Privacy Policy for Rafiq
Rafiq is a quiet Islamic companion: prayer times and adhan reminders, qibla, the Qur'an with recitation, adhkar and tasbih, duas, the Hijri calendar, audio collections, home widgets and share cards. It has no accounts and no backend of ours. This page explains what it keeps on your device, what leaves it, and to whom.
The short version
No accounts, no ads, no data selling, and no server owned by Rafiq. Your settings, bookmarks, reading progress, tasbih and adhkar counts, prayer tracker and audio history stay on your device only. The app talks to public Islamic and map APIs to fetch content, and sends anonymous usage events to improve itself.
Location is optional
Used to compute prayer times and qibla for where you are, only while the app is open. Deny it and you can search for your city instead.
Nothing you write is collected
Search text, bookmarks, greeting names and what you read never go to analytics. Your coordinates never go to analytics either.
Reminders are local
Adhan, pre-adhan and salawat notifications are scheduled on the device. No push server, no device token, no message from us.
Uninstalling is the erase button
There is no account to delete and no copy of your data with us. Removing the app removes everything it stored.
1. Who we are and what this covers
Rafiq (com.mohamedgado.rafiq) is built and operated by one person, Mohamed
Gado. This policy covers the Rafiq Android app, any future iOS release, and this page
itself. The page sets no cookies and loads nothing from another host.
You can open this policy from inside the app at any time: Settings, then Privacy policy.
2. No accounts, no server of ours
There is no sign-up, no sign-in, no profile and no sync. Rafiq operates no backend: every data source it uses is a public API run by someone else, and your device talks to those directly. There is no database of ours with users in it, because there is no database of ours at all.
The practical consequence is the strongest privacy statement we can make: we cannot see what you read, what you bookmark, when you pray, or where you are, because none of it is ever sent to us.
Most of the app also works with no network at all: prayer times can be computed on the device, and adhkar, duas, tasbih, the Hijri calendar and the full Qur'an text are bundled inside the app.
3. What stays on your device
Rafiq stores its data in a key-value store, a bundled read-only SQLite database for the Qur'an, and its own app-private files directory. All of the following is local and never uploaded:
- Settings: language, theme, calculation method, Asr school, calendar system, reciter, reading mode, translation edition, notification and salawat preferences, haptics.
- Your place: the coordinates and city label you detected or searched for, kept so prayer times work offline and widgets can refresh.
- Qur'an reading: bookmarks, last position for resume, and any mushaf page fonts the app downloaded for offline reading.
- Audio: playback history, bookmarks and where you stopped in a recitation or a collection.
- Worship counters: tasbih programs and counts, adhkar session progress, the salawat counter behind the home widget, and the prayer tracker you tick each day.
- Share drafts: the text or name you type into a greeting or share card, and the images the app renders from them.
- A cache of API responses (prayer times and calendar data) so the app opens instantly and works offline.
4. Location, prayer times and the calendar
Location is optional and requested only while you are using the app. Rafiq never asks for background location, and there is no location history, no movement profile and no advertising use.
When you grant it, your coordinates are used in three ways:
- Sent to the Aladhan API to calculate prayer times and the monthly prayer and Hijri calendar for your area.
- Sent to BigDataCloud once, to turn the coordinates into a country and city name for display.
- Used on the device to compute prayer times locally with the open-source adhan library, which is what keeps prayer times and home widgets correct while offline.
The coordinates are saved on your device so the app need not ask again. They are not stored by us, not linked to an identity, and never sent to analytics.
If you deny the permission, you can search for a city by name instead. That search sends the text you typed to Open-Meteo's geocoding service and nothing else.
5. Qibla and device sensors
The qibla compass reads your device's magnetometer and accelerometer through the OS while the qibla screen is open, and combines them with your coordinates to draw the direction. Sensor readings never leave the device, are not recorded, and are not sent to any API.
The app explicitly blocks the physical-activity recognition and microphone permissions at build time, so it cannot detect your movement or listen to anything.
6. Qur'an text, page fonts and translations
- The Arabic text ships inside the app as a read-only database, so reading the Qur'an needs no network and produces no requests.
- Mushaf page fonts for the page-accurate reading mode are downloaded per page from Quran Foundation's font host and cached in the app's own storage. The request contains a page number.
- Translations are fetched from AlQuran Cloud by surah and edition identifier.
- Word-by-word highlight timings come from the Quran.com API, requested by reciter id and surah number.
None of those requests carries an identifier, an account, or anything about you.
7. Recitation and audio collections
Per-ayah recitation is streamed from Islamic Network's CDN, or from everyayah.com for the reciters that CDN does not carry. Lecture and nasheed collections, and their cover artwork, are streamed from the Internet Archive. Each request asks for a file, and carries nothing about you.
Playback continues in the background through a media foreground service, which is why the app declares the media-playback service permissions in section 12. What you listened to, and where you stopped, is written only to your device.
8. Notifications, exact alarms and widgets
Every notification Rafiq shows is local: adhan and pre-adhan reminders, salawat reminders, and the prompts you enable in Settings. They are scheduled on your device from prayer times your device already has.
Prayer reminders must fire at an exact minute to be useful, so the app uses Android's exact-alarm permission and reschedules your alarms after a reboot. There is no push server and no device token: nothing about you is sent anywhere in order to remind you.
Home-screen widgets (next prayer, salawat, the counter, and the combined widget) are drawn by the app on your device from the same local data, on the refresh interval Android gives them.
9. Share cards, greetings and QR codes
Rafiq can render a share card, a greeting or an ayah image. The image is composed on your device, written to the app's cache directory, and handed to Android's share sheet, so it goes only where you send it. We never receive a copy, and from there the receiving app's privacy policy applies.
A name or dedication you type into a greeting stays on your device and is only baked into the image you chose to share. The QR code printed on a card encodes the app's Google Play link, nothing else: it carries no identifier and cannot be traced back to you.
10. Analytics and crash reporting
To see which screens and features are actually used and where the app crashes, Rafiq sends usage events to PostHog (EU region) and to Expo EAS Observe, which also collects startup and navigation performance.
What is sent
-
Event names from a fixed list defined in the app's source, for example
screen_view,quran_surah_opened,audio_started,tasbih_completed,bookmark_toggled,qibla_aligned,theme_changed,notifications_scheduled. - Low-cardinality properties beside the event: a surah or reciter identifier, a category name, counts, enums and booleans. A search event carries the scope and the number of results, never the text you typed. A location event carries only whether the place came from GPS or from a search.
- Your current app preferences as profile traits: language, theme, calculation method and similar settings, so usage can be broken down by them.
- Technical context: app version, platform and OS version, device model, launch and navigation timings.
- Errors: uncaught JavaScript exceptions, unhandled promise rejections and errors caught by the app's own boundaries, with stack traces.
- Crashes, including the ones that never reach JavaScript. Android records every abnormal end of the app's process — the reason, the killing signal and, for a native crash, the stack of the thread that died — and Rafiq forwards those records the next time you open it, together with the app version and the time of the crash. It also notes when a previous run ended without shutting down cleanly, and how long it had been running. None of this carries anything you read, typed or saved.
- An identifier that is random and generated on your device. Since Rafiq has no accounts, there is nothing to attach it to: no name, no email, no phone number, no advertising id.
- An approximate country and city, worked out by the analytics service from the internet address your device connects from — never from the location you set in the app. The address itself is anonymised as it arrives and is not stored. This is what lets usage be read by country.
What is never sent
- The location you gave the app: your coordinates and the city you set or searched for never enter any event or property.
- Anything you read, type, bookmark or dedicate: search text, greeting names, bookmark contents, notes.
- Your name, email address, contacts or installed-app list.
- No session replay, no screen recording, no keystroke capture, no advertising identifier, and no advertising or attribution SDK. The app contains none.
This version has no in-app switch to turn analytics off. If you want yours stopped or deleted, email the address in section 19 and it will be done.
11. App updates and rating
- Over-the-air updates: the app can fetch a JavaScript update from Expo's update service. The request carries the app version, the release channel, the runtime version and the platform, and nothing personal.
- Store updates: when a new version is on Google Play, the app can show Play's own in-app update prompt. That exchange is between your device and Google Play.
- Rating: the rate action opens Google Play's rating dialog. We never see more than the public review anyone can read.
12. Android permissions
| Permission | Asked? | Why |
|---|---|---|
| Location, coarse and fine | Asked | Prayer times and qibla for where you are. Foreground only |
| Notifications | Asked | Adhan, pre-adhan and salawat reminders |
| Exact alarms | Automatic | Firing a prayer reminder at the exact minute rather than whenever Android feels like it |
| Foreground service, media playback | Automatic | Keeping recitation and lectures playing when you leave the app |
| Modify audio settings | Automatic | Handling audio focus, so playback ducks and resumes correctly |
| Internet, network state, Wi-Fi state | Automatic | Fetching prayer times, Qur'an audio and translations, and detecting offline |
| Vibrate | Automatic | Haptic feedback on counters and taps |
| Wake lock | Automatic | Finishing a scheduled notification or an audio handoff before the device sleeps |
| Run after restart | Automatic | Rescheduling your prayer alarms after a reboot |
| Read and write storage (Android 12 and earlier) | Legacy | Old-Android file access inside libraries we depend on |
| Launcher badge permissions | Automatic | Drawing a count on the app icon on launchers that support it. Cosmetic only |
| Draw over other apps | Never used | Declared by the React Native tooling the app is built with. Rafiq draws no overlay, and Android grants this only if you switch it on yourself in system settings |
That is the complete list. Rafiq does not request the microphone, the camera, contacts, SMS, call logs, your photo library, your installed-app list, physical-activity recognition, or background location. The microphone and activity-recognition permissions that arrived through libraries are explicitly stripped from the manifest at build time.
13. How we secure data
What is not collected cannot leak. That is Rafiq's first security measure: no account, no password, no server, and no central database of users to breach. Beyond that:
- All network traffic uses HTTPS with certificate validation, and the release build permits no cleartext traffic.
- Your settings, bookmarks, counters and downloaded fonts live in app-private storage that Android isolates from other apps.
- The app ships no secret keys, because every source it uses is a free public API. There is nothing in the package worth stealing.
- Permissions are kept to the minimum, and unused ones are stripped (section 12).
Nobody, including the developer, can read your bookmarks or your prayer tracker remotely. If you find a vulnerability, email us before disclosing it publicly.
14. Retention and deletion
- On-device data is kept until you delete it in the app, uninstall, or clear the app's storage in Android settings. Any of those removes it permanently.
- There is no account to delete and no copy of your content with us, so there is nothing to request.
- Analytics events are held by PostHog and Expo under their own retention windows, keyed to the random per-install identifier from section 10, and deleted on request.
- Images you shared live wherever you sent them, so delete them from that destination.
15. Your rights
If you are in the EU, the UK, or California, you have rights of access, correction, deletion and objection. In practice:
- Everything the app knows about you is on your device, under your direct control, and you can inspect or wipe it without asking anyone.
- We do not sell your data, do not share it for advertising, and do not build advertising profiles from it.
- The legal basis for the anonymous analytics in section 10 is our legitimate interest in keeping the app working and improving it. Email us to have yours deleted.
16. Children's privacy
Rafiq is not directed at children under 13 and does not knowingly collect personal information from them. It has no accounts, no chat, no user-generated content and no ads, so there is nothing for a child to submit to us.
17. Third-party services
These are every service your device contacts, and what it sends. Their own privacy policies govern what they do with a request:
| Service | Purpose | What is sent |
|---|---|---|
| Aladhan | Prayer times and the monthly prayer and Hijri calendar | Coordinates, date, calculation method |
| BigDataCloud | Turning coordinates into a city name | Coordinates, only with your permission |
| Open-Meteo | Searching for a city by name | The city text you typed |
| AlQuran Cloud | Qur'an translations | Surah number and edition id |
Quran Foundation
(api.quran.com, mushaf fonts)
|
Word-by-word timings and mushaf page fonts | Reciter id, surah number, page number |
| Islamic Network CDN and everyayah.com | Per-ayah recitation audio | The audio file path requested |
| Internet Archive | Audio collections and cover artwork | The item and file requested |
| GitHub Pages (this site) | The adhkar recitations, served from the same site as this policy | The audio file requested |
| PostHog | Usage analytics and error tracking, EU region | A random id, event names, app preferences, stack traces |
| Expo | Over-the-air updates and performance metrics | App version, channel, platform, device model, timings |
| Google Play | Distribution, in-app updates, the rating dialog | Whatever Play needs for a download or an update, on your request |
There is no advertising network, no attribution SDK and no data broker in this list, and none in the app.
18. Changes to this policy
We update this page whenever a feature or a data source changes. The date at the top reflects the current version, the full history is public in this page's GitHub repository, and material changes are called out in the app's release notes.
19. Contact
For any privacy question, or to have your analytics data deleted: boogado@yahoo.com
Developer: Mohamed Gado · App: Rafiq (com.mohamedgado.rafiq)
سياسة الخصوصية لتطبيق رفيق
رفيق تطبيق إسلامي هادئ: مواقيت الصلاة وتنبيهات الأذان، والقبلة، والقرآن الكريم مع التلاوة، والأذكار والتسبيح، والأدعية، والتقويم الهجري، والمكتبة الصوتية، وودجات الشاشة الرئيسية، وبطاقات المشاركة. ليس فيه حسابات ولا خادم يملكه. توضّح هذه الصفحة ما يبقى على جهازك، وما يغادره، وإلى مَن.
باختصار
لا حسابات، ولا إعلانات، ولا بيع بيانات، ولا خادم يملكه رفيق. إعداداتك وعلاماتك المرجعية وتقدّم القراءة وعدّادات التسبيح والأذكار ومتابعة الصلاة وسجل الصوت تبقى على جهازك فقط. ويتصل التطبيق بواجهات إسلامية وخرائطية عامة لجلب المحتوى، ويرسل أحداث استخدام مجهولة الهوية لتحسين نفسه.
الموقع اختياري
يُستخدم لحساب مواقيت الصلاة والقبلة في مكانك، وأثناء فتح التطبيق فقط. وإن رفضتَه فابحث عن مدينتك بالاسم.
ما تكتبه لا يُجمَع
نص البحث والعلامات المرجعية وأسماء التهاني وما تقرأه لا يذهب إلى القياسات، وكذلك إحداثياتك لا تذهب إليها أبدًا.
التنبيهات محلية
تنبيهات الأذان وما قبله والصلاة على النبي ﷺ تُجدوَل على الجهاز. لا خادم دفع، ولا رمز جهاز، ولا رسالة منّا.
حذف التطبيق هو زر المحو
لا يوجد حساب لتحذفه ولا نسخة من بياناتك لدينا. وإزالة التطبيق تمحو كل ما خزّنه.
١. من نحن ونطاق السياسة
رفيق (com.mohamedgado.rafiq) يطوّره ويشغّله فرد واحد: محمد جادو. تغطي هذه
السياسة تطبيق رفيق على أندرويد، وأي إصدار مستقبلي على iOS، وتغطي كذلك هذه الصفحة نفسها.
الصفحة لا تضع كوكيز ولا تحمّل أي ملف من خادم آخر.
يمكنك فتح هذه السياسة من داخل التطبيق في أي وقت: الإعدادات ← سياسة الخصوصية.
٢. لا حسابات ولا خادم لنا
لا تسجيل ولا دخول ولا ملف شخصي ولا مزامنة. رفيق لا يشغّل أي خادم: كل مصادر بياناته واجهات عامة يديرها غيرنا، وجهازك يتصل بها مباشرة. لا توجد قاعدة بيانات لنا فيها مستخدمون، لأنه لا توجد قاعدة بيانات لنا من الأصل.
والنتيجة العملية هي أقوى ما نستطيع قوله عن الخصوصية: لا نستطيع أن نرى ما تقرأه، ولا ما تحفظه، ولا مواعيد صلاتك، ولا مكانك، لأن شيئًا من ذلك لا يُرسل إلينا إطلاقًا.
ومعظم التطبيق يعمل كذلك بلا إنترنت: مواقيت الصلاة يمكن حسابها على الجهاز، والأذكار والأدعية والتسبيح والتقويم الهجري ونص القرآن الكريم كامل مضمَّنة داخل التطبيق.
٣. ما يبقى على جهازك
يخزّن رفيق بياناته في مخزن مفاتيح وقيم، وقاعدة بيانات SQLite مضمَّنة للقراءة فقط للقرآن، ومجلد ملفات خاص بالتطبيق. وكل ما يلي محلي ولا يُرفع أبدًا:
- الإعدادات: اللغة، والسمة، وطريقة الحساب، ومذهب العصر، ونظام التقويم، والقارئ، ونمط القراءة، ونسخة الترجمة، وتفضيلات الإشعارات والصلاة على النبي ﷺ، والاهتزاز.
- مكانك: الإحداثيات واسم المدينة الذي حدّدته أو بحثت عنه، محفوظة لتعمل المواقيت بلا اتصال وتتحدّث الودجات.
- قراءة القرآن: العلامات المرجعية، وآخر موضع للمتابعة، وأي خطوط صفحات مصحف نزّلها التطبيق للقراءة بلا اتصال.
- الصوت: سجل التشغيل، والعلامات المرجعية، وموضع التوقّف في تلاوة أو مجموعة.
- عدّادات العبادة: برامج التسبيح وأعداده، وتقدّم جلسات الأذكار، وعدّاد الصلاة على النبي ﷺ خلف الودجة، ومتابعة الصلوات التي تعلّمها كل يوم.
- مسوّدات المشاركة: النص أو الاسم الذي تكتبه في تهنئة أو بطاقة، والصور التي يرسمها التطبيق منها.
- ذاكرة مؤقتة لردود الواجهات (المواقيت وبيانات التقويم) ليفتح التطبيق فورًا ويعمل بلا اتصال.
٤. الموقع ومواقيت الصلاة والتقويم
إذن الموقع اختياري ويُطلب فقط أثناء استخدامك للتطبيق. ورفيق لا يطلب الموقع في الخلفية أبدًا، ولا يوجد سجل مواقع ولا ملف تحرّكات ولا أي استخدام إعلاني.
وعند منحك الإذن تُستخدم إحداثياتك في ثلاثة أوجه:
- تُرسل إلى واجهة Aladhan لحساب مواقيت الصلاة والتقويم الشهري للمواقيت والتاريخ الهجري لمنطقتك.
- تُرسل إلى BigDataCloud مرة واحدة لتحويل الإحداثيات إلى اسم دولة ومدينة للعرض.
- تُستخدم على الجهاز لحساب المواقيت محليًا عبر مكتبة adhan مفتوحة المصدر، وهذا ما يجعل المواقيت والودجات صحيحة بلا اتصال.
وتُحفظ الإحداثيات على جهازك كي لا يسأل التطبيق مرة أخرى. ولا نخزّنها نحن، ولا تُربط بهوية، ولا تُرسل إلى القياسات أبدًا.
وإن رفضت الإذن فيمكنك البحث عن مدينة بالاسم، ويرسل هذا البحث النص الذي كتبته إلى خدمة البحث الجغرافي في Open-Meteo ولا شيء غيره.
٥. القبلة ومستشعرات الجهاز
تقرأ بوصلة القبلة مستشعر المجال المغناطيسي ومقياس التسارع في جهازك عبر النظام أثناء فتح شاشة القبلة، وتدمجهما مع إحداثياتك لرسم الاتجاه. قراءات المستشعرات لا تغادر الجهاز ولا تُسجَّل ولا تُرسل إلى أي واجهة.
ويحجب التطبيق صراحةً إذن تتبّع النشاط البدني وإذن الميكروفون وقت البناء، فلا يستطيع رصد حركتك ولا الاستماع إلى أي شيء.
٦. نص القرآن وخطوط المصحف والترجمات
- النص العربي مضمَّن داخل التطبيق كقاعدة بيانات للقراءة فقط، فقراءة القرآن لا تحتاج شبكة ولا تُنتج أي طلب.
- خطوط صفحات المصحف لنمط القراءة المطابق للصفحة تُنزَّل صفحةً صفحةً من مضيف خطوط مؤسسة القرآن وتُحفظ في مخزن التطبيق. ويحمل الطلب رقم صفحة.
- الترجمات تُجلب من AlQuran Cloud برقم السورة ومعرّف النسخة.
- توقيتات إبراز الكلمات تأتي من واجهة Quran.com، وتُطلب بمعرّف القارئ ورقم السورة.
ولا يحمل أي من هذه الطلبات معرّفًا ولا حسابًا ولا أي شيء عنك.
٧. التلاوة والمكتبة الصوتية
تلاوة الآية تُبَثّ من شبكة Islamic Network، أو من everyayah.com للقرّاء الذين لا تحملهم تلك الشبكة. والمحاضرات والأناشيد وصورها تُبَثّ من أرشيف الإنترنت. وكل طلب يسأل عن ملف، ولا يحمل شيئًا عنك.
ويستمر التشغيل في الخلفية عبر خدمة وسائط في المقدمة، ولهذا يُعلن التطبيق أذونات خدمة الوسائط في القسم ١٢. وما سمعتَه وموضع توقّفك يُكتبان على جهازك فقط.
٨. الإشعارات والمنبّهات الدقيقة والودجات
كل إشعار يعرضه رفيق محلي: تنبيهات الأذان وما قبله، وتنبيهات الصلاة على النبي ﷺ، والتنبيهات التي تفعّلها من الإعدادات. وتُجدوَل على جهازك من مواقيت موجودة عليه بالفعل.
وتنبيه الصلاة يجب أن يطلق في دقيقته بالضبط ليكون نافعًا، لذا يستخدم التطبيق إذن المنبّه الدقيق في أندرويد ويعيد جدولة منبّهاتك بعد إعادة التشغيل. ولا يوجد خادم دفع ولا رمز جهاز: لا يُرسل شيء عنك إلى أي مكان من أجل تذكيرك.
وودجات الشاشة الرئيسية (الصلاة القادمة، والصلاة على النبي ﷺ، والعدّاد، والودجة المدمجة) يرسمها التطبيق على جهازك من البيانات المحلية نفسها، وفق فترة التحديث التي يمنحها أندرويد.
٩. بطاقات المشاركة والتهاني ورمز QR
يستطيع رفيق رسم بطاقة مشاركة أو تهنئة أو صورة آية. وتُركَّب الصورة على جهازك، وتُكتب في مجلد التخزين المؤقت للتطبيق، ثم تُسلَّم لقائمة المشاركة في أندرويد، فتذهب حيث ترسلها أنت فقط. نحن لا نستلم نسخة، وبعد ذلك تحكمها سياسة التطبيق المستقبِل.
والاسم أو الإهداء الذي تكتبه في التهنئة يبقى على جهازك، ولا يظهر إلا داخل الصورة التي اخترت مشاركتها. ورمز QR المطبوع على البطاقة يحمل رابط التطبيق على جوجل بلاي ولا شيء غيره: لا يحمل أي معرّف ولا يمكن تتبّعه إليك.
١٠. قياسات الاستخدام وتقارير الأعطال
لمعرفة الشاشات والميزات المستخدمة فعلًا وأين يتعطّل التطبيق، يرسل رفيق أحداث استخدام إلى PostHog (منطقة الاتحاد الأوروبي) وإلى EAS Observe من Expo التي تجمع كذلك مقاييس الإقلاع والتنقّل.
ما يُرسل
-
أسماء أحداث من قائمة ثابتة معرّفة في كود التطبيق، مثل
screen_viewوquran_surah_openedوaudio_startedوtasbih_completedوbookmark_toggledوqibla_alignedوtheme_changedوnotifications_scheduled. - خصائص منخفضة التنوّع مع الحدث: معرّف سورة أو قارئ، واسم قسم، وأعداد وقيم محدّدة ومنطقية. وحدث البحث يحمل النطاق وعدد النتائج، لا النص الذي كتبته. وحدث الموقع يحمل فقط ما إذا كان المكان من GPS أو من بحث.
- تفضيلاتك الحالية كخصائص ملف: اللغة والسمة وطريقة الحساب وما شابه، لتحليل الاستخدام بحسبها.
- سياق تقني: إصدار التطبيق والمنصّة وإصدار النظام وطراز الجهاز وأزمنة الإقلاع والتنقّل.
- الأخطاء: استثناءات JavaScript غير المعالَجة، ورفض الوعود، والأخطاء التي تلتقطها حدود التطبيق، مع أثر التنفيذ.
- الأعطال، بما فيها ما لا يصل إلى JavaScript أصلًا. يسجّل أندرويد كل انتهاء غير طبيعي لعملية التطبيق — السبب، والإشارة التي أنهته، وأثر تنفيذ الخيط الذي مات في العطل البرمجي — ويرسل رفيق هذه السجلات عند فتحه في المرة التالية، ومعها إصدار التطبيق ووقت العطل. ويسجّل كذلك أن تشغيلًا سابقًا انتهى دون إغلاق سليم، وكم دام قبل ذلك. ولا يحمل شيء من هذا ما قرأتَه أو كتبتَه أو حفظتَه.
- معرّف عشوائي يُولَّد على جهازك. ولأن رفيق بلا حسابات فلا يوجد ما يُربط به: لا اسم، ولا بريد، ولا رقم هاتف، ولا معرّف إعلاني.
- دولة ومدينة تقريبيّتان تستنتجهما خدمة القياسات من عنوان الإنترنت الذي يتصل منه جهازك، لا من الموقع الذي حدّدته في التطبيق. والعنوان نفسه يُجهَّل فور وصوله ولا يُخزَّن، وبهذا يمكن قراءة الاستخدام حسب الدولة.
ما لا يُرسل أبدًا
- الموقع الذي أعطيته للتطبيق: إحداثياتك والمدينة التي حدّدتها أو بحثت عنها لا تدخل أي حدث أو خاصية.
- أي شيء تقرأه أو تكتبه أو تحفظه أو تُهديه: نص البحث، وأسماء التهاني، ومحتوى العلامات المرجعية، والملاحظات.
- اسمك أو بريدك أو جهات اتصالك أو قائمة تطبيقاتك.
- لا تسجيل للجلسة، ولا تسجيل للشاشة، ولا التقاط لما تكتبه، ولا معرّف إعلاني، ولا أي حزمة إعلانات أو إحالة. التطبيق لا يحتوي أيًّا منها.
لا يوجد في هذا الإصدار مفتاح داخلي لإيقاف القياسات. إن رغبت في إيقافها أو حذف بياناتك، راسلنا على البريد في القسم ١٩ وسننفّذ ذلك.
١١. التحديثات والتقييم
- التحديثات الفورية: يمكن للتطبيق جلب تحديث JavaScript من خدمة تحديثات Expo. ويحمل الطلب إصدار التطبيق وقناة الإصدار وإصدار وقت التشغيل والمنصّة، ولا شيء شخصيًا.
- تحديثات المتجر: عند وجود إصدار جديد على جوجل بلاي يمكن للتطبيق عرض نافذة التحديث الخاصة ببلاي. وهذا تبادل بين جهازك وجوجل بلاي.
- التقييم: يفتح زر التقييم نافذة التقييم الخاصة بجوجل بلاي، ولا نرى أكثر من التقييم العام الذي يراه الجميع.
١٢. أذونات أندرويد
| الإذن | يُطلب منك؟ | السبب |
|---|---|---|
| الموقع، التقريبي والدقيق | يُطلب منك | مواقيت الصلاة والقبلة في مكانك. أثناء الاستخدام فقط |
| الإشعارات | يُطلب منك | تنبيهات الأذان وما قبله والصلاة على النبي ﷺ |
| المنبّهات الدقيقة | تلقائي | إطلاق تنبيه الصلاة في دقيقته بالضبط، لا وقت ما يشاء النظام |
| خدمة في المقدمة لتشغيل الوسائط | تلقائي | استمرار التلاوة والمحاضرات بعد خروجك من التطبيق |
| تعديل إعدادات الصوت | تلقائي | إدارة تركيز الصوت، ليخفت التشغيل ويعود بشكل صحيح |
| الإنترنت وحالة الشبكة والواي فاي | تلقائي | جلب المواقيت والتلاوة والترجمات، ومعرفة أنك دون اتصال |
| الاهتزاز | تلقائي | الاستجابة اللمسية في العدّادات واللمسات |
| إبقاء المعالج مستيقظًا | تلقائي | إتمام إشعار مجدول أو تسليم صوتي قبل أن ينام الجهاز |
| التشغيل بعد إعادة التشغيل | تلقائي | إعادة جدولة منبّهات الصلاة بعد إعادة تشغيل الجهاز |
| قراءة وكتابة التخزين (أندرويد ١٢ فأقل) | قديم | وصول الملفات في الإصدارات القديمة داخل مكتبات نعتمد عليها |
| أذونات شارة المشغّل | تلقائي | رسم عدد على أيقونة التطبيق في المشغّلات التي تدعمه. شكلي فقط |
| الرسم فوق التطبيقات الأخرى | غير مستخدم | تُعلنه أدوات React Native التي بُني بها التطبيق. رفيق لا يرسم أي طبقة فوق غيره، وأندرويد لا يمنح هذا الإذن إلا إذا فعّلتَه بنفسك من إعدادات النظام |
هذه هي القائمة الكاملة. لا يطلب رفيق الميكروفون ولا الكاميرا ولا جهات الاتصال ولا الرسائل ولا سجل المكالمات ولا مكتبة صورك ولا قائمة تطبيقاتك ولا تتبّع النشاط البدني ولا الموقع في الخلفية. وإذنا الميكروفون وتتبّع النشاط اللذان دخلا مع المكتبات يُزالان صراحةً من ملف البيان وقت البناء.
١٣. تأمين البيانات
ما لا يُجمع لا يمكن أن يُسرَّب. هذا أول إجراء أمني في رفيق: لا حساب، ولا كلمة مرور، ولا خادم، ولا قاعدة بيانات مركزية للمستخدمين يمكن اختراقها. وإضافة إلى ذلك:
- كل حركة الشبكة تجري عبر HTTPS مع التحقق من الشهادات، ونسخة الإنتاج لا تسمح بأي اتصال غير مشفّر.
- إعداداتك وعلاماتك وعدّاداتك والخطوط المنزّلة توجد في تخزين خاص بالتطبيق يعزله أندرويد عن بقية التطبيقات.
- لا يحتوي التطبيق أي مفاتيح سرّية، لأن كل مصادره واجهات عامة مجانية. فلا يوجد ما يُسرق من داخل الحزمة.
- الأذونات مقصورة على أقل ما يلزم، وغير المستخدَم منها يُزال (القسم ١٢).
لا يمكن لأي شخص، بمن فيهم المطوّر، الاطلاع عن بُعد على علاماتك المرجعية أو متابعة صلاتك. وإن وجدت ثغرة أمنية، راسلنا قبل نشرها.
١٤. الاحتفاظ بالبيانات وحذفها
- بيانات الجهاز تبقى حتى تحذفها من التطبيق، أو تحذف التطبيق، أو تمسح بياناته من إعدادات أندرويد. وأيٌّ من ذلك يمحوها نهائيًا.
- لا يوجد حساب لتحذفه ولا نسخة من محتواك لدينا، فلا يوجد ما تطلبه.
- أحداث القياس تحتفظ بها PostHog وExpo وفق سياساتهما، مرتبطة بالمعرّف العشوائي المذكور في القسم ١٠، وتُحذف بناءً على طلبك.
- الصور التي شاركتَها توجد حيث أرسلتَها، فاحذفها من مكانها.
١٥. حقوقك
إن كنت في الاتحاد الأوروبي أو المملكة المتحدة أو كاليفورنيا، فلك حقوق الوصول والتصحيح والحذف والاعتراض. عمليًا:
- كل ما يعرفه التطبيق عنك موجود على جهازك وتحت سيطرتك المباشرة، ويمكنك مراجعته أو محوه بلا استئذان أحد.
- لا نبيع بياناتك، ولا نشاركها لأغراض إعلانية، ولا نبني منها ملفات إعلانية.
- الأساس القانوني للقياسات المجهولة في القسم ١٠ هو مصلحتنا المشروعة في إبقاء التطبيق عاملًا وتحسينه. وراسلنا لحذف بياناتك.
١٦. خصوصية الأطفال
رفيق غير موجَّه للأطفال دون ١٣ عامًا، ولا يجمع عن قصد أي معلومات شخصية منهم. وهو بلا حسابات وبلا محادثات وبلا محتوى ينشره المستخدمون وبلا إعلانات، فلا يوجد ما يرسله طفل إلينا.
١٧. خدمات الغير
هذه كل الخدمات التي يتصل بها جهازك، وما يُرسل إليها. ويحكم تعاملها مع الطلب سياسة الخصوصية الخاصة بها:
| الخدمة | الغرض | ما يُرسل |
|---|---|---|
| Aladhan | مواقيت الصلاة والتقويم الشهري للمواقيت والتاريخ الهجري | الإحداثيات والتاريخ وطريقة الحساب |
| BigDataCloud | تحويل الإحداثيات إلى اسم مدينة | الإحداثيات، وبإذنك فقط |
| Open-Meteo | البحث عن مدينة بالاسم | نص المدينة الذي كتبته |
| AlQuran Cloud | ترجمات القرآن | رقم السورة ومعرّف النسخة |
مؤسسة القرآن
(api.quran.com وخطوط المصحف)
|
توقيتات الكلمات وخطوط صفحات المصحف | معرّف القارئ ورقم السورة ورقم الصفحة |
| شبكة Islamic Network و everyayah.com | صوت التلاوة لكل آية | مسار الملف الصوتي المطلوب |
| أرشيف الإنترنت | المكتبة الصوتية وصور الأغلفة | العنصر والملف المطلوب |
| GitHub Pages (هذا الموقع) | تلاوات الأذكار، تُقدَّم من الموقع نفسه الذي تُقرأ منه هذه السياسة | الملف الصوتي المطلوب |
| PostHog | قياسات الاستخدام وتتبّع الأخطاء، منطقة الاتحاد الأوروبي | معرّف عشوائي وأسماء أحداث وتفضيلات التطبيق وأثر التنفيذ |
| Expo | التحديثات الفورية ومقاييس الأداء | إصدار التطبيق والقناة والمنصّة وطراز الجهاز والأزمنة |
| جوجل بلاي | التوزيع والتحديث داخل التطبيق ونافذة التقييم | ما يحتاجه بلاي للتنزيل أو التحديث، بناءً على طلبك |
لا توجد في هذه القائمة أي شبكة إعلانات، ولا حزمة إحالة، ولا وسيط بيانات، ولا شيء منها داخل التطبيق.
١٨. تعديلات السياسة
نحدّث هذه الصفحة كلما تغيّرت ميزة أو مصدر بيانات. التاريخ في الأعلى يعبّر عن النسخة الحالية، والسجل الكامل للتغييرات علني في مستودع هذه الصفحة على GitHub، والتغييرات الجوهرية تُذكر في ملاحظات إصدار التطبيق.
١٩. التواصل
لأي سؤال عن الخصوصية، أو لحذف بيانات القياس الخاصة بك: boogado@yahoo.com
المطوّر: محمد جادو · التطبيق: رفيق (com.mohamedgado.rafiq)