💼

QR Codes for Law Firms, Consultancies, and Professional Services

Business cards, client portals, and meeting materials — with enterprise-grade data protection.

How professional services use Qrius

vCard QR codes on business cards and email signatures
Client portal access links on documents
Meeting agenda and document QR on printed materials
Service brochures and capability statements

Professional Services and GDPR — what you need to know

Professional service firms handle client confidential data. GDPR and professional confidentiality obligations demand the highest standard of vendor due diligence. Qrius's zero-PII architecture and DPA availability satisfy law firm and consultancy requirements.

Qrius never stores raw IP addresses, sets no cookies on scan, and keeps all data on EU servers in Stockholm, Sweden. Full GDPR Article 28 DPA available on paid plans.

Full GDPR technical overview →

Recommended QR code types

vCardURL / Dynamic linkEmail QR

All types available in the free generator and QR explorer.

Frequently asked questions

Can law firms use Qrius without confidentiality concerns?

Qrius QR codes point to URLs — the content at that URL is controlled by the firm. Qrius analytics only record that a scan occurred (anonymised). We never see the destination content or who scanned. A DPA is available for formal vendor management.

Is a vCard QR code GDPR-compliant for business cards?

Yes. A vCard QR encodes your contact information in the QR itself — scanning reads the data locally on the device. No server request, no personal data logged. When you share your own contact details, you are the data subject — no GDPR issue.

Can I track which client-facing materials are accessed most?

Yes. Create separate QR codes per document or service line. Dashboard analytics show scan volume, device type, and trends — without processing personal data of the people accessing your materials.

Do you provide security documentation for vendor due diligence?

Yes. We can provide: DPA (GDPR Art. 28), technical and organisational measures (TOMs), data residency confirmation (EU/Sweden), sub-processor list, and a completed standard security questionnaire. Contact [email protected].

🇪🇺

GDPR-compliant by design — not by policy

Your visitors' IP addresses are never stored. On each scan we run a geo-lookup, then immediately hash the IP with HMAC-SHA256 and a daily rotating salt. The original address is discarded. No cookies. No fingerprinting. All data stays on EU servers in Stockholm, Sweden.

✓ No raw IP addresses✓ No cookies✓ EU hosting✓ DPA available✓ Schrems II safe

Need documentation for your DPO? Full GDPR overview → · Download DPA →

Ready to get started?

Free plan available. GDPR-compliant from day one. No credit card required.

Create free account →