Last updated: September 7, 2026
Account data: your email, name, and password (stored hashed, never in plain text) when you or your organization's admin creates an account.
Organization data: your organization's name, chosen subdomain, logo, and any custom domain you connect.
Links and QR codes: the destination URLs you create, their titles, and any access-protection settings you configure.
Click and scan analytics: when someone clicks your link or scans your QR code, we record the timestamp, approximate location (country/city, derived from IP), device type, browser, OS, and referrer. Visitor IP addresses are hashed with a salt before storage — we don't keep the raw IP.
Website analytics: if you install the Metriv snippet on a site you register, we record pageviews and custom events: path, referrer, UTM parameters, approximate location, device, browser, and hashed visitor/session identifiers. We do not store the raw IP on those events. Do Not Track is honored by default.
Files: anything you upload is stored on Cloudflare R2, transferred directly between your browser and storage rather than through our own servers.
Payment data: subscription payments are processed by Polar, our merchant of record. We don't receive or store your card details — Polar handles that under its own privacy policy.
We don't sell your data. We don't share link destinations, file contents, or analytics with anyone outside your organization. We don't use your data to train any AI model.
The Metriv app uses session and security cookies to keep you signed in and protect requests. The public marketing website uses Metriv Analytics (the same first-party collector at analytics.metriv.cc) to understand aggregate visits and page usage. We do not use that information to sell personal data or build advertising profiles.
Account and organization data is kept for as long as your account is active. Click and scan analytics are kept for as long as the link or QR code exists. Website analytics is a paid feature; its events are kept for the retention period on your plan (and can be shorter per site). Collection pauses when a site reaches its monthly event limit and resumes in your next cycle or when you upgrade — we never bill overage — and oldest events are dropped first if you hit the stored-event cap. If you delete your account, we delete your organization's data within a reasonable period, except where we're required to retain billing records for tax purposes.
You can request a copy of your data, correct it, or ask us to delete it by emailing contact@metriv.cc. Metriv is run by a small team, so expect a direct, personal reply rather than an automated process — and give it a few days.
If this policy changes in a way that matters, we'll update the date at the top and, for material changes, email active account admins directly.
Questions about this policy: contact@metriv.cc