Physical Consent Capture

QR-Based Physical Consent for Offline Locations

Print a QR code at your billing counter, clinic, gym, or hotel desk. Customers scan, read the consent notice, and give consent, all DPDP-compliant with encrypted storage and full audit trail.

DPDP Act 2023 compliant
AES-256 encrypted PII
No app required
Live Scan Flow
Print & Display
Customer Scans
Consent Captured
Encrypted & audit-logged instantly
The Problem

Paper Forms Are Not DPDP-Compliant

Millions of physical businesses still collect customer data on paper, no audit trail, no withdrawal mechanism, no legal standing under DPDP Act 2023.

Paper Forms Are Inadmissible

Paper consent forms cannot prove the exact notice shown, timestamp, or whether consent was freely given, all required under DPDP Act 2023.

Physical Data Is Unencrypted

Customer names, phone numbers, and emails written on registers are stored in plain text, a DPDP security obligation violation waiting to happen.

No Withdrawal Mechanism

DPDP Act requires every data principal to be able to withdraw consent. A paper form provides no withdrawal path, making it non-compliant by design.

Use Cases

Built for Physical-First Businesses

🍽️
Restaurants & QSRs

Loyalty enrollment at billing counter

🏪
Retail Stores

Membership & offers sign-up

🏥
Clinics & Hospitals

Patient intake consent

🏋️
Gyms & Wellness

Membership registration

🏨
Hotels & Hospitality

Guest data at check-in

🎓
Events & Education

Attendee & student consent

Capabilities

Everything Built In. Nothing Extra Needed

Printable QR Code Generator

Generate a unique QR code for each location, billing counter, reception, gym floor. Print and display. No app to install, no device to maintain.

Mobile-First Consent Form

Customer scans with any smartphone camera. A clean, accessible consent notice and form load instantly, no app, no login. Works on any device.

Multi-Language Consent Notices

Set notice language per location. Hindi, Tamil, Telugu, Bengali, and more. The exact notice text shown at consent time is stored with the record.

AES-256 Encrypted PII Storage

Name, phone, email, and date of birth are encrypted at rest with AES-256. Never stored in plain text. Complies with DPDP security obligations under Rules 2025.

Tamper-Proof Audit Trail

Every consent record stores: timestamp, notice text shown, purpose, data collected, and consent confirmation. Defensible in a DPBI investigation.

CSV Export for Marketing Teams

Export consent records to CSV with one click. Share with CRM or loyalty platform teams. IP addresses are never exported, protecting customer privacy.

Instant Activate / Deactivate

Deactivate a QR code instantly if a location closes or a campaign ends. Any scan of an inactive code returns a 404, no stale consent forms ever collected.

Conversion Analytics

Track scans vs. consents per location to see real conversion rates. Identify which locations need a better notice text or layout change.

How It Works

From Setup to First Consent in 5 Minutes

No hardware. No technical setup. Just a QR code on a printed card, and every consent is legally documented.

1. Create a QR Code for your location

Enter the location name, type, consent notice text, and which data fields to collect (name, phone, email, DOB). Choose the notice language.

2. Download and print the QR card

Download the ready-to-print card from your dashboard. Display it at the billing counter, reception desk, or any collection point.

3. Customer scans and gives consent

Customer scans with their phone camera. The consent notice loads. They read, fill their details, and tap "I Consent." No app download required.

4. Encrypted record stored instantly

The consent record, with encrypted PII, timestamp, notice text, and IP, is stored in your dcomply dashboard. Export to CSV anytime.

🇮🇳

Designed for DPDP Act 2023 Compliance

Explicit, informed consent with full notice disclosure
Purpose-specific consent for each data type collected
Withdrawal instructions shown at time of consent
AES-256 encrypted PII storage per DPDP Rules 2025
Tamper-proof timestamp for each consent record
Tenant-isolated data, your records stay yours

QR Physical Consent. FAQ

How offline businesses capture DPDP-compliant consent by QR.

A DPDP-compliant way to capture consent at an offline location. A printed QR links to a mobile consent page. The customer scans, reads the notice in their preferred Indian language, ticks purposes, and the record is stored with timestamp, purposes, IP hash and location code, exportable for DPB inspection.

The DPDP Act 2023 does not distinguish between online and offline collection. Any business collecting a phone number, email or name at a counter is subject to the same consent obligations. Paper forms cannot record the policy version shown, honour withdrawal, or be searched. QR Physical Consent solves all three.

Customer sees a small printed QR, scans with phone camera, consent page opens in their preferred language, ticks purposes, submits. A confirmation SMS/WhatsApp with their preference-centre URL follows. Under 30 seconds.

Yes. Every QR carries a location code (e.g. MUM-001) so you can see which store or clinic collected each record, run per-location reporting, and revoke a specific QR if it is lost.

Every QR-captured record includes the customer's preference-centre URL, sent via SMS/WhatsApp at capture and printed on their receipt. A single tap withdraws, with the same audit trail and connector-side propagation as online consent.

Yes. The customer's own phone submits consent to dcomply directly. Your store WiFi or PoS system is not involved. Only the customer's phone needs data.

Replace Paper Forms with DPDP-Compliant QR Consent

Works at any physical location, no hardware, no app, no developer needed.

Talk to Us