سياسة الخصوصية — تطبيق “العائلة”
اسم التطبيق: العائلة (Al-Aylah)
معرّف الحزمة (Bundle ID): com.familyplatform.com
تاريخ آخر تحديث: 12 يونيو 2026
النسخة الإنجليزية تتبع النسخة العربية في الأسفل. النصّان متطابقان قانونياً، وعند وجود أي اختلاف يُعتمد النص العربي.
1. مقدمة
تطبيق “العائلة” هو منصة عائلية خاصة لإدارة شجرة العائلة والمناسبات والأخبار والحجوزات داخل العائلة الواحدة. نحن نحترم خصوصيتك ونلتزم بحماية بياناتك الشخصية. توضّح هذه السياسة ما الذي نجمعه، ولماذا، وكيف نحميه، وما هي حقوقك.
باستخدامك للتطبيق فإنك توافق على ما ورد في هذه السياسة. إذا كنت لا توافق على أيّ بند، يُرجى عدم استخدام التطبيق.
2. البيانات التي نجمعها
نجمع فقط البيانات اللازمة لتشغيل ميزات التطبيق:
بيانات الهوية والملف الشخصي
- الاسم الكامل (الاسم الأول، اسم الأب، اسم الجد).
- رقم الجوال (المعرّف الأساسي للحساب، بصيغة دولية E.164).
- البريد الإلكتروني (اختياري، لتسجيل الدخول بالبريد).
- الصورة الشخصية (اختياري).
- الجنس، اللقب، نبذة شخصية، الدراسة/العمل (اختياري).
- سنة الميلاد (هجري أو ميلادي)، وسنة الوفاة للمتوفّين في الشجرة.
بيانات شجرة العائلة
- العلاقات العائلية بين الأعضاء (الأب، الأبناء، الأحفاد).
- قد تتضمّن الشجرة بيانات أشخاص متوفّين أو قاصرين يُدخلها كبار العائلة.
بيانات المناسبات والحجوزات
- مواعيد المناسبات وتفاصيلها وأماكنها (نص + إحداثيات اختيارية يدخلها المُنظّم).
- ردود الحضور (RSVP) وأسماء المدعوين الخارجيين.
- حجوزات القاعات والمرافق العائلية.
البيانات التقنية
- معرّف Firebase Auth UID.
- رمز Firebase Cloud Messaging (FCM) لإرسال الإشعارات.
- أرقام جوال مرفوعة مسبقاً من قِبل مشرف العائلة لربط الأعضاء الجدد لاحقاً.
بيانات محلية على جهازك فقط (لا تُرسَل لخوادمنا)
- رمز PIN السريع (مُختزَن بصيغة Hash محلياً عبر PBKDF2-HMAC-SHA256).
- حالة تفعيل البصمة / Face ID.
- التفضيلات (المظهر، حجم الخط، إلخ).
لا نجمع:
- موقعك الجغرافي تلقائياً.
- جهات الاتصال (نُتيح للمشرف قراءتها محلياً عند الدعوة الخارجية، ولا تُرفع لخوادمنا).
- أي بيانات تحليلية سلوكية أو بيانات تتبّع إعلاني.
3. كيف نستخدم بياناتك
- إنشاء حسابك وربطك بعائلتك.
- عرض شجرة العائلة، والمناسبات، والأخبار، والحجوزات لأعضاء عائلتك.
- إرسال إشعارات الدفع المتعلّقة بالمناسبات والردود والإعلانات العائلية.
- إدارة الصلاحيات (مشرف/عضو) والموافقات على الانضمام.
- حماية الحسابات (تشفير PIN محلياً، الحدّ من محاولات تخمين PIN).
لا نستخدم بياناتك للإعلانات ولا نبيعها لأي طرف ثالث.
4. مشاركة البيانات
- داخل عائلتك: يُمكن لأعضاء عائلتك المسجّلين في التطبيق رؤية اسمك وصورتك ومعلومات ملفّك العام والشجرة وردود حضورك حسب الصلاحيات المُعتمدة.
- خارج عائلتك: عزل البيانات بين العائلات (Multi-tenant) عبر هيكلة
/families/{familyId}/في Firestore، فلا يرى أعضاء عائلة أخرى بياناتك. - مع جهات خارجية: لا نبيع ولا نؤجّر بياناتك. نشاركها فقط مع مزوّدي البنية التحتية الموضّحين في القسم 5، أو عند طلب نظامي قانوني.
5. مزوّدو الخدمة من الأطراف الثالثة
يعتمد التطبيق على خدمات Google Firebase لتخزين البيانات والمصادقة والإشعارات:
- Firebase Authentication — التحقّق من الهوية (جوال OTP، بريد + كلمة مرور).
- Cloud Firestore — تخزين بيانات الأعضاء والشجرة والمناسبات.
- Firebase Storage — تخزين الصور المرفوعة.
- Firebase Cloud Messaging — إرسال الإشعارات.
- Cloud Functions — تنفيذ المنطق الآمن على الخادم.
تخضع هذه الخدمات لسياسة خصوصية Google: https://policies.google.com/privacy. قد تُعالَج البيانات على خوادم Google في الولايات المتحدة أو مناطق أخرى.
لا نستخدم: Google Analytics، Crashlytics، شبكات إعلانات، أو أي SDK تتبّع.
6. أذونات النظام (iOS)
- الكاميرا: لالتقاط صور الملف الشخصي وصور المناسبات.
- مكتبة الصور: لاختيار صور من ألبوماتك.
- Face ID / البصمة: للدخول السريع للتطبيق (محلياً على الجهاز فقط).
- جهات الاتصال: لاستيراد أرقام عند دعوة مدعوين خارجيين — تُقرأ محلياً ولا تُرفع لخوادمنا.
- التقويم: لإضافة مواعيد المناسبات لتقويم جهازك (اختياري).
- الإشعارات: لاستقبال إشعارات المناسبات والردود.
يمكنك سحب أيّ إذن في أيّ وقت من إعدادات نظام iOS.
7. القاصرون
قد تتضمّن شجرة العائلة بيانات قاصرين (مثل أسماء الأبناء وسنوات ميلادهم) يُدخلها كبار العائلة. التطبيق غير موجّه مباشرةً لمن هم دون 13 عاماً، ولا نسمح بإنشاء حساب باسم قاصر تحت 13 عاماً. على وليّ الأمر الذي يُدخل بيانات قاصر:
- التأكّد من موافقة الأهل أو الولي الشرعي.
- اقتصار البيانات على الحدّ الأدنى اللازم (الاسم، علاقة القرابة).
- التواصل معنا لحذف بيانات أيّ قاصر عند الطلب.
8. الاحتفاظ بالبيانات وحذف الحساب
نحتفظ ببياناتك ما دام حسابك نشطاً. التطبيق حالياً لا يحتوي على زرّ “حذف الحساب” داخل الواجهة. لطلب حذف حسابك وبياناتك المرتبطة:
- راسلنا على بريد الدعم في القسم 13 من نفس البريد المسجَّل في حسابك.
- نُنفّذ الحذف خلال 30 يوماً من تأكيد طلبك.
- بعض البيانات قد تظلّ في النسخ الاحتياطية المؤمَّنة لفترة محدودة قبل الحذف النهائي.
- البيانات التي تخصّ عائلتك ككيان (مثل عُقد شجرة الأجداد) قد تبقى مرئية لبقيّة الأعضاء بعد حذف حسابك، حيث إنّها معلومات عائلية مشتركة.
كما يمكن لمشرف العائلة إزالة أيّ عضو من العائلة، ويمكن لمشرف المنصّة العام حذف العائلة بأكملها.
9. أمان البيانات
- جميع الاتصالات بين التطبيق وخوادمنا مُشفّرة عبر HTTPS/TLS.
- رمز PIN السريع لا يُرسَل لخوادمنا، بل يُختزَن مُشفَّراً محلياً (PBKDF2-HMAC-SHA256 بـ 100,000 تكرار).
- محاولات إدخال PIN فاشلة متكرّرة تُؤدّي لقفل مؤقّت (5 دقائق ← ساعة ← 24 ساعة).
- البيانات الحسّاسة محليّاً (PIN Hash، حالة البصمة) محفوظة في Keychain على iOS وEncryptedSharedPreferences على Android.
- صلاحيات Firestore تضمن أنّ كلّ عائلة ترى بياناتها فقط.
رغم اتّخاذنا كلّ التدابير المعقولة، لا يوجد نظام إلكتروني آمن بنسبة 100%، وأنت مسؤول عن حماية رمز PIN وبيانات دخولك.
10. نقل البيانات دولياً
قد تُخزَّن بياناتك وتُعالَج على خوادم Firebase الواقعة خارج بلدك (مثل الولايات المتحدة). باستخدامك للتطبيق فإنّك توافق على نقل البيانات إلى تلك الخوادم وفق سياسات Google.
11. حقوقك
لديك الحقّ في:
- الوصول إلى نسخة من بياناتك.
- تصحيح أيّ بيانات غير دقيقة (يمكنك تعديل معظم الحقول مباشرة في التطبيق).
- طلب حذف حسابك (كما في القسم 8).
- الاعتراض على معالجة بياناتك أو تقييدها.
- سحب موافقتك في أيّ وقت.
لممارسة أيّ حقّ، تواصل معنا عبر بريد الدعم في القسم 13.
12. تغييرات على هذه السياسة
قد نُحدّث هذه السياسة من حين لآخر. سيُعرض تاريخ آخر تحديث أعلى الصفحة، وقد نُخطرك داخل التطبيق عند إجراء تغييرات جوهرية. استمرار استخدامك للتطبيق بعد التحديث يُعدّ موافقة على النسخة المُحدَّثة.
13. التواصل معنا
لأي استفسار أو طلب يتعلّق بالخصوصية أو حذف الحساب:
- البريد الإلكتروني: albatli@gmail.com
Privacy Policy — “Al-Aylah” (Familyplatform)
App Name: العائلة (Al-Aylah)
Bundle ID: com.familyplatform.com
Last Updated: June 12, 2026
The Arabic version above and this English version are legally equivalent. In case of any inconsistency, the Arabic version prevails.
1. Introduction
“Al-Aylah” is a private family platform for managing a family tree, events, news, and venue bookings within a single family. We respect your privacy and are committed to protecting your personal data. This policy explains what we collect, why, how we protect it, and your rights.
By using the App you agree to this policy. If you do not agree with any part of it, please do not use the App.
2. Data We Collect
We collect only what we need to run the App’s features:
Identity & profile data
- Full name (first, father’s, grandfather’s name).
- Mobile number (primary account identifier, in E.164 format).
- Email address (optional, for email/password sign-in).
- Profile photo (optional).
- Gender, honorific, bio, education/work (optional).
- Year of birth (Hijri or Gregorian), and year of death for deceased ancestors in the tree.
Family tree data
- Family relationships between members (parent, children, ancestors).
- The tree may include data on deceased relatives or minors entered by family elders.
Events & bookings
- Event details, dates, and locations (text + optional coordinates entered by the organizer).
- RSVP responses and names of external guests.
- Reservations for family venues and facilities.
Technical data
- Firebase Auth UID.
- Firebase Cloud Messaging (FCM) token for push notifications.
- Phone numbers pre-uploaded by a family admin to link future members.
Stored locally on your device only (never sent to our servers)
- Quick PIN (stored as a local hash via PBKDF2-HMAC-SHA256).
- Biometric / Face ID enrollment status.
- Preferences (theme, font scale, etc.).
We do NOT collect:
- Your geographic location automatically.
- Your contacts (the admin may read them locally for inviting external guests; they are never uploaded to our servers).
- Any behavioral analytics or advertising identifiers.
3. How We Use Your Data
- To create your account and link you to your family.
- To display the family tree, events, news, and bookings to your family members.
- To send push notifications about events, RSVPs, and family announcements.
- To manage roles (admin/member) and approval workflows.
- To secure accounts (local PIN hashing, rate-limiting failed PIN attempts).
We do not use your data for advertising, and we do not sell it to any third party.
4. Data Sharing
- Within your family: Other registered members of your family can see your name, photo, public profile info, tree position, and RSVPs according to permissions configured by your family admin.
- Outside your family: Data is isolated between families (multi-tenant) via the
/families/{familyId}/structure in Firestore. Members of other families cannot see your data. - With third parties: We do not sell or rent your data. We share it only with the infrastructure providers listed in Section 5, or when legally required.
5. Third-Party Service Providers
The App relies on Google Firebase for storage, authentication, and messaging:
- Firebase Authentication — identity verification (phone OTP, email + password).
- Cloud Firestore — storage of member, tree, and event data.
- Firebase Storage — storage of uploaded photos.
- Firebase Cloud Messaging — push notifications.
- Cloud Functions — secure server-side logic.
These services are governed by Google’s Privacy Policy: https://policies.google.com/privacy. Data may be processed on Google servers in the United States or other regions.
We do NOT use: Google Analytics, Crashlytics, advertising networks, or any tracking SDKs.
6. iOS System Permissions
- Camera: to capture profile and event photos.
- Photo Library: to pick photos from your albums.
- Face ID / Touch ID: for fast app unlock (used locally on your device only).
- Contacts: to import phone numbers when inviting external guests — read locally, never uploaded to our servers.
- Calendar: to add event dates to your device calendar (optional).
- Notifications: to receive event and RSVP push notifications.
You can revoke any permission at any time from iOS Settings.
7. Minors
The family tree may include data about minors (such as children’s names and birth years) entered by family elders. The App is not directed at children under 13, and we do not allow account creation in the name of a child under 13. A guardian who enters a minor’s data must:
- Ensure parental or legal-guardian consent.
- Limit data to the minimum necessary (name, relationship).
- Contact us to delete any minor’s data on request.
8. Data Retention & Account Deletion
We retain your data as long as your account is active. The App does not currently provide an in-app “Delete Account” button. To request deletion of your account and associated data:
- Email us from the address registered on your account at the support email in Section 13.
- We will complete the deletion within 30 days of confirming your request.
- Some data may remain in secured backups for a limited period before final deletion.
- Data that belongs to your family as a whole (such as ancestor tree nodes) may remain visible to remaining family members after your account is deleted, as it is shared family information.
The family admin can also remove a member from the family, and a platform super-admin can delete an entire family.
9. Data Security
- All traffic between the App and our servers is encrypted via HTTPS/TLS.
- The Quick PIN is never sent to our servers — it is stored as a local hash (PBKDF2-HMAC-SHA256, 100,000 iterations).
- Repeated failed PIN entries trigger temporary lockouts (5 min → 1 hour → 24 hours).
- Sensitive local data (PIN hash, biometric state) is stored in the iOS Keychain and Android EncryptedSharedPreferences.
- Firestore security rules ensure each family only sees its own data.
Despite reasonable safeguards, no electronic system is 100% secure, and you are responsible for protecting your PIN and login credentials.
10. International Data Transfers
Your data may be stored and processed on Firebase servers located outside your country (such as the United States). By using the App you consent to this transfer in accordance with Google’s policies.
11. Your Rights
You have the right to:
- Access a copy of your data.
- Correct any inaccurate data (you can edit most fields directly in the App).
- Request deletion of your account (see Section 8).
- Object to or restrict processing of your data.
- Withdraw consent at any time.
To exercise any right, contact us at the support email in Section 13.
12. Changes to This Policy
We may update this policy from time to time. The “Last Updated” date at the top will be revised, and we may notify you inside the App when material changes occur. Continued use of the App after an update constitutes acceptance of the updated policy.
13. Contact Us
For any privacy-related question or account deletion request:
- Email: albatli@gmail.com
This document is published at https://albatli.github.io/familyplatform-privacy/ and is referenced in the App’s App Store Connect listing.