تطبيق Medjat للموظفين · تطبيق Medjat Central للإدارة
سياسة الخصوصية
آخر تحديث: 14 يونيو 2026
تشرح سياسة الخصوصية هذه كيف نقوم في Medjat بجمع بياناتك واستخدامها
وحمايتها عند استخدامك لتطبيقاتنا. تغطي هذه السياسة تطبيقين:
التطبيق
الجمهور
الغرض
Medjat (تطبيق الموظف)
الموظفون
تسجيل الحضور والانصراف، الإجازات، المستندات، الإشعارات
Medjat Central (تطبيق الإدارة)
المديرون والمشرفون
إدارة الموظفين والفروع والحضور والرواتب
1. البيانات التي نجمعها
أ) بيانات تقدّمها أنت أو شركتك
بيانات الهوية والتواصل: الاسم، رقم الهاتف، البريد الإلكتروني، الرقم الوظيفي، المسمّى الوظيفي، الفرع/القسم.
بيانات الموظف الإدارية: بيانات الحضور والإجازات والرواتب والمستندات التي تُدخلها الإدارة أو يرفعها الموظف.
المستندات والصور: الملفات التي ترفعها عند طلب مستند معيّن (مثل الهوية أو الشهادات).
ب) بيانات تُجمع تلقائيًا
الموقع الجغرافي (GPS): يُستخدم في تطبيق الموظف للتحقق من وجودك داخل نطاق الفرع عند تسجيل الحضور والانصراف، وفي تطبيق الإدارة لتحديد نقطة الفرع ونطاق الحضور. لا نتتبّع موقعك في الخلفية، ويُقرأ الموقع فقط عند تنفيذ هذه العمليات.
معلومات الجهاز وسلامته: نتحقق مما إذا كان الجهاز يعمل بصلاحيات الجذر (root) أو كسر الحماية (jailbreak) أو محاكٍ (emulator)، وذلك لمنع التلاعب في تسجيل الحضور وحماية حسابك.
رمز الإشعارات (Device Token): عبر Firebase Cloud Messaging لإرسال الإشعارات.
بيانات الاستخدام والأعطال: إحصاءات استخدام مجمّعة وتقارير أعطال عبر Firebase Analytics و Crashlytics لتحسين الأداء.
معرّف الإعلانات: في تطبيق الموظف فقط، قد نعرض إعلانات عبر Google AdMob، والتي قد تستخدم معرّف الإعلان الخاص بجهازك.
2. كيف نستخدم البيانات
تشغيل خدمات الحضور والإجازات والرواتب وإدارة الموظفين.
التحقق من الموقع عند تسجيل الحضور ومنع الاحتيال.
إرسال الإشعارات والتنبيهات المتعلقة بعملك.
التحقق من الهوية وتأمين تسجيل الدخول.
تحسين أداء التطبيق وإصلاح الأعطال.
عرض الإعلانات في تطبيق الموظف (عند وجودها).
3. مشاركة البيانات والأطراف الخارجية
لا نبيع بياناتك الشخصية. قد تُعالَج بياناتك من قِبل مزوّدي خدمات موثوقين لأغراض التشغيل فقط:
صاحب العمل / شركتك: بيانات الحضور والإجازات والأداء تكون متاحة لإدارة شركتك التي تستخدم Medjat Central.
Google Firebase: المصادقة، الإشعارات، التحليلات، تقارير الأعطال، الإعداد عن بُعد.
Google AdMob: عرض الإعلانات في تطبيق الموظف.
خدمة الرسائل (WhatsApp / مزوّد الرسائل): قد يُستخدم رقم هاتفك لإرسال رسائل التحقق أو التنبيهات.
الاستضافة (Hostinger): تُخزَّن بيانات الخادم لدى مزوّد الاستضافة.
الجهات الرسمية: عند وجود التزام قانوني يستوجب ذلك.
4. تخزين البيانات وأمنها
تُنقل البيانات عبر اتصال مشفّر (HTTPS).
تُخزَّن رموز الدخول على جهازك في تخزين آمن.
نطبّق ضوابط أمنية على الخادم للحدّ من الوصول غير المصرّح به.
5. مدة الاحتفاظ بالبيانات
نحتفظ ببياناتك طوال مدة علاقتك الوظيفية مع الشركة المستخدمة للتطبيق وبالقدر الذي يقتضيه القانون. عند حذف الحساب تُحذف البيانات الشخصية أو تُجهَّل ما لم يوجب القانون الاحتفاظ بها.
6. حقوقك
طلب الوصول إلى بياناتك أو تصحيحها.
طلب حذف حسابك وبياناتك.
سحب الأذونات (مثل الموقع أو الكاميرا) من إعدادات الجهاز في أي وقت.
HR data: attendance, leave, payroll, and document data entered by admins or uploaded by employees.
Documents & images: files you upload when a specific document is requested (e.g. ID, certificates).
b) Data collected automatically
Location (GPS): used in the employee app to verify you are within the branch geofence when checking in/out, and in the admin app to set the branch point and attendance radius. We do not track your location in the background; it is read only during these actions.
Device & integrity info: we check whether the device is rooted, jailbroken, or an emulator to prevent attendance fraud and protect your account.
Notification token: via Firebase Cloud Messaging to deliver push notifications.
Usage & crash data: aggregated usage statistics and crash reports via Firebase Analytics and Crashlytics to improve performance.
Advertising identifier: in the employee app only, we may show ads via Google AdMob, which may use your device advertising ID.
2. How We Use Data
Operate attendance, leave, payroll, and employee-management services.
Verify location at check-in and prevent fraud.
Send work-related notifications and alerts.
Authenticate identity and secure sign-in.
Improve app performance and fix crashes.
Display ads in the employee app (where applicable).
3. Data Sharing & Third Parties
We do not sell your personal data. It may be processed by trusted service providers for operational purposes only:
Your employer / company: attendance, leave, and performance data are available to your company's administrators using Medjat Central.
Google Firebase: authentication, notifications, analytics, crash reporting, remote config.
Google AdMob: serving ads in the employee app.
Messaging provider (WhatsApp / messaging API): your phone number may be used to send verification or alert messages.
Hosting (Hostinger): server data is stored with our hosting provider.
Authorities: where required by a legal obligation.
4. Data Storage & Security
Data is transmitted over an encrypted connection (HTTPS).
Access tokens are kept on your device in secure storage.
Server-side controls limit unauthorized access.
5. Data Retention
We retain your data for the duration of your employment relationship with the company using the app and as required by law. Upon account deletion, personal data is deleted or anonymized unless retention is legally required.
6. Your Rights
Request access to or correction of your data.
Request deletion of your account and data.
Revoke permissions (such as location or camera) from device settings at any time.
7. Account Deletion
You can request deletion of your account and data by emailing us at
support@medjatapp.com.
8. Children's Privacy
Both apps are intended for professional use by employees and administrators, are not directed at children under 16, and we do not knowingly collect their data.
9. Changes to This Policy
We may update this policy from time to time. The updated version will be posted on this page with a revised "last updated" date.