What this generator deliberately does not do, and exactly what happens to your data.
Your files and values are processed locally in your browser and are not uploaded. Codes are encoded and drawn on your device, and the PNG and SVG downloads are produced there too.
There is no URL shortener, no redirect service and no scan tracking. A code contains exactly the payload shown in the box beneath the preview — nothing is appended, wrapped or rewritten.
Nothing you type is stored, not even locally: reload the page and it is gone. Advertising and analytics are switched off across the whole site, and this page loads no third-party script.
Because there is no redirect, we cannot see who scans your codes, and neither can anyone else. That also means your codes keep working no matter what happens to this project.
A shortener would put a third party permanently between your code and its destination: they would see every scan, and every code you printed would break if they disappeared. The trade-off is that you cannot change a destination after printing. Point your code at a URL on a domain you control if you need that flexibility.
A QR code hides its destination by design, which is what makes it useful for fraud. Before scanning any code, watch for stickers placed over existing signage and check the address your phone previews before opening it. Never enter passwords or card details on a page reached from a code you did not print yourself.
Remember that a printed Wi-Fi code is a written-down password, and a printed contact card cannot be revoked.