توضح سياسة الخصوصية هذه كيفية جمع واستخدام وحفظ ومشاركة وحماية البيانات عند استخدام تطبيق TOGER وموقعه وخدماته المرتبطة. يُدار TOGER بواسطة مطوّر مستقل مقيم في المملكة العربية السعودية. للتواصل بشأن الخصوصية، زر صفحة الدعم https://gettoger.com/support/ أو راسلنا على: support@gettoger.com.
باستخدام TOGER، فإنك تقر بأنك قرأت هذه السياسة. إذا لم توافق عليها، فلا تستخدم الخدمة أو الميزة المعنية. بعض الميزات، مثل معالجة الفواتير بالذكاء الاصطناعي، اختيارية وتتطلب موافقة منفصلة داخل التطبيق.
1. نطاق السياسة
تنطبق هذه السياسة على تطبيق TOGER وخدماته وموقعه والصفحات القانونية المرتبطة به. ولا تنطبق على مواقع أو خدمات مستقلة تابعة لجهات أخرى، حتى لو تم الوصول إليها من خلال رابط داخل TOGER؛ وتخضع تلك الجهات لسياساتها الخاصة.
2. البيانات التي نجمعها أو نعالجها
قد نعالج الفئات الآتية بحسب الميزات التي تختار استخدامها:
أ. بيانات الحساب والملف الشخصي
معرّف المستخدم والبريد الإلكتروني وطريقة تسجيل الدخول.
الاسم المعروض والدولة والصورة الشخصية، إذا أضفتها.
معلومات تسجيل الدخول التي توفرها خدمات Google أو Apple عند اختيار تسجيل الدخول من خلالها. تسجيل الدخول عبر Apple متاح حيث تدعمه المنصة، وهو متاح حاليًا على iOS وmacOS، ولا يتوفر حاليًا على Android.
ب. المحتوى الذي يضيفه المستخدم
المنتجات أو العناصر المحفوظة، والتصنيفات، والعناوين، والملاحظات، والتواريخ.
التذكيرات والجداول الزمنية والتفضيلات المرتبطة بها.
أي معلومات تظهر داخل الملفات التي يختار المستخدم رفعها، وقد تشمل — بحسب اختياره — معلومات صحية أو طبية أو مالية أو غيرها من المعلومات الحساسة.
لا يطلب TOGER من المستخدم رفع معلومات لا يحتاجها لغرض الحفظ والتنظيم. ويجب على المستخدم تجنب رفع بيانات أشخاص آخرين أو مستندات لا يملك حق حفظها أو معالجتها.
ج. بيانات الجهاز والتشغيل
رموز إشعارات الجهاز اللازمة لإرسال التذكيرات.
نوع المنصة والمعلومات التقنية الأساسية اللازمة لتشغيل الإشعارات والخدمة.
تقارير الأعطال والأخطاء وسجلات التشخيص في إصدارات الإنتاج.
أحداث استخدام عامة، مثل إنشاء عنصر أو رفع مستند أو فتح تصنيف، بهدف تحسين الخدمة.
المساحة التخزينية المستخدمة داخل الحساب.
لا يستخدم TOGER حاليًا شبكات إعلانية، ولا يجمع معرّف الإعلانات لأغراض إعلانية، ولا يتتبع المستخدم عبر تطبيقات أو مواقع شركات أخرى.
د. بيانات محفوظة على الجهاز
قد يحفظ التطبيق محليًا إعدادات اللغة والمظهر وحالة الإعداد الأولي وعمليات البحث الأخيرة وموافقة معالجة الفواتير بالذكاء الاصطناعي ونسخًا مؤقتة من الصور أو البيانات لتحسين السرعة والعمل عند ضعف الاتصال. قد تبقى بعض إعدادات التطبيق العامة بعد تسجيل الخروج أو حذف الحساب، بينما تُزال البيانات المحلية المرتبطة بالحساب وفق آليات التنظيف المتاحة في التطبيق والجهاز.
3. كيف نستخدم البيانات
نستخدم البيانات للأغراض الآتية:
إنشاء الحساب والتحقق منه وتشغيل تسجيل الدخول.
حفظ العناصر والفواتير والمستندات ومزامنتها وعرضها للمستخدم.
إنشاء التذكيرات وإرسال الإشعارات التي يطلبها المستخدم.
استخراج بيانات الفاتورة بالذكاء الاصطناعي عندما يختار المستخدم هذه الميزة ويوافق عليها.
تقديم البحث والتصنيفات وإدارة التخزين والوظائف الأساسية للتطبيق.
حماية الحساب وتشخيص الأعطال ومنع إساءة الاستخدام وتحسين الأداء.
تنفيذ طلبات الحذف والامتثال للالتزامات النظامية.
نعالج البيانات لتقديم الخدمة التي يطلبها المستخدم، وبناءً على موافقته عندما تكون الموافقة مطلوبة، ولأغراض الأمان والامتثال للأنظمة المعمول بها.
قبل استخدامها لأول مرة على الجهاز لكل حساب، يعرض TOGER إفصاحًا يوضح أن صور الفاتورة ستُرسل إلى OpenAI لاستخراج المعلومات.
إذا اختار المستخدم السماح، يمكنه اختيار صور الفاتورة وبدء المعالجة.
إذا اختار ليس الآن أو أغلق النافذة، فلن تبدأ عملية المسح ولن تُرسل الفاتورة إلى OpenAI.
يمكن للمستخدم الاستمرار في استخدام الإضافة اليدوية أو رفع المستند بدون استخراج بالذكاء الاصطناعي.
تُضغط صور الفاتورة على الجهاز، ثم تُرسل عبر وظيفة سحابية محمية إلى OpenAI. لا يظهر مفتاح OpenAI داخل التطبيق.
يعيد النظام مسودة مقترحة ليقوم المستخدم بمراجعتها وتأكيدها قبل حفظ العنصر. لا ينبغي الاعتماد على الاستخراج دون مراجعة.
يستخدم TOGER خيار store: false في طلب OpenAI لمنع تخزين الاستجابة كحالة تطبيق دائمة.
وفق ضوابط بيانات OpenAI المنشورة، لا تُستخدم بيانات واجهة API لتدريب النماذج، لكن قد تُحتفظ بعض البيانات مؤقتًا — عادةً لمدة تصل إلى 30 يومًا — لأغراض مراقبة إساءة الاستخدام والأمان، ما لم يكن حساب TOGER معتمدًا ومفعّلًا عليه Zero Data Retention أو ضوابط احتفاظ أخرى. وقد تحتفظ OpenAI بمحتوى معيّن إذا رصدت أنظمة السلامة محتوىً يحتمل مخالفته للأنظمة أو السياسات. تخضع هذه المعالجة أيضًا لسياسات OpenAI السارية.
الموافقة الحالية محفوظة محليًا على الجهاز ومرتبطة بمعرّف الحساب. إعادة تثبيت التطبيق أو استخدام جهاز جديد قد يؤدي إلى طلب الموافقة مرة أخرى. لا يرسل TOGER أي ملف إلى OpenAI إلا عندما يبدأ المستخدم ميزة مسح الفاتورة فعليًا ويختار الملف.
5. الأذونات
قد يطلب TOGER الأذونات الآتية عند الحاجة:
الكاميرا: لالتقاط صورة فاتورة أو مستند.
الصور والملفات: لاختيار صورة أو ملف يريد المستخدم حفظه.
الإشعارات: لإرسال التذكيرات والتنبيهات.
يمكن رفض الإذن، لكن الميزة المرتبطة به قد لا تعمل. ويمكن تعديل الأذونات من إعدادات الجهاز.
6. الجهات التي تعالج البيانات بالنيابة عنا
قد نعتمد على مزودي الخدمات الآتين لتشغيل TOGER:
Google Firebase: المصادقة، قاعدة البيانات، تخزين الملفات، الوظائف السحابية، الإشعارات، التحليلات، تقارير الأعطال والإعدادات البعيدة.
Google Sign-In: تسجيل الدخول الاختياري بحساب Google.
Sign in with Apple: تسجيل الدخول الاختياري بحساب Apple حيث تدعمه المنصة؛ متاح حاليًا على iOS وmacOS، وغير متاح حاليًا على Android.
OpenAI: معالجة صور الفواتير عند اختيار ميزة الذكاء الاصطناعي والموافقة عليها.
نشارك مع هؤلاء المزودين فقط البيانات اللازمة لتقديم الوظيفة المطلوبة. وقد تُعالج البيانات على خوادم موجودة خارج المملكة العربية السعودية وفق بنية مقدمي الخدمات ومتطلبات الأنظمة والعقود السارية.
لا يبيع TOGER البيانات الشخصية، ولا يشاركها مع وسطاء بيانات، ولا يستخدمها للإعلانات الموجهة أو للتتبع عبر التطبيقات والمواقع.
قد نكشف بيانات بالقدر اللازم للامتثال لطلب نظامي صحيح، أو لحماية حقوق المستخدمين وسلامتهم، أو للتحقيق في الاحتيال أو إساءة الاستخدام، وفق الأنظمة المعمول بها.
7. التحليلات وتقارير الأعطال
يستخدم TOGER Firebase Analytics لفهم استخدام الميزات بصورة عامة، وFirebase Crashlytics لتشخيص الأعطال في إصدارات الإنتاج. قد تتضمن هذه الخدمات معرفات تقنية ومعلومات عن الجهاز والتطبيق وسجلات الأعطال وأحداث الاستخدام. لا يضيف TOGER عمدًا محتوى الفواتير أو أسماء المستخدمين أو نصوص المستندات إلى معاملات أحداث التحليلات.
8. حماية البيانات
نستخدم ضوابط تقنية وتنظيمية مناسبة، ومنها المصادقة، وقواعد وصول تربط البيانات بصاحب الحساب، ومسارات تخزين خاصة بالمستخدم، واتصالات مشفرة أثناء النقل، وحفظ المفاتيح السرية على الخادم بدلًا من التطبيق.
ومع ذلك، لا توجد وسيلة إلكترونية آمنة بنسبة 100%. تقع على المستخدم مسؤولية حماية بيانات الدخول وجهازه وعدم مشاركة حسابه مع الآخرين.
9. مدة الاحتفاظ والحذف
نحتفظ ببيانات الحساب والمحتوى أثناء بقاء الحساب فعالًا وحسب الحاجة لتقديم الخدمة.
عند حذف عنصر أو مستند حذفًا مؤقتًا، قد يبقى في سلة المحذوفات إلى أن يحذفه المستخدم نهائيًا أو يحذف حسابه. لا نعد حاليًا بالحذف التلقائي للعناصر الموجودة في سلة المحذوفات بعد مدة محددة.
عند طلب حذف الحساب من داخل التطبيق، يُحذف حساب المصادقة وتُعطّل إمكانية الوصول، وتُجدول بيانات المحتوى للحذف النهائي خلال مدة تصل إلى 30 يومًا، ما لم يتطلب النظام الاحتفاظ ببيانات محددة لمدة أطول.
تُزال رموز إشعارات الجهاز عند تسجيل الخروج أو حذف الحساب بحسب الآلية المتاحة.
قد تحتفظ Firebase Analytics وCrashlytics ومزودو الخدمات ببعض السجلات التقنية وفق مدد الاحتفاظ والسياسات الخاصة بهم.
تنطبق على معالجة OpenAI المدة الموضحة في قسم الذكاء الاصطناعي أعلاه.
10. حذف الحساب والبيانات
يمكن للمستخدم طلب حذف حسابه بإحدى الطريقتين:
من داخل التطبيق: من الملف الشخصي أو الإعدادات ← حذف الحساب، ثم إكمال خطوات التأكيد وإعادة التحقق المطلوبة.
عبر الويب أو البريد: تقديم طلب عبر صفحة حذف الحساب على https://gettoger.com/delete-account/، أو إرسال طلب من البريد المرتبط بالحساب إلى support@gettoger.com بعنوان طلب حذف حساب TOGER، مع ذكر البريد المستخدم في الحساب. قد نطلب تحققًا إضافيًا لحماية الحساب قبل تنفيذ الطلب.
لا يشترط إعادة تثبيت التطبيق لتقديم طلب الحذف. يؤدي حذف الحساب إلى فقدان الوصول إلى العناصر والفواتير والمستندات والتذكيرات المرتبطة به، ولا يمكن عادةً استعادتها بعد اكتمال الحذف النهائي.
11. حقوق المستخدم
مع مراعاة نظام حماية البيانات الشخصية في المملكة العربية السعودية والأنظمة الأخرى المنطبقة، قد يكون للمستخدم الحق في:
معرفة كيفية جمع بياناته واستخدامها.
الوصول إلى بياناته وطلب نسخة منها في الحدود المتاحة نظامًا وتقنيًا.
تصحيح البيانات غير الدقيقة أو استكمالها.
طلب إتلاف البيانات أو حذف الحساب.
سحب الموافقة عندما تكون المعالجة قائمة على الموافقة، دون أن يؤثر ذلك في مشروعية المعالجة السابقة للسحب.
الاعتراض أو تقديم شكوى إلى الجهة المختصة عندما يجيز النظام ذلك.
لممارسة هذه الحقوق، تواصل معنا عبر https://gettoger.com/support/ أو على support@gettoger.com. قد نطلب التحقق من الهوية قبل الاستجابة. ميزة تصدير البيانات آليًا ليست متاحة حاليًا، لكن يمكن تقديم طلب عبر صفحة الدعم أو البريد.
12. المستخدمون دون 18 عامًا
TOGER مخصص لمن تبلغ أعمارهم 18 عامًا فأكثر، وليس موجّهًا للأطفال. إذا علمنا أننا جمعنا بيانات شخص دون 18 عامًا دون أساس نظامي مناسب، فيمكن التواصل معنا لطلب حذفها.
13. تغييرات السياسة
قد نحدّث هذه السياسة عند تغيير ميزات TOGER أو ممارسات البيانات أو المتطلبات النظامية. سننشر النسخة المحدّثة مع تاريخ آخر تحديث، وقد نعرض إشعارًا داخل التطبيق إذا كان التغيير جوهريًا.
14. اللغة
تتوفر هذه السياسة بالعربية والإنجليزية. عند وجود اختلاف في التفسير، تسود النسخة العربية بالقدر الذي تسمح به الأنظمة المعمول بها.
This Privacy Policy explains how TOGER collects, uses, stores, shares, and protects data when you use the TOGER application, website, and related services. TOGER is operated by an independent developer based in the Kingdom of Saudi Arabia. For privacy inquiries, visit https://gettoger.com/support/ or contact support@gettoger.com.
By using TOGER, you acknowledge that you have read this Policy. If you do not agree, do not use the relevant service or feature. Certain features, including AI-powered invoice processing, are optional and require a separate in-app choice.
1. Scope
This Policy applies to the TOGER application, related services, website, and legal pages. It does not govern independent third-party websites or services, even when TOGER links to them; those services are governed by their own policies.
2. Data We Collect or Process
Depending on the features you choose, TOGER may process the following categories.
A. Account and Profile Data
User ID, email address, and sign-in provider.
Display name, country, and profile photo if provided.
Authentication information supplied by Google or Apple when you choose those sign-in methods. Sign in with Apple is available where the platform supports it; it is currently available on iOS and macOS and is not currently available on Android.
B. User-Provided Content
Saved Items, categories, titles, notes, dates, and related fields.
Invoices, images, PDFs, documents, and attachments.
Purchase, warranty, return, exchange, expiration, maintenance, and renewal dates.
Reminders, schedules, notes, and notification preferences.
Information contained in files you choose to upload, which may include health, medical, financial, or other sensitive information depending on your choices.
TOGER does not ask users to upload information that is unnecessary for storage and organization. You should not upload another person’s data or a document you are not authorized to store or process.
C. Device, Usage, and Diagnostic Data
Device notification tokens required to send reminders.
Platform and basic technical information required to operate notifications and the service.
Crash reports, error details, and diagnostic logs in release builds.
General feature events, such as creating an item, uploading a document, or viewing a category, to improve the service.
Account storage usage.
TOGER currently uses no advertising network, does not collect an advertising identifier for advertising, and does not track users across apps or websites owned by other companies.
D. Data Stored on Your Device
The app may store language and theme settings, onboarding status, recent searches, AI-processing consent, and temporary image or data caches locally to improve performance and limited offline functionality. Some general app preferences may remain after sign-out or account deletion, while account-linked local data is removed through the cleanup mechanisms available in the app and on the device.
3. How We Use Data
We use data to:
Create, verify, and operate user accounts and sign-in.
Store, synchronize, and display Saved Items, invoices, and documents.
Create reminders and deliver notifications requested by the user.
Extract invoice information using AI when the user selects and permits that feature.
Provide search, categories, storage management, and other core functions.
Secure accounts, diagnose failures, prevent misuse, and improve performance.
Fulfill deletion requests and comply with applicable legal obligations.
We process data as necessary to provide the services you request, based on consent where consent is required, and for security and compliance with applicable law.
4. AI-Powered Invoice Processing
The Scan Invoice and AI Processing feature is optional.
Before first use on a device for each account, TOGER displays a notice explaining that invoice images will be sent to OpenAI to extract information.
If you select Allow, you may choose invoice images and start processing.
If you select Not Now or dismiss the notice, scanning does not begin and the invoice is not sent to OpenAI.
You can continue to use manual entry or document upload without AI extraction.
Invoice images are compressed on the device and sent through a protected Cloud Function to OpenAI. The OpenAI key is not exposed in the app.
The system returns a proposed draft for your review and confirmation before a Saved Item is created. You should not rely on extracted information without reviewing it.
TOGER sends store: false in its OpenAI request to prevent the response from being stored as persistent application state.
According to OpenAI’s published API data controls, API data is not used to train its models. However, some content may be retained temporarily—typically for up to 30 days—for abuse and safety monitoring unless TOGER’s organization is approved and configured for Zero Data Retention or other retention controls. OpenAI may retain specific content if its safety systems detect potentially unlawful or policy-violating material. OpenAI’s current policies also govern that processing.
Consent is currently stored locally on the device and associated with the account’s user ID. Reinstalling the app or using a new device may cause TOGER to request consent again. TOGER sends no file to OpenAI unless you actively initiate Scan Invoice and choose a file.
5. Permissions
TOGER may request the following permissions when needed:
Camera: to capture an invoice or document.
Photos and files: to select an image or document you choose to save.
Notifications: to deliver reminders and alerts.
You may refuse a permission, but the related feature may not work. Device permissions can be changed through your device settings.
6. Service Providers and Data Sharing
TOGER relies on the following providers:
Google Firebase: authentication, database, file storage, Cloud Functions, push notifications, analytics, crash reporting, and remote configuration.
Google Sign-In: optional Google account sign-in.
Sign in with Apple: optional Apple account sign-in where the platform supports it; currently available on iOS and macOS, and not currently available on Android.
OpenAI: invoice-image processing when you choose and permit the AI feature.
We provide these service providers only the data reasonably necessary to perform the requested function. Data may be processed on servers outside Saudi Arabia according to provider infrastructure, applicable contracts, and applicable law.
TOGER does not sell personal data, disclose it to data brokers, or use it for targeted advertising or cross-app tracking.
We may disclose data when reasonably necessary to respond to a valid legal request, protect user rights and safety, or investigate fraud or misuse, subject to applicable law.
7. Analytics and Crash Reporting
TOGER uses Firebase Analytics to understand general feature usage and Firebase Crashlytics to diagnose failures in release builds. These services may process technical identifiers, device and app information, crash logs, and usage events. TOGER does not intentionally add invoice content, user names, or document text to analytics event parameters.
8. Data Security
We use reasonable technical and organizational measures, including authentication, owner-scoped access rules, user-specific storage paths, encryption in transit, and server-side storage of secret keys rather than embedding them in the app.
No electronic method is completely secure. You are responsible for protecting your credentials and device and for not sharing access to your account.
9. Retention and Deletion
We retain account data and content while the account remains active and as needed to provide the service.
When an item or document is soft-deleted, it may remain in Trash until you permanently delete it or delete your account. TOGER does not currently promise automatic deletion of Trash items after a fixed period.
When you request account deletion in the app, the authentication account is removed and access is disabled; associated content is scheduled for permanent deletion within up to 30 days unless applicable law requires longer retention of specific information.
Device notification tokens are removed on sign-out or account deletion according to the available mechanism.
Firebase Analytics, Crashlytics, and other providers may retain certain technical records according to their own retention schedules and policies.
The OpenAI processing period described in the AI section applies to AI requests.
10. Account and Data Deletion
You may request account deletion in either of the following ways:
In the app: from Profile or Settings → Delete Account, then complete the required confirmation and reauthentication steps.
On the web or by email: submit a request through the account-deletion page at https://gettoger.com/delete-account/, or send a request from the email associated with your account to support@gettoger.com with the subject TOGER Account Deletion Request and identify the email used for the account. We may require additional verification to protect the account.
You do not need to reinstall the app to make a deletion request. Account deletion results in loss of access to Saved Items, invoices, documents, and reminders and ordinarily cannot be reversed after permanent deletion is complete.
11. Your Rights
Subject to the Saudi Personal Data Protection Law and other applicable law, you may have the right to:
Be informed about how your data is collected and used.
Access your data and request a copy within legally and technically available limits.
Correct or complete inaccurate data.
Request destruction of data or deletion of your account.
Withdraw consent where processing relies on consent, without affecting processing lawfully completed before withdrawal.
Object or submit a complaint to the competent authority where applicable.
To exercise these rights, contact us at https://gettoger.com/support/ or support@gettoger.com. We may verify your identity before responding. Automated data export is not currently available, but you may submit a request through the support page or by email.
12. Users Under 18
TOGER is intended for users aged 18 and older and is not directed to children. If we learn that we collected data from a person under 18 without an appropriate legal basis, contact us to request deletion.
13. Policy Changes
We may update this Policy when TOGER’s features, data practices, or legal requirements change. We will publish the updated version with a new last-updated date and may provide an in-app notice when a change is material.
14. Language
This Policy is available in Arabic and English. If there is a conflict in interpretation, the Arabic version controls to the extent permitted by applicable law.
15. Contact
TOGER
Operated by an independent developer in the Kingdom of Saudi Arabia