VerifyBadgeCompany login

Privacy policy

Last updated: September 7, 2026

VerifyBadge (“we”, “us”, “our”) helps companies issue QR employee badges and gives customers a fast way to verify who is at their door. This policy explains what personal information we collect, why we collect it, who we share it with, and the choices you have.

1. What we collect

Company administrator accounts

When a company registers, we collect the administrator’s email address, full name, and a password (stored as a one-way hash). We also collect the company name, industry, address, phone number, email, website, business number, and an optional logo.

Company verification documents

Companies that request a “Verified” status upload supporting business documents — typically a trade licence, business registration, or certificate of insurance — along with the review status and reviewer notes. These documents are stored in private, access-controlled storage and are visible only to the company that uploaded them and to platform administrators reviewing the request. They are never shown on public verification pages, and we retain them only as long as needed to assess and maintain the company’s verified status, or until the company deletes its account.

Employee information

Company administrators add employee records so badges can be issued. This may include first and last name, employee number, position, department, work email, work phone number, and a photo. Employee records belong to the company that created them.

Badge and verification data

Each badge has a unique badge number, issue and expiry dates, status, and a public verification link. When a member of the public scans or visits a verification link, we record the scan for analytics: badge number, company, employee, timestamp, and a general device type (for example “mobile” or “desktop”). We do not collect the verifier’s name, phone, or exact location.

Billing information

Payments are processed by Stripe. VerifyBadge does not store complete credit-card numbers or bank details. We do keep Stripe customer and subscription identifiers, the number of paid seats, billing interval, renewal date, and payment environment (test or live) so we can manage billing and invoicing.

Technical information

We automatically collect standard server logs and technical data needed to keep the service secure and reliable, such as IP address, browser type, device type, pages visited, and timestamps. We use cookies and similar technologies to maintain your login session and remember your preferences.

2. Why we collect information

We use the information above to:

  • Create and manage company accounts and user profiles;
  • Issue, display, and verify QR employee badges;
  • Provide scan analytics to the badge-issuing company;
  • Process payments and manage subscriptions through Stripe;
  • Review business-verification documents when a company requests verification;
  • Send service emails such as badge-ready notifications, password resets, and billing alerts;
  • Keep the platform secure, prevent abuse, and troubleshoot errors;
  • Comply with legal obligations and respond to valid requests.

3. How we share information

We do not sell personal information. We share data only with service providers who help us run VerifyBadge:

  • Lovable Cloud / Supabase — hosts our database, authentication, file storage, and server functions.
  • Stripe — processes payments and subscriptions.
  • Bridge AI — provides the underlying platform and may appear in “Powered by Bridge AI” branding.

Each provider is contractually bound to use data only for the services they provide to us and to protect it with appropriate security measures.

4. Public verification pages

The verification page shown when someone scans a badge is intentionally limited. It displays the employee’s name, photo, position, badge number, badge status, and the company name and logo. It does not show the employee’s email, phone number, internal IDs, or other private company data.

5. Data retention

We keep account and company data for as long as the account is active. If a company closes its account, we delete or anonymize personal information within a reasonable time, except where we must keep it longer for legal, tax, or fraud prevention purposes. Scan analytics are retained so companies can view badge usage history.

6. Your choices and rights

Company administrators can update company information, employee records, and badge settings from the dashboard. Depending on your location, you may have rights to access, correct, export, restrict, or delete personal information we hold about you. To exercise these rights, contact us at the email below.

7. Security

We use industry-standard protections including encryption in transit (TLS), hashed passwords, row-level security in the database, and role-based access controls. No system is completely secure, so we encourage you to use a strong, unique password and keep your login credentials private.

8. Children’s privacy

VerifyBadge is not directed to children under 16, and we do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us and we will delete it.

9. Changes to this policy

We may update this privacy policy from time to time. The “Last updated” date at the top of the page shows when it was last revised. Continued use of VerifyBadge after changes means you accept the updated policy.

10. Contact us

If you have questions about this privacy policy or how we handle your data, email us at privacy@verifybadge.ca.