Privacy · Mobile app

Privacy Policy for TRLLN Link

Last updated: June 25, 2026

Introduction

TRLLN Link (“we”, “our”, or “us”), formerly known as TRLLN QRs in some store listings, is a mobile field application for scanning asset identifiers, validating nearby nodes, and synchronising operational scan data with TRLLN services. This Privacy Policy explains how the app handles information when you use it.

Information we collect

Camera scans

  • Purpose: we request camera access to scan QR codes, Data Matrix codes, and other supported barcode formats used for asset and node identification.
  • What: captured scan identifiers may include node MAC addresses, crate or asset external identifiers, RFID/EPC identifiers when supported by the build, capture timestamps, scan format, capture method, target type, sync status, and retry state.
  • Transmission: captured scan data may be sent to TRLLN services when you submit scans manually, when kiosk mode auto-submits scans, when connectivity is restored, or during periodic retry processing.

Additional details and form data

  • What: when a tenant form is displayed, information you enter or lock for the session, such as field number, crew number, commodity, grower, or other tenant-specific operational fields, may be attached to scan submissions and telemetry where configured as safe for reporting.
  • Purpose: this information helps associate scans with the correct field operation, crew, tenant, and shipment context.

Bluetooth and nearby device context

  • Purpose: we request Bluetooth access to discover nearby Bluetooth Low Energy (BLE) nodes and validate scan context during field operation.
  • What: BLE observations may include device identifiers such as hardware MAC addresses or iOS device UUIDs, signal strength, timestamps, and related node telemetry.
  • Transmission: BLE telemetry matching configured criteria may be transmitted to https://api.trlln.io/* as part of operational telemetry snapshots.

Location

  • What: when permission is granted and a location fix is available, the app may collect GPS coordinates during active app use, scanning sessions, or kiosk operation.
  • Purpose: location helps associate scan and telemetry events with the field location where the work occurred.
  • Transmission: GPS coordinates may be included in telemetry payloads sent to https://api.trlln.io/*, formatted as latitude and longitude.
  • Platform note: on Android, location permission may also be required by the operating system for Bluetooth scanning.

Device identifier

  • What: the app generates a stable device identifier (device_id) and includes it in authenticated requests and telemetry payloads.
  • Format: the identifier is derived from platform hardware information, hashed, truncated, and prefixed by platform, such as a_XXXXXXXXXXXX or i_XXXXXXXXXXXX.
  • Storage: the identifier is stored in secure storage on your device so it remains stable across app sessions.
  • Purpose: it supports device attribution, operational troubleshooting, sync reliability, and telemetry correlation. It is not intended to identify you personally.

Authentication and tenant access

  • The app authenticates users through Auth0, a third-party authentication provider.
  • User credentials are handled by Auth0’s hosted login page. The app does not process your password directly.
  • Auth0 issues access tokens that are stored in secure storage on your device and used for authenticated API requests.
  • The app calls TRLLN backend services to resolve your authorised tenants, accounts, and roles before allowing access to tenant-specific workflows.
  • For details on how Auth0 handles your data, see Auth0’s privacy policy: https://auth0.com/privacy.

Operational telemetry

  • The app sends operational telemetry to help monitor scanner reliability, sync health, hardware state, permissions, connectivity, scan counters, and drain summaries.
  • Telemetry may include snapshot events, capture-event lifecycle records, and incident logs for failures such as permission, connectivity, scanner, or sync errors.
  • Telemetry may include device and app metadata such as device ID, app version, platform, manufacturer, model, tenant ID, operation mode, GPS when available, and selected tenant form metadata.
  • The app does not include advertising SDKs.

How data is submitted

  • Manual submission: in handheld workflows, scan data and additional details may be submitted when you choose to register or submit scans.
  • Kiosk operation: in kiosk mode, scans may be submitted automatically after capture or when the camera session closes.
  • Connectivity recovery: pending scan and telemetry data may be submitted automatically when network connectivity is restored.
  • Periodic retry: pending data may be retried automatically to ensure field data is not lost during temporary connectivity issues.

Local storage and offline operation

  • Scan data, capture-event records, BLE observations, telemetry payloads, sync status, and retry state may be stored locally in a database on your device.
  • When connectivity is unavailable, pending data is queued locally and transmitted automatically when connectivity resumes.
  • The app uses retry and retention rules to avoid losing operational data during temporary network failures.
  • Authentication tokens, device identifiers, and kiosk/session preferences are stored in secure storage where applicable.

Third-party services and endpoints

  • https://app.trlln.io/api/* — platform API for authentication access resolution, tenant/account data, and scan/additional-detail submission.
  • https://api.trlln.io/* — telemetry and operational scanner data endpoint.
  • Auth0 (auth0.com) — authentication provider.

Your rights

  • You can delete locally stored scan data using the clear function available in the app where provided.
  • You can uninstall the app to remove locally stored app data from your device.
  • To request access to, correction of, or deletion of any data held on TRLLN servers, contact us at the address below.

Changes to this policy

We may update this Privacy Policy from time to time. We will notify you of any changes by updating the “Last updated” date at the top of this page.

Contact us

If you have questions about this Privacy Policy, please contact us at info@trlln.io.