SafeScran – Global Privacy Policy

1. Introduction

This Privacy Policy explains how SafeScran (“we”, “us”, “our”) collects, uses, stores, and protects your personal data when you use the SafeScran mobile application, website, and related services (“SafeScran”).

We are committed to protecting your privacy and complying with all applicable data protection laws, including:

By using SafeScran, you agree to the practices described in this Privacy Policy.

2. Who We Are

SafeScran is currently operated by an individual as a solo, pre-registration project based in the United Kingdom. Formal company (Ltd) registration is planned ahead of the app's public launch, at which point this section will be updated with the registered company's details.

We act as the Data Controller for all personal data processed through SafeScran.

3. Data We Collect

3.1 Account Information

3.2 Usage Data

3.3 Technical Data

3.4 Restaurant Data

If you submit restaurant or menu information, we may store:

3.5 Location Data (Optional)

If enabled, we may collect approximate location to:

Location access is optional and can be disabled at any time.

4. How We Use Your Data

4.1 To Provide the SafeScran Service

4.2 Safety & Compliance

4.3 Service Improvement

4.4 Communication

We do not send marketing emails unless you explicitly opt in.

Under UK GDPR and EU GDPR, we rely on the following lawful bases:

5.1 Contract

To provide the SafeScran service you requested.

5.2 Legitimate Interests

For safety logging, fraud prevention, legal defence, and service improvement.

For optional features such as:

You may withdraw consent at any time.

6. Unverified Restaurant Data

When restaurant data is not confirmed by the restaurant:

This behaviour is disclosed here and in the Terms & Conditions.

7. How We Store Your Data

Your data is stored securely using:

We do not store passwords in plain text.

8. Data Sharing

8.1 Service Providers

Such as:

These providers act as Data Processors and must comply with GDPR.

8.2 Restaurants (Optional)

If you submit corrections or feedback, we may share anonymised information with restaurants.

We may disclose data if required by law or to protect user safety.

We never sell your data.

9. International Transfers

If data is transferred outside the UK or EU, we ensure:

10. Data Retention (Updated & Corrected)

SafeScran retains personal data only as long as necessary for the purposes described in this Privacy Policy. This includes retaining certain information after an account is deleted where required for:

Retention periods:

After retention periods expire, data is securely deleted or anonymised.

11. Your Rights

Depending on your location (UK, EU, or globally), you may have the right to:

To exercise your rights, contact: support@safescran.com

12. Children’s Privacy

SafeScran is not intended for children under 16. We do not knowingly collect data from children under this age.

13. Security

We use industry-standard security measures to protect your data, including:

No system is 100% secure, but we take all reasonable steps to protect your information.

SafeScran may contain links to third-party websites or services. We are not responsible for their privacy practices.

15. Changes to This Policy

We may update this Privacy Policy periodically. Continued use of SafeScran after updates means you accept the revised policy.

16. Contact

For privacy questions or requests: support@safescran.com

SafeScran – Global Terms & Conditions (UKOnly Jurisdiction)

1. Introduction

These Terms & Conditions (“Terms”) govern your use of the SafeScran mobile application, website, and related services (“SafeScran”, “we”, “us”, “our”). By accessing or using SafeScran, you agree to these Terms. If you do not agree, you must not use the app.

SafeScran provides allergenrelated information, menu insights, scanning tools, and restaurant data for informational purposes only. SafeScran does not provide medical advice.

2. Eligibility

You must be at least 16 years old to use SafeScran. If you are under 18, you must have permission from a parent or guardian.

3. Description of Service

SafeScran allows users to:

SafeScran may display:

Where data is not confirmed by the restaurant, SafeScran will display a mandatory warning that must be accepted before viewing details. Your acceptance of this warning is logged for safety and compliance.

4. Important Health & Safety Disclaimer

SafeScran is not a medical tool. SafeScran does not guarantee the accuracy of allergen or ingredient information.

You must always:

SafeScran is not liable for:

Your use of SafeScran is at your own risk.

5. Restaurant Data

Restaurant data may be:

5.1 Unverified Data

If data is unverified, SafeScran will show a mandatory warning. You must accept this warning to proceed. Your acceptance is stored in our database as proof of acknowledgement.

5.2 Restaurant Responsibility

Restaurants are responsible for:

SafeScran is not responsible for restaurant errors.

6. User Responsibilities

You agree to:

7. Account Registration

If you create an account, you must:

We may suspend or terminate accounts that violate these Terms.

SafeScran logs:

This is done for:

Details are provided in the Global Privacy Policy.

9. Intellectual Property

SafeScran, including its branding, design, features, and content, is owned by SafeScran's founder, operating as a solo pre-registration project based in the United Kingdom (ownership will transfer to a registered company upon incorporation). You may not:

any part of the app without written permission.

10. Prohibited Conduct

You must not:

11. Liability Limitation

To the fullest extent permitted by law:

Your use of SafeScran is entirely at your own risk.

12. Jurisdiction & Governing Law (Strict UKOnly Clause)

These Terms are governed exclusively by the laws of England & Wales.

Regardless of your location, nationality, or the country where SafeScran is used, all disputes, claims, or legal proceedings must be brought solely in the courts of England & Wales.

By using SafeScran, you agree that:

This applies globally to all users and all restaurant partners.

13. Restaurant Partners

Restaurants using SafeScran Pro or submitting menu data must agree to the Restaurant Partner Agreement.

Restaurants are responsible for:

SafeScran is not liable for restaurant-provided data.

14. Termination

We may suspend or terminate access if:

You may delete your account at any time.

15. Changes to These Terms

We may update these Terms periodically. Continued use of SafeScran after changes means you accept the updated Terms.

16. Contact

For questions or concerns: support@safescran.com

SafeScran – UK GDPR Annex

This UK GDPR Annex supplements the SafeScran Global Privacy Policy and explains how SafeScran complies with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. Where there is any conflict between this Annex and the Global Privacy Policy, this Annex takes precedence for UK users.

1. UK Data Controller

For UK users, the Data Controller is:

SafeScran is currently operated by an individual as a solo, pre-registration project based in the United Kingdom. Formal company (Ltd) registration is planned ahead of the app's public launch, at which point this section will be updated with the registered company's details.

SafeScran does not require a UK Representative because it is established in the United Kingdom.

2. Lawful Bases for Processing (UKSpecific)

SafeScran processes personal data under the following lawful bases defined in the UK GDPR:

2.1 Article 6(1)(b) – Contract

To provide the SafeScran service, including:

2.2 Article 6(1)(f) – Legitimate Interests

For:

These interests are balanced against user rights and freedoms.

2.3 Article 6(1)(a) – Consent

For optional features:

Consent can be withdrawn at any time.

2.4 Article 6(1)(c) – Legal Obligation

Where required to comply with UK law.

3. UK User Rights (UK GDPR & Data Protection Act 2018)

UK users have the following rights:

3.1 Right of Access

You may request a copy of your personal data.

3.2 Right to Rectification

You may request corrections to inaccurate data.

3.3 Right to Erasure

You may request deletion of your data. SafeScran may retain certain data for legal defence, safety auditing, and fraud prevention, as permitted under UK GDPR.

3.4 Right to Restriction

You may request limited processing of your data.

3.5 Right to Data Portability

You may request your data in a structured, machine-readable format.

3.6 Right to Object

You may object to processing based on legitimate interests.

You may withdraw consent at any time.

SafeScran does not use automated decision-making that produces legal or significant effects.

To exercise any rights, contact: support@safescran.com

4. UK Data Protection Principles

SafeScran adheres to the following principles under UK GDPR:

5. UK Data Retention Rules

SafeScran retains data only as long as necessary for the purposes described in the Global Privacy Policy.

Retention periods for UK users:

After retention periods expire, data is deleted or anonymised.

6. International Transfers

If personal data is transferred outside the UK (e.g., to cloud providers or EU-based services), SafeScran ensures:

We do not transfer UK data without lawful safeguards.

7. Processors & Sub-Processors

SafeScran uses third-party processors such as:

All processors:

A full list of processors is available upon request.

8. Restaurant Data Handling (UKSpecific)

Restaurants located in the UK may submit allergen or menu data. SafeScran processes this data under:

Restaurants are responsible for:

SafeScran is not liable for restaurant-provided inaccuracies.

9. Security Measures

SafeScran uses:

We take all reasonable steps to protect UK user data.

10. Supervisory Authority Contact (ICO)

UK users may lodge a complaint with the UK supervisory authority:

Information Commissioner’s Office (ICO) Website: https://ico.org.uk Telephone: +44 303 123 1113

11. Contact for UK GDPR Matters

For UK GDPR questions or rights requests: support@safescran.com

SafeScran – EU GDPR Annex

This EU GDPR Annex supplements the SafeScran Global Privacy Policy and explains how SafeScran complies with the EU General Data Protection Regulation (Regulation (EU) 2016/679). Where there is any conflict between this Annex and the Global Privacy Policy, this Annex takes precedence for EU users.

1. EU Data Controller

For EU users, the Data Controller is:

SafeScran is currently operated by an individual as a solo, pre-registration project based in the United Kingdom. Formal company (Ltd) registration is planned ahead of the app's public launch, at which point this section will be updated with the registered company's details.

If SafeScran appoints an EU Representative under Article 27 GDPR, their details will be added here.

2. Lawful Bases for Processing (EUSpecific)

2.1 Article 6(1)(b) – Contract

To provide the SafeScran service, including allergen information, personalised warnings, account management, and saved preferences.

2.2 Article 6(1)(f) – Legitimate Interests

For safety logging, fraud prevention, legal defence, service improvement, and logging acceptance of allergen warnings. These interests are balanced against user rights.

2.3 Article 6(1)(a) – Consent

For optional features such as location access, marketing communications, and restaurant submissions. Consent can be withdrawn at any time.

2.4 Article 6(1)(c) – Legal Obligation

Where required to comply with EU or UK law.

3. EU User Rights (Articles 12–23 GDPR)

EU users have the right to:

To exercise rights: support@safescran.com

4. EU Data Protection Principles (Articles 5 & 25 GDPR)

SafeScran adheres to:

5. EU Data Retention Rules

Retention periods for EU users:

After retention periods expire, data is deleted or anonymised.

6. International Transfers (Articles 44–49 GDPR)

If personal data is transferred outside the EU (e.g., to the UK or cloud providers), SafeScran ensures:

7. Processors & Sub-Processors (Article 28 GDPR)

SafeScran uses third-party processors such as:

All processors:

A full list of processors is available upon request.

8. Restaurant Data Handling (EUSpecific)

Restaurants located in the EU may submit allergen or menu data. SafeScran processes this data under:

Restaurants are responsible for:

SafeScran is not liable for restaurant-provided inaccuracies.

9. Security Measures (Article 32 GDPR)

SafeScran uses:

We take all reasonable steps to protect EU user data.

10. Supervisory Authority Contact (Generic EUWide Wording)

EU users may lodge a complaint with their local Data Protection Authority (DPA).

A full list of EU DPAs is available at: https://edpb.europa.eu/about-edpb/board/members_en (edpb.europa.eu in Bing)

This ensures SafeScran is compliant across all EU countries without listing each one individually.

11. Contact for EU GDPR Matters

For GDPR questions or rights requests: support@safescran.com

If an EU Representative is appointed, their details will be added here.