سياسة الخصوصية — Fastora Business
تطبيق Fastora Business هو نظام إدارة أعمال (نقاط بيع، فواتير، مخزون، عملاء) مُوجَّه لأصحاب المتاجر وموظفيهم، يتيح التطبيق لصاحب المتجر بدء تجربة مجانية لمدة يوم واحد وإنشاء متجره وحساب المستخدم الإداري من داخل التطبيق، كما يمكن لصاحب المتجر إنشاء وإدارة حسابات المستخدمين لموظفيه. توضّح هذه السياسة بدقة ما يجمعه التطبيق فعليًا فقط، بدون أي بيانات أو صلاحيات غير مستخدمة.
1. من يتحكّم بالبيانات؟
- بيانات الحساب والمتجر: اسم المتجر، اسم صاحب المتجر، رقم الهاتف، اسم المستخدم، كلمة المرور، رمز المتجر، بيانات الجلسة، وبيانات الخطة والتجربة مثل حالة التجربة وتاريخ انتهائها. يتحكم بها مالك ومشغّل الخدمة بصفته مُشغّل الخادم الذي يستقبلها.
- بيانات عملاء المتجر (طرف ثالث): الاسم، رقم الهاتف، العنوان، الموقع الجغرافي، والملاحظات التي يُدخلها موظف المتجر عن عملائه الخاصين. هذه البيانات مملوكة ومُتحكَّم بها من قِبل صاحب المتجر نفسه بصفته "المتحكّم بالبيانات"، ونحن نعمل كمعالج تقني نخزّنها فقط لتشغيل النظام نيابةً عنه. أي طلب تعديل أو حذف لبيانات عميل يجب أن يتم من خلال صاحب المتجر مباشرة.
2. البيانات التي يجمعها التطبيق فعليًا
| البيانة | لماذا نجمعها | أين تُخزَّن/تُرسَل |
|---|---|---|
| اسم المتجر، اسم صاحب المتجر، رقم الهاتف، اسم المستخدم، كلمة المرور، رمز المتجر | إنشاء المتجر وبدء التجربة المجانية وتسجيل الدخول والمصادقة | تُرسَل إلى خادم الخدمة عبر HTTPS مشفّر عند إنشاء المتجر وعند استخدام خدمات المصادقة، بحسب الوظيفة المستخدمة |
| رمز الجلسة (JWT) وبيانات المستخدم (المعرّف، الاسم الكامل، الدور، اسم المتجر، رمز المتجر) | الحفاظ على تسجيل الدخول وتفويض الطلبات | محلي على جهازك، ويُرسَل مع كل طلب للخادم |
| رمز إشعارات Push (FCM) | إرسال إشعارات الطلبات والفواتير | يُرسَل للخادم مرتبطًا برقم المستخدم فقط |
| الموقع الجغرافي (GPS) | تحديد موقع عملاء المتجر على الخريطة، ودعم البلوتوث القريب على أندرويد أقدم من 12 | يُستخدم عند فتح شاشة موقع العميل فقط، ويُرسَل كجزء من سجل العميل |
| معلومات جهاز البلوتوث (اسم الطابعة، المعرّف، قوة الإشارة) | تذكّر الطابعة الحرارية المتصلة | محلي على جهازك فقط — لا يُرسَل لأي خادم |
| الكاميرا (بدون حفظ صورة) | مسح باركود المنتجات | معالجة فورية على الجهاز — لا صورة تُحفظ أو تُرسَل |
| صورة يختارها المستخدم (اختياري) | إرفاق صورة عند التواصل مع الدعم فقط | تُرسَل فقط إذا اختار المستخدم إرفاقها بطلب دعم |
| صوت مُحوَّل إلى نص | تعبئة حقول الفاتورة صوتيًا | يُستخدم النص فقط داخل التطبيق — لا يُخزَّن أي صوت |
| بيانات عملاء المتجر (اسم، هاتف، عنوان، ملاحظات، موقع) | إدارة سجلات العملاء (فواتير، ديون، توصيل، واتساب) | على خادم الخدمة، ومملوكة لصاحب المتجر (بند 1) |
| بيانات الاشتراك والتجربة (الخطة، حالة التجربة، وتاريخ بدء/انتهاء التجربة أو الاشتراك) | إدارة الوصول إلى الخدمة وتشغيل التجربة المجانية والاشتراك والتحقق من صلاحية الوصول | على خادم الخدمة |
| بيانات تشغيلية للمتجر (منتجات، فواتير، مخزون) | تشغيل نظام إدارة الأعمال | على خادم الخدمة |
3. بيانات لا يجمعها التطبيق إطلاقًا
- لا إعلانات ولا شبكة إعلانية.
- لا بيانات دفع أو بطاقات ائتمانية داخل التطبيق.
- لا تسجيل صوت أو مكالمات محفوظ.
- لا صور محفوظة سوى ما يختار المستخدم إرفاقه صريحًا في طلب دعم.
4. مشاركة البيانات مع أطراف ثالثة
لا نبيع بياناتك ولا نشاركها لأغراض تسويقية. تُشارَك فقط مع:
- Google Firebase: يُستخدم فقط لإرسال الإشعارات (Firebase Cloud Messaging)، وليس لأي تحليلات أو جمع بيانات استخدام.
- خدمة واتساب عبر سيرفرنا — فقط إذا فعّل صاحب المتجر إشعارات واتساب لعملائه هو.
لا تتم مشاركة أي بيانات مع أي طرف آخر خارج ما ذُكر أعلاه.
5. كيف نحمي بياناتك
- جميع الاتصالات بين التطبيق والخادم تتم عبر HTTPS مشفّر.
- كل طلب يُفوَّض برمز مصادقة (JWT) لا يمكن الوصول للبيانات بدونه.
- كلمات المرور لا تُخزَّن على الجهاز، ويتم التحقق منها فقط عبر الخادم.
- الوصول لبيانات المتجر مقيَّد برمز المتجر الخاص بكل عميل تجاري.
6. الاحتفاظ بالبيانات وحذفها
- موظف/مستخدم في متجر: تواصل مع صاحب المتجر الذي زوّدك بحساب الدخول — فهو المسؤول عن إدارة الحسابات وإلغائها.
- صاحب متجر: إذا أنشأت متجرك وحسابك بنفسك من داخل التطبيق، يمكنك طلب حذف حسابك وجميع بياناته (بما فيها بيانات عملائك المخزَّنة) من خلال صفحة طلب حذف الحساب والبيانات أو عبر mwsawafta@gmail.com، وسيُنفَّذ الحذف خلال فترة معقولة بعد التحقق من هويتك كمالك للحساب.
- البيانات المخزَّنة محليًا فقط (كبيانات الطابعة) تُحذف تلقائيًا عند تسجيل الخروج أو حذف التطبيق.
7. خصوصية الأطفال
هذا التطبيق مُوجَّه للاستخدام التجاري (B2B) من قبل أصحاب المتاجر وموظفيهم البالغين، ولا يستهدف الأطفال، ولا يُجمَع عمدًا أي بيانات من أطفال دون السن القانونية.
8. تعديلات على هذه السياسة
قد تُحدَّث هذه السياسة عند إضافة ميزات تجمع بيانات إضافية. سيُنشَر أي تحديث على هذه الصفحة مع تعديل تاريخ "آخر تحديث" أعلاه.
لطلب حذف الحساب والبيانات: eylora.store/delete-account
للتفعيل أو التجديد أو المساعدة: 00962 787 323 187
Privacy Policy — Fastora Business
Fastora Business is a business-management app (point of sale, invoicing, inventory, customer records) built for shop owners and their staff. The app allows a shop owner to start a one-day free trial and create a store and its initial administrator account directly in the app. Shop owners can also create and manage staff accounts. This policy describes exactly what the app actually collects — nothing more, nothing assumed.
1. Who controls the data?
- Account and store data: shop name, owner name, phone number, username, password, store code, session data, and plan/trial information such as trial status and expiration date. Controlled by the app's owner/operator, who runs the backend server that receives it.
- Shop customer data (third parties): name, phone number, address, location, and notes entered by shop staff about the shop's own customers. This data is owned and controlled by the shop owner as the Data Controller; we act only as a technical Data Processor storing it to run the system on their behalf. Any correction or deletion request for a customer's data must go through the shop owner.
2. Data the app actually collects
| Data | Why we collect it | Where it is stored / sent |
|---|---|---|
| Shop name, owner name, phone number, username, password, store code | Creating the store, starting the free trial, login, and authentication | Sent over encrypted HTTPS when creating the store and when using authentication services, as applicable |
| Session token (JWT) and user data (id, full name, role, shop name, store code) | Staying signed in; authorizing requests | Stored locally on device; sent with every server request |
| Push notification token (FCM) | Sending order/invoice notifications | Sent to the server linked only to your user id |
| Location (GPS) | Pinning a shop customer's location on the map; supporting nearby Bluetooth pairing on Android older than 12 | Used only on the customer-location screen; sent as part of that customer's record |
| Bluetooth printer info (name, id, signal strength) | Remembering the paired thermal printer | Stored locally on device only — never sent to any server |
| Camera (no image saved) | Scanning product barcodes | Processed instantly on-device — no image saved or sent |
| User-selected photo (optional) | Attaching a screenshot to a support request only | Sent only if explicitly attached to a support request |
| Voice converted to text | Filling invoice fields by voice | Only the resulting text is used — no audio is stored |
| Shop customer records (name, phone, address, notes, location) | Managing the shop's own customers (invoicing, debts, delivery, WhatsApp reminders) | On the service's server; owned by the shop owner (Section 1) |
| Subscription and trial data (plan, trial status, and trial start/expiration date) | Managing access to the service, operating the free trial and subscription, and checking access validity | On the service's server |
| Shop business data (products, invoices, inventory) | Running the business-management system | On the service's server |
3. Data the app does NOT collect
- No ads and no advertising network.
- No payment or card data processed in-app.
- No stored calls or voice recordings.
- No saved camera/gallery photos, except one the user explicitly attaches to a support request.
4. Sharing data with third parties
We do not sell your data or share it for marketing. Data is shared only with:
- Google Firebase: used only to send push notifications (Firebase Cloud Messaging) — not for any analytics or usage-data collection.
- WhatsApp messaging via our own server — only if the shop owner enables WhatsApp notifications to their own customers.
No data is shared with any other party beyond what is listed above.
5. How we protect your data
- All app–server communication uses encrypted HTTPS.
- Every request is authorized by a JWT token; data cannot be accessed without it.
- Passwords are never stored on-device and are verified only by the server.
- Access to a shop's data is scoped to that shop's own Store Code.
6. Data retention and deletion
- Staff/user at a shop: contact the shop owner who issued your login — they manage and can deactivate accounts.
- Shop owner: if you created your store and account directly in the app, you may request deletion of your account and all associated data (including stored customer records) through the account and data deletion request page or via mwsawafta@gmail.com. Deletion is carried out within a reasonable time after verifying your identity as the account owner.
- Data stored only locally on your device (e.g. the saved printer) is removed automatically on logout or app uninstall.
7. Children's privacy
This app is intended for business (B2B) use by adult shop owners and staff. It is not directed at children, and we do not knowingly collect data from children under the legal age.
8. Changes to this policy
This policy may be updated when new features that collect additional data are added. Updates will be published on this page with a revised "Last updated" date above.
Account and data deletion request page: eylora.store/delete-account
For activation, renewal, or assistance: 00962 787 323 187