Privacy Policy
Your privacy matters to us. This policy explains, in plain language, what information we collect, why we collect it, how we use it, and the rights you have over it.
1. Who We Are
Olink (“we,” “us,” or “our”) is a SaaS platform that helps individuals and businesses create and manage dynamic QR codes, branded short links, bio pages, landing pages, and campaign analytics.
We are the data controller responsible for the personal information described in this Privacy Policy. This policy applies to anyone who visits our website or uses our platform, whether on a free or paid plan.
If you have any questions about this policy, you can reach us at Contact@olink.app.
2. Information We Collect
We only collect the information we genuinely need to provide and improve the Olink service. We never collect information we do not need, and we never sell your data.
Information you provide directly
-
Account details — your name, email address, and password (stored securely in an encrypted format) when you register.
-
Content you create — QR codes, short link aliases and destinations, bio page content, landing page content, and any media you upload.
-
Communication data — messages you send us through our contact form or email, including your name and email address.
-
Team information — names and email addresses of team members you invite to your workspace.
Information we collect automatically
-
Usage and analytics data — pages visited, features used, browser type, device type, operating system, and approximate location derived from your IP address.
-
Link performance data — scan counts, click counts, timestamps, referrer sources, device and browser information for QR codes and short links you create, presented in aggregate.
-
Cookie and similar identifiers — see our Cookie Policy for details on the cookies and similar technologies we use.
Payment information
-
We do not store your full payment card details. Payments are processed securely by Paddle, our payment provider, which handles card data on their own PCI-DSS compliant infrastructure.
-
We receive limited information from Paddle about your purchases, such as the plan purchased, amounts paid, and payment status, to manage your subscription and invoices.
3. How We Use Your Information
We use your information for the following purposes:
-
To create and manage your account and workspace, and to let you sign in and use the platform.
-
To deliver and operate the features you use — QR codes, short links, bio pages, landing pages, analytics, and AI utilities.
-
To process payments and renewals through Paddle, and to send invoices and payment receipts.
-
To send transactional emails, such as account verification, password resets, subscription confirmations, and important service updates.
-
To provide customer support and respond to your enquiries.
-
To monitor, analyse, and improve the performance, reliability, and security of our platform.
-
To detect, prevent, and address fraud, abuse, and violations of our Terms of Service.
-
To communicate occasionally about new features, plan changes, or offers, only where we have the appropriate consent or a legitimate interest to do so.
4. Legal Bases for Processing
We rely on the following legal bases to process your personal information, depending on the situation:
-
Contract — processing necessary to provide our services to you, including account management and payment processing.
-
Legitimate interests — improving the platform, protecting its security, and preventing fraud, balanced against your rights and interests.
-
Consent — where we ask for your permission for specific processing, such as certain optional communications or analytics, which you can withdraw at any time.
-
Legal obligation — where we are required to process your data to comply with applicable laws.
6. Data Retention
We keep your personal information only for as long as necessary to provide the service, comply with our legal obligations, resolve disputes, and enforce our agreements.
When you delete your account or request the deletion of your data, we remove or anonymise the information we no longer need, except where we are required to keep certain records (for example, invoice records required for tax purposes).
Analytics and link performance data is aggregated so that it cannot be used to identify individuals.
7. Data Security
We take reasonable technical and organisational measures to protect your information against unauthorised access, loss, alteration, or disclosure. These include:
-
Encryption of data in transit using HTTPS and secure connections.
-
Encryption of sensitive data, such as passwords, at rest.
-
Role-based access controls within the platform so that only authorised people can access data.
-
Regular review of our infrastructure and security practices.
8. Your Privacy Rights
Depending on where you live, you may have the following rights over your personal information. Where these rights apply, we will honour them without charge and within the timeframes required by law:
-
Access — request a copy of the personal information we hold about you.
-
Rectification — ask us to correct inaccurate or incomplete information.
-
Erasure — request deletion of your personal information, subject to legal retention requirements.
-
Restriction — ask us to limit how we process your data in certain circumstances.
-
Portability — request your data in a structured, machine-readable format.
-
Objection — object to processing based on our legitimate interests.
-
Withdraw consent — where processing is based on consent, you can withdraw it at any time.
10. Children’s Privacy
Olink is not directed at children under the age of 16, and we do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us at Contact@olink.app and we will delete it promptly.
11. International Transfers
Olink is a global service. Your information may be stored and processed on servers located in different countries, including outside your country of residence. Where we transfer personal information across borders, we take appropriate safeguards, such as standard contractual clauses, to ensure your information is protected to the standards required by applicable law.
12. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, the law, or our services. We will post any updated policy on this page and update the “Last updated” date. If we make significant changes, we will notify you by email or through a prominent notice within the platform.
13. Contact Us
If you have any questions about this Privacy Policy or how we handle your personal information, please contact us at Contact@olink.app.
If you are in the European Economic Area (EEA), the UK, or Switzerland, and you are not satisfied with how we handle your request, you also have the right to lodge a complaint with your local data protection authority.