Point your camera at any QR code and get an instant threat report. Free, fast, private.
scans completed
kept you safe
All threat databases are live. BelQR checks every QR against 6 security engines before you ever tap a link.
Every QR code is checked against phishing, malware, and redirect databases in real time.
This URL exhibits classic phishing behaviour — a newly registered domain imitating a banking portal, with token-based credential harvesting and 3-hop redirect obfuscation. Do not proceed.
18 types · custom colors · instant download · no sign-up
Every URL scanned across 6 threat engines before loading. Phishing blocked automatically.
Real-time insights across all your QR codes and campaigns
| Name | Type | Scans | Safe | Risk | Last Active |
|---|---|---|---|---|---|
| Restaurant Menu | URL | 342 | 342 | 0 | 2 min ago |
| Business Card | Contact | 201 | 201 | 0 | 1 hr ago |
| Guest Wi-Fi | Wi-Fi | 189 | 189 | 0 | 3 hrs ago |
| Promo Campaign | URL | 156 | 149 | 7 | 5 hrs ago |
| UPI Payment | UPI | 134 | 134 | 0 | Yesterday |
Deep dives into QR threats, security research, how-to guides, and protection strategies.
Effective date: 4 April 2026 · Version 1.0
BelQR (belqr.com) is a browser-based QR code security platform. The platform provides QR code generation, QR code scanning, URL threat analysis, and a secure browser preview tool.
BelQR is operated as a standalone static web application. There is no registered company entity, no data processing officer, and no server-side infrastructure that handles personal data. All functionality executes locally in your browser.
For any privacy-related enquiries, contact: privacy@belqr.com
The following data is never collected, transmitted, or stored on any server by BelQR:
BelQR uses your browser's localStorage to save convenience data between sessions. This data never leaves your device and is not accessible to us. It includes:
chrome.storage.local — local to your browser profile, inaccessible to us.
Please read this section carefully. By using BelQR, you agree to the following limitations of liability.
BelQR's URL threat analysis is a heuristic, client-side scoring system. It analyses signals including HTTPS status, suspicious keywords, domain structure, TLD reputation, brand impersonation patterns, and URL parameters. It does not query live threat databases, VirusTotal, Google Safe Browsing, or any external intelligence feed in real time. It will not detect every malicious URL. A "Safe" result from BelQR does not constitute a guarantee that a URL is free from malware, phishing, fraud, or other harm.
BelQR does not control, monitor, or take responsibility for the content of any URL you scan, generate a QR code for, or open through the Safe Browser. You assume full responsibility for any action taken based on a BelQR scan result. We expressly disclaim liability for any financial loss, data loss, identity theft, or other harm arising from visiting a URL assessed by BelQR — whether that assessment was "safe" or "risky".
Data stored in your browser's localStorage (scan history, browser history, bookmarks) is stored on your device. BelQR has no access to this data, cannot back it up, cannot recover it if lost, and is not responsible for its security on your device. If your device or browser profile is compromised, this data may be accessible to third parties. We accept no liability for the exposure of locally stored data.
You are solely responsible for the content encoded in QR codes you create using BelQR. BelQR does not review, moderate, or retain any QR data you generate. If you generate a QR code encoding harmful, illegal, or misleading content, BelQR bears no responsibility for the consequences of its distribution or scanning.
BelQR is provided "as is" and "as available." We make no guarantee of uptime, accuracy, or fitness for any particular purpose. We reserve the right to modify, suspend, or discontinue the platform at any time without notice.
To the maximum extent permitted by applicable law, BelQR and its operators shall not be liable for any indirect, incidental, special, consequential, or punitive damages — including but not limited to loss of data, loss of profits, or loss of goodwill — arising out of or related to your use of the platform, even if advised of the possibility of such damages.
Because BelQR has no server-side data processing, the traditional server-security concerns (database breaches, API key leaks, account takeover) do not apply. The security model is limited to client-side concerns:
First-party cookies: BelQR does not set any first-party cookies. The only browser storage BelQR uses is localStorage for functional data (scan history, bookmarks) as described in Section 3.
BelQR uses Google AdSense to display advertisements. Google, as a third-party vendor, uses cookies (including the DoubleClick cookie) to serve ads based on your prior visits to this website and other websites across the internet.
Google's use of advertising cookies enables it and its partners to serve ads to you based on your visit to BelQR and/or other sites on the internet. You may opt out of personalised advertising by visiting Google Ads Settings or by visiting aboutads.info.
For more information on how Google uses data when you use partner sites, see: How Google uses information from sites that use our services.
EEA, UK, and Swiss visitors: our cookie consent banner allows you to accept or decline personalised advertising before any AdSense cookies are loaded. Declining will result in non-personalised ads only.
The BelQR Chrome Extension requests the following permissions and uses them solely as described:
activeTab
Reads the URL of your current tab to pre-fill the QR generator. Only accessed when you click the extension icon.
contextMenus
Adds right-click options for checking link safety, decoding QR images, and generating QR codes for the current page.
storage
Saves your last 50 link-check results locally in chrome.storage.local. This data stays on your device and is never transmitted.
clipboardWrite
Allows copying a generated QR code image to your clipboard when you click "Copy".
notifications
Displays a Chrome notification when a QR code is decoded from an image via right-click, showing the decoded result.
<all_urls>
Required for the content script to inject the QR-decode overlay on any page where you right-click an image. The extension reads no page content except the specific image you right-click.
The extension does not read your browsing history, does not send any data to external servers, and does not collect any personal information.
BelQR loads the following open-source libraries from public CDNs. These CDNs may log your IP address and browser headers as part of normal CDN operation — this is outside BelQR's control:
The Chrome Extension bundles qrcode-generator and jsQR locally — no CDN requests are made by the extension.
The QR Scanner feature requests access to your device camera using the browser's getUserMedia API. Camera access is used for one purpose only: reading QR codes in real time.
Because BelQR does not collect or store personal data on any server, most data subject rights under GDPR, CCPA, and similar regulations are automatically satisfied — there is no personal data held by us to access, correct, port, or delete.
Data stored in your browser (localStorage) is entirely under your control. You can view, modify, or delete it at any time through your browser's developer tools or site data settings.
If you believe BelQR has collected your personal data in a way not described in this policy, contact privacy@belqr.com and we will investigate and respond within 30 days.
We may update this Privacy Policy to reflect changes in the platform's functionality, applicable laws, or operational practices. The effective date at the top of this page will be updated when changes are made.
Because we collect no contact information, we cannot notify you of changes by email. We recommend checking this page periodically. Continued use of BelQR after a policy update constitutes acceptance of the updated terms.
For any questions, concerns, or requests related to this Privacy Policy or BelQR's data practices, contact us at:
We aim to respond to all privacy enquiries within 30 calendar days.