سياسة الخصوصية — B7R

آخرُ تحديث: أكتوبر ٢٠٢٦ · سياسة الخصوصية · شروط الخدمة · الاسترداد · من نحن · حماية الأطفال · حذف الحساب

تصف هذه السياسة ما يجمعه تطبيق ⁦B7R⁩ عنك، ولماذا، وأين يُحفظ، ومتى يزول. وهي مطابقةٌ لإقرار «سلامة البيانات» المنشور على صفحة التطبيق في Google Play.

١) ما نجمعه منك مباشرةً

٢) ما يُسجَّل تلقائيًّا أثناء الاستخدام

٣) بياناتُ توثيق الهويّة (اختياريّةٌ تمامًا — لا تُطلب إلّا إن تقدّمتَ بطلب)

نطلبها ممّن يطلب توثيقَ هويّته: المذيعُ الذي يتقدّم للاعتماد، ومالكُ الوكالة، ووكيلُ الشحن. وهي: الاسمُ كما في الهويّة الحكوميّة، وتاريخُ الميلاد، وصورةُ الهويّة، وصورةٌ شخصيّةٌ (سيلفي)، ورقمُ هاتف.

الصورُ تُحفظ في مخزنٍ خاصٍّ لا يُفتح برابطٍ عامّ، ولا يطّلع على الطلب ووثائقه إلّا موظّفون مخوَّلون بصلاحيّةٍ خاصّةٍ لمراجعته، وكلُّ اطّلاعٍ يُسجَّل: من فتح الوثيقة، ومتى، وأيَّها. ولا يُطلب في هذا الطلب أيُّ بيانٍ بنكيّ: لا اسمَ صاحب حساب، ولا رقمَ حساب، ولا IBAN، ولا رقمَ بطاقة. ورقمُ حساب الاستلام يُطلب في موضعٍ آخرَ ولاحقًا — عند طلب سحب الأرباح، ويكتبه صاحبُ الطلب بنفسِه هناك.

ووكلاءُ الشحن على موقعنا: من يتقدّم ليعمل وكيلًا نطلب منه صورةَ هويّته لتوثيقه، ومن يشتري الكوينز منّا وكيلًا يرفع إيصالَ التحويل البنكيّ كي نعتمد دفعتَه. وتُحفظ هذه الوثائقُ والإيصالاتُ كلُّها في مخزنٍ خاصٍّ، ولا يطّلع عليها من جهتنا إلّا موظّفون مخوَّلون، وكلُّ اطّلاعٍ منهم يُسجَّل. ورقمُ واتساب الوكيل لا يُعرض للناس إلّا إن وافق هو على عرضه.

٤) ما لا نجمعه — نقولها صراحةً

٥) لماذا نجمع ما نجمعه

ولا نستعمل بياناتك في الإعلانات ولا نبيعها لأحد.

٦) الإشراف على المحتوى

الرسائلُ والمنشوراتُ تمرّ على فلترٍ آليٍّ يخفي المخالفَ منها. وإذا أُبلغ عن محتوًى، يستطيع فريقُ الإدارة الاطّلاعَ عليه للبتّ في البلاغ. هذا شرطُ سلامةٍ لا خيار، وهو مذكورٌ هنا كي تعرفه قبل أن تكتب.

قد يحضر فريقُ الإدارة والإشراف في الغرف العامّة دون أن يظهر، حفاظًا على السلامة وللإشراف على المحتوى.

٧) أين تُحفظ بياناتك، ومن يعالجها نيابةً عنّا

على خوادم Supabase (المصادقة وقاعدة البيانات والملفّات)، وCloudflare (استضافةُ التطبيق)، وAgora (نقلُ الصوت والفيديو المباشر في الغرف). وهؤلاء مزوّدو خدمةٍ يعالجون البيانات نيابةً عنّا بأمرنا، لا أطرافٌ تستعملها لأغراضها. والاتّصالُ بهم مشفَّرٌ في النقل كلُّه.

الصوتُ والفيديو المباشران في الغرف يمرّان عبر Agora لحظيًّا ولا يُسجَّلان ولا يُحفظان عندنا إطلاقًا.

وإشعاراتُ الهاتف تمرّ عبر Google Firebase Cloud Messaging: يتسلّم نصَّ الإشعار ورمزَ جهازك كي يوصله إليه، بأمرنا ونيابةً عنّا. وإشعاراتُ المتصفّح تمرّ عبر خدمة الإشعارات التابعة لمتصفّحك (من Google أو Mozilla أو Apple بحسب المتصفّح) مشفَّرةً، فلا تستطيع تلك الخدمةُ قراءةَ نصّها.

وفي ميزة «مشاهدة معًا» يُعرَض مشغّلُ YouTube داخل الغرفة؛ عند تشغيله يتّصل جهازُك بخوادم YouTube مباشرةً وتسري عليه سياسةُ خصوصيّة Google.

وشراءُ الكوينز داخل التطبيق يتمّ عبر Google Play: أنت تدفع لجوجل، ونسأل جوجل عن إيصال الشراء لنتأكّد أنّه حقيقيّ ثمّ نُضيف لك الكوينز. لا نرى رقمَ بطاقتك ولا نحفظه — البطاقةُ عند جوجل وحدَها. ونحفظ إيصالَ الشراء عندنا كي يُقيَّد في سجلّك ولئلّا يُستعمل الإيصالُ نفسُه مرّتين.

ونأخذ كلَّ يومٍ نسخةً احتياطيّةً من قاعدة البيانات، لئلّا تضيع حساباتُ الناس وأرصدتُهم لو تعطّل شيء. وفيها ما في القاعدة — ومنه رسائلُك وبريدُك وسجلُّ مالك — وتُحفظ في تخزينٍ سحابيٍّ لدى Google وGitHub، وتصل نسخةٌ منها إلى بريد فريق التشغيل. لا يفتحها غيرُ فريق التشغيل، ولا تُعطى لأحد، ولا تُستعمل إلّا لاستعادة الخدمة عند العطل.

لا نشارك بياناتك مع أيّ طرفٍ ثالثٍ لأغراضه هو، ولا نبيعها، ولا نستعملها في إعلانات.

الملفّاتُ العامّة وغيرُ العامّة: صورةُ الملفّ والغلاف وصورُ المنشورات وأغلفةُ الغرف والعائلات والفعاليّات في مخازنَ عامّةِ القراءة — أي أنّ من يملك رابطَ الصورة يفتحُها. أمّا وسائطُ الرسائل الخاصّة وصورُ الهويّة ففي مخازنَ خاصّةٍ لا تُفتح برابطٍ عامّ.

٨) حقُّك في الحذف

تستطيع حذفَ حسابك وبياناتك بنفسك من داخل التطبيق في أيّ وقت، ويقع الحذفُ فورًا: الملفّ الشخصيّ ← الإعدادات ← الخصوصية والأمان ← «حذف الحساب». والتفصيلُ الكامل في قسم «حذف الحساب».

وصورُك تُمحى من المخزن نفسه، لا يُقطع عنها الرابطُ فحسب: ما يستطيع التطبيقُ محوَه يُمحى لحظةَ الحذف، وما لا يستطيعه — ومنه صورةُ الهويّة والسيلفي — يُلتقط في طابورٍ مغلَقٍ ويُمحى من التخزين بعملٍ خادميٍّ يعمل بمفتاحٍ إداريّ، ويُتحقَّق بالقياس من أنّ الملفَّ لم يعد موجودًا.

٩) ما نبقيه بعد الحذف ولماذا

هذه وحدَها تبقى، ومفصولةً عن اسمك وبريدك وصورتك لأنّ هذه تُمحى:

١٠) الأطفال

التطبيقُ للبالغين ١٨ سنةً فأكثر، ولا نجمع بياناتِ الأطفال عن قصد. فيه دردشةٌ مفتوحةٌ بين البالغين، ومشترياتٌ داخل التطبيق، وألعابُ حظٍّ بعملةٍ افتراضيّةٍ لا تُصرَف مالًا. إن علمنا أنّ حسابًا يخصّ من هو دون الثامنة عشرة أغلقناه ومحونا بياناته.

١١) للتواصل

لأيّ سؤالٍ عن خصوصيّتك، أو لطلب نسخةٍ من بياناتك، أو لطلب حذفها: privacy@4usparty.com — أو من قسم «الدعم» داخل التطبيق.

١٢) على الموقع وحدَه: الشحن، والوكلاء، وتوثيق الهويّة

ما في هذا القسم يُجمَع على موقعنا 4usparty.com وحدَه، ولا يجمع تطبيقُ أندرويد شيئًا منه.

شحنُ الكوينز من صفحة الشحن. تكتب معرّفَ الحساب الذي تريد شحنه فنعرض لك اسمَه وصورتَه لتتأكّد منه، ثمّ تختار الباقةَ ووسيلةَ الدفع. الدفعُ نفسُه يتمّ في صفحة مزوّد الدفع: هو الذي يستقبل بياناتِ بطاقتك أو وسيلةِ دفعك ويعالجها، ولا نرسل إليه اسمَك ولا بريدَك ولا حسابَك — بل رقمَ الطلب وقيمتَه ووصفَ الباقة. ونحفظ نحن: المعرّفَ الذي كتبتَه والحسابَ الذي يستلم الكوينز، والباقةَ وسعرَها وكوينزَها، ومزوّدَ الدفع ووسيلتَه، ورقمَ طلبنا ورقمَ العمليّة عند المزوّد، والمبلغَ والعملةَ المدفوعَين، وحالةَ الطلب وأوقاتَه. ومن إشعار المزوّد الذي نتحقّق من صحّته نحفظ بصمةً بدالّة اتّجاهٍ واحد لوسيلة الدفع أو لبيان التواصل الذي يذكره (رقمُ بطاقةٍ مقنَّع، أو رمزُ وسيلةِ دفعٍ محفوظة، أو بريد، أو هاتف)، ووصفًا مقنَّعًا لها كآخر أربعة أرقامٍ من البطاقة — لكشف الاحتيال وتنبيه الإدارة. ولا نستقبل رقمَ بطاقتك كاملًا ولا نحفظه. ونحفظ كذلك بصمةً بدالّة اتّجاهٍ واحد لعنوان الإنترنت الذي جاء منه البحثُ عن الحساب (لا العنوانَ نفسَه) لنحدّ عددَ عمليّات البحث: تُمحى من سجلّ البحث بعد يوم، وتبقى مع طلب الدفع إن انتقلتَ إلى الدفع.

الوكلاء. طلبُ الوكالة يُقدَّم من صفحة «حسابي» ويجمع: اسمَك الكامل كما في الهويّة، وبلدَك ومدينتَك، ورقمَ واتساب، وصورةَ وجه الهويّة (وظهرَها إن أرفقتَه)، وموافقتَك ووقتَها. تُحفظ صورُ الهويّة في مخزنٍ خاصّ، ولا يُكشف رقمُ واتساب كاملًا ولا صورُ الهويّة إلّا لفريق الإدارة المخوَّل، ويُسجَّل كلُّ كشف. وفي صفحة «الوكلاء المعتمَدون» العامّة يظهر اسمُ الوكيل كما كتبه في طلبه وبلدُه ومدينتُه وعلامةُ التحقّق، ولا يظهر رقمُ واتساب إلّا إن وافق صاحبُه على عرضه في طلبه. وحين يشتري الوكيلُ كوينز بتحويلٍ بنكيّ نحفظ: المبلغَ، وحسابَ المنصّة الذي حوّل إليه، ورقمَ عمليّة التحويل، وصورةَ الإيصال أو ملفَّه في مخزنٍ خاصّ مع بصمته الرقميّة؛ يطّلع عليه فريقُ الاعتماد المخوَّل ويُسجَّل كلُّ اطّلاع، والإيصالُ سجلٌّ ماليٌّ يبقى بعد حذف الحساب. والشكوى على وكيلٍ تُحفظ بنصّها وحسابِ صاحبها، ويقرؤها فريقُ الإدارة، ولا يراها الوكيلُ المشكوُّ منه.

بيعُ الجواهر بين المذيعين والوكلاء. حين يبيع مذيعٌ أو مالكُ وكالةٍ جواهرَه لوكيلٍ من صفحة «حسابي» نحفظ: الطرفين، وعددَ الجواهر وقيمتَها، والسعرَ بالريال، والكوينزَ التي تصل الوكيل، وحالةَ الطلب وأوقاتَه، وسببَ الإلغاء أو النزاع إن كُتب. والدفعُ بين الطرفين يتمّ خارج التطبيق، ولا نطلب لأجله بياناتِ حسابٍ بنكيٍّ من أيٍّ منهما ولا نحفظها. ويطّلع فريقُ الإدارة على النزاع ليبتّ فيه.

توثيقُ الهويّة لمالكي الوكالات ووكلاء الشحن. يُقدَّم من صفحة «حسابي»، ويجمع ما يجمعه توثيقُ المذيعين في البند ٣ نفسَه: الاسمَ كما في الهويّة، وتاريخَ الميلاد، وصورةَ الهويّة، وصورةً شخصيّةً (سيلفي)، ورقمَ هاتف — بالقواعد نفسِها. ولا يجعل التوثيقُ حسابَك حسابَ مذيع. وتُمحى صورةُ الهويّة والسيلفي ورقمُ الهاتف بعد ثلاثين يومًا من البتّ في الطلب، أو حين يمضي على الطلب ثلاثون يومًا بلا بتّ، أو حين تسحبه بنفسك؛ ويبقى سجلُّ الطلب بلا صورٍ ولا رقم.


Privacy Policy — B7R

Last updated: October 2026 · Privacy Policy · Terms of Service · Refunds · About · Child Safety Standards · Account deletion

This policy describes what B7R collects about you, why, where it is stored, and when it is erased. It matches, point for point, the Data safety declaration published on the app's Google Play listing.

1) What we collect directly from you

2) What is recorded automatically while you use the app

3) Identity verification data (entirely optional — collected only if you apply)

We ask for it from anyone who applies to verify their identity: a broadcaster applying for approval, an agency owner, and a top-up agent. It is: your legal name as printed on a government ID, date of birth, a photo of the ID, a selfie, and a phone number.

The images are kept in a private bucket that no public link can open, and only authorized staff holding a dedicated permission can view the application and its documents when reviewing it — and every view is logged: who opened which document, and when. This application asks for no banking data: no account holder name, no account number, no IBAN, no card number. The payout account number is asked elsewhere and later — when requesting a withdrawal of earnings, where the applicant types it themselves.

Top-up agents on our website: a person applying to work as an agent is asked for a photo of their ID so that we can verify them, and an agent buying coins from us uploads the bank-transfer receipt so that we can approve the payment. All of these documents and receipts are kept in private storage; on our side only authorized staff can view them, and every such view is logged. An agent's WhatsApp number is shown to the public only if the agent agrees to it.

4) What we do NOT collect — stated plainly

5) Why we collect what we collect

We do not use your data for advertising and we do not sell it to anyone.

6) Content moderation

Messages and posts pass through an automatic filter that hides violating content. If content is reported, the admin team can view it in order to decide the report. This is a safety requirement, not an option, and it is stated here so you know it before you write.

Staff may be present in public rooms without being shown, for safety and moderation.

7) Where your data is stored, and who processes it on our behalf

On Supabase servers (authentication, database and files), Cloudflare (application hosting), and Agora (real-time voice and video transport inside rooms). These are service providers processing data on our instructions, not third parties using it for their own purposes. All connections to them are encrypted in transit.

Live voice and video in rooms passes through Agora in real time and is never recorded or stored by us.

Phone notifications pass through Google Firebase Cloud Messaging, which receives a notification's text and your device's token in order to deliver it, on our instructions and on our behalf. Browser notifications pass through your browser's push service (from Google, Mozilla or Apple, depending on the browser) encrypted, so that service cannot read their text.

In the "watch together" feature a YouTube player is shown inside the room; when it plays, your device connects to YouTube servers directly and Google's privacy policy applies to that connection.

Buying coins inside the app goes through Google Play: you pay Google, we ask Google to confirm that the receipt is genuine, and then we add the coins to your balance. We never see your card number and never store it — the card stays with Google. We keep only the purchase receipt, so that it can be recorded against your account and so that the same receipt cannot be used twice.

We take a daily backup of the database, so that people's accounts and balances are not lost if something breaks. It contains what the database contains — including your messages, your email address and your money record — and it is kept in cloud storage at Google and GitHub, with a copy sent to the operating team's mailbox. Nobody but the operating team opens it, it is not given to anyone, and it is used only to restore the service after a failure.

We do not share your data with any third party for their own purposes, we do not sell it, and we do not use it for advertising.

Public and private files: profile photo and cover, post images, and room / family / event covers live in publicly readable buckets — anyone holding the image URL can open it. Private-message media and identity photos live in private buckets that no public link can open.

8) Your right to deletion

You can delete your account and your data yourself from inside the app at any time, and deletion is immediate: Profile → Settings → Privacy & Security → "Delete account". Full detail is in the "Account deletion" section, published at /delete-account.html.

Your images are erased from storage itself, not merely unlinked: whatever the app is permitted to erase is erased at that moment, and whatever it is not — including the identity photo and selfie — is captured in a closed queue and erased from storage by a server-side job running with an administrative key, which then measures that the file is no longer there.

9) What we keep after deletion, and why

These alone remain, and they remain detached from your name, email and photo, because those are erased:

10) Children

The app is for adults aged 18 and over, and we do not knowingly collect children's data. It contains open chat between adults, in-app purchases, and games of chance played with a virtual currency that cannot be cashed out. If we learn that an account belongs to someone under 18, we close it and erase its data.

11) Contact

For any question about your privacy, to request a copy of your data, or to request its deletion: privacy@4usparty.com — or through the "Support" section inside the app.

12) On the website only: top-up, agents and identity verification

What this section describes is collected on our website 4usparty.com only; the Android app collects none of it.

Topping up coins from the top-up page. You type the account ID you want to top up, and we show that account's name and picture so you can confirm it; then you choose a package and a payment method. The payment itself happens on the payment provider's page: the provider receives and processes your card or payment-method details, and we send it neither your name, nor your email, nor your account — only the order number, its amount and a description of the package. We keep: the ID you typed and the account that receives the coins, the package with its price and coins, the payment provider and method, our order number and the provider's transaction number, the amount and currency paid, and the order's status and times. From the provider's notification, whose authenticity we verify, we keep a one-way fingerprint of the payment method or contact detail it reports (a masked card number, a saved payment-method token, an email or a phone number) and a masked description of it, such as a card's last four digits — to detect fraud and alert our admins. We never receive or store your full card number. We also keep a one-way fingerprint of the internet address a lookup came from (not the address itself) to limit how many lookups can be made: it is erased from the lookup log after one day, and stays with the payment order if you continue to payment.

Agents. An agent application is made from the "My account" page and collects: your full name as on your ID, your country and city, a WhatsApp number, a photo of the front of your ID (and the back if you attach it), and your consent with its time. ID photos are kept in a private storage bucket; the full WhatsApp number and the ID photos are revealed only to our authorised admin team, and every reveal is recorded. The public "Approved agents" page shows the agent's name as written in their application, their country and city, and a verification mark — the WhatsApp number is shown only if its owner agreed to it in their application. When an agent buys coins by bank transfer we keep: the amount, the platform account transferred to, the transfer reference number, and the receipt image or file in private storage with its digital fingerprint; our authorised crediting team views it and every view is recorded, and the receipt is a financial record that is kept after the account is deleted. A complaint about an agent is kept with its text and the account that filed it; our admin team reads it, and the agent complained about cannot see it.

Gem sales between hosts and agents. When a host or an agency owner sells gems to an agent from the "My account" page, we keep: both parties, the number of gems and their value, the price in rials, the coins the agent receives, the order's status and times, and the reason for a cancellation or a dispute if one was written. Payment between the two parties happens outside the app; for it we neither ask for nor store either party's bank details. Our admin team reviews a dispute to decide it.

Identity verification for agency owners and top-up agents. It is made from the "My account" page and collects exactly what broadcaster verification in section 3 collects — your name as on your ID, date of birth, a photo of the ID, a selfie and a phone number — under the same rules. Verification does not turn your account into a broadcaster account. The ID photo, the selfie and the phone number are erased thirty days after the request is decided, or once a request has waited thirty days without a decision, or when you withdraw it yourself; the request record stays without the photos or the number.