or override user permission settings.
Security Considerations
- QR codes are designed to be single-use or time-limited to reduce misuse.
- Authentication is based on device verification and cryptographic signatures.
- All sensitive actions require explicit user approval within the application.
- Users should only scan QR codes from trusted sources.
Limitations
- The application cannot guarantee the authenticity of third-party QR codes.
- Users are responsible for verifying the source of QR codes before scanning.
- Misuse of QR codes outside intended authentication scenarios may lead to unauthorized access attempts.
Changes to this Policy
This policy may be updated to reflect changes in functionality or legal requirements. The latest version will be published with an updated date.
Contact
| Service | Toqen.app |
| hi@toqen.app |