سياسة الخصوصية
PortfolioOS لا يجمع بياناتك. لا يوجد حساب، ولا خادم لـPortfolioOS، ولا تحليلات، ولا إعلانات، ولا تتبّع، ولا مزامنة. محفظتك تُخزَّن مشفّرة على جهازك وحده، ولا يستطيع مطوّر التطبيق الاطّلاع عليها.
كل ما تكتبه داخل PortfolioOS يبقى على جهازك: المنتجات، الخطوة التالية، الملاحظات والقرارات، الروابط والمصادر، جلسات التركيز، والمرفقات التي تضيفها. تُخزَّن هذه البيانات في قاعدة بيانات SQLite مشفّرة عبر SQLite3MultipleCiphers.
first_unlock_this_device وبدون مزامنة مع iCloud. على Android يُحفظ في تخزين آمن مدعوم بـKeystore.allowBackup="false"). أي أن بياناتك لا تُرفع إلى iCloud أو Google.لا شيء. لا يطلب التطبيق حسابًا ولا بريدًا ولا رقم هاتف، ولا ينشئ معرّفًا للمستخدم، ولا يقيس الاستخدام، ولا يرسل تقارير أعطال، ولا يستخدم أي أدوات إعلانية أو تحليلية من طرف ثالث. إجابة PortfolioOS في استبيان خصوصية App Store هي Data Not Collected.
الوصول إلى الشبكة اختياري بالكامل، ولا يبدأ إلا بعد إجراء صريح منك: لصق رابط عام في «الاستيراد الذكي» أو طلب تحديث بيانات مصدر. لا يوجد تحديث في الخلفية، ولا استطلاع دوري، ولا زحف تلقائي على الروابط.
عندما تطلب ذلك، يتصل التطبيق بالجهة العامة صاحبة الرابط فقط:
api.github.com — بيانات مستودع GitHub العامة.itunes.apple.com — بيانات تطبيق App Store العامة.play.google.com — بيانات تطبيق Google Play العامة.ما يصل إلى تلك الجهة هو ما يصل إليها من أي متصفّح: الرابط الذي أدخلته، وعنوان IP الخاص باتصالك، وترويسة User-Agent بالشكل PortfolioOS/<رقم الإصدار>. لا يُرسل أي جزء من محفظتك ولا أي معرّف يخصّك. تعرض لك الشاشة البيانات المستوردة قبل حفظها، ولك أن ترفضها. هذه الجهات خارجة عن سيطرتنا وتخضع لسياسات الخصوصية الخاصة بها.
وعندما تفتح رابط مصدر أو حساب الدعم، يسلّم التطبيق الرابط إلى متصفّح النظام أو تطبيق المتجر ويخرج من الصورة؛ ما يحدث بعدها يخضع لسياسة تلك الجهة.
ما عدا ذلك، يعمل التطبيق دون اتصال: التشغيل، وشاشة اليوم، والمحفظة، والبحث، والتحرير المحلي لا تُجري أي اتصال شبكي.
الودجت يقرأ ملف لقطة محلية صغيرة تُشارَك عبر App Group مخصّص للتطبيق. لا يملك الودجت مفتاح التشفير ولا وصولًا إلى Keychain، فهو غير قادر على قراءة قاعدة البيانات المشفّرة بحكم بنيته. ومحتواه معلَّم كمحتوى حسّاس فيُخفى تلقائيًا على شاشة القفل.
لا يطلب التطبيق الموقع، ولا الكاميرا، ولا الميكروفون، ولا جهات الاتصال، ولا الصور، ولا الإشعارات، ولا أي إذن حسّاس. اختيار الملفات يتم عبر منتقي النظام الذي لا يمنح التطبيق وصولًا عامًا إلى تخزينك.
PortfolioOS أداة عمل موجَّهة لمن يبنون منتجات، وليست موجَّهة للأطفال. وبما أنه لا يجمع أي بيانات من أي مستخدم، فهو لا يجمع بيانات من الأطفال كذلك.
لأن بياناتك لا تغادر جهازك، فالتحكم كامل بيدك ولا توجد نسخة لدينا لتطلب الوصول إليها أو تصحيحها أو حذفها:
الوجه الآخر لهذا الوعد: لا نحتفظ لك بنسخة. إن فقدت جهازك دون نسخة احتياطية مصدَّرة، فلا يمكن استرجاع البيانات — لا بواسطتك ولا بواسطتنا.
تبقى بياناتك على جهازك ما دام التطبيق مثبّتًا، أو حتى تحذفها بنفسك. لا مدة احتفاظ لدينا لأنه لا توجد لدينا بيانات.
الاستثناء الوحيد لمدة محدّدة هو محلي بالكامل: عند استيراد نسخة احتياطية بخيار «الاستبدال»، يحتفظ التطبيق على جهازك بنسخة استرجاع مشفّرة من محفظتك السابقة لمدة سبعة أيام حتى تستطيع التراجع، ثم تنتهي صلاحيتها.
عند تغيّر سلوك التطبيق تجاه البيانات، تُحدَّث هذه الصفحة معه. وسجل التعديلات كامل ومعلن في مستودع هذه الصفحة على GitHub، بتاريخ كل تغيير وما الذي تغيّر فيه بالضبط.
لأي سؤال عن الخصوصية أو هذه السياسة: @AbdullahDevs95 على X — وهي نفس جهة الدعم الموجودة داخل التطبيق في «الإعدادات ← الدعم».
PortfolioOS does not collect your data. There is no account, no PortfolioOS server, no analytics, no advertising, no tracking, and no sync. Your portfolio is stored encrypted on your device alone, and the developer cannot see it.
Everything you enter in PortfolioOS stays on your device: products, next moves, notes and decisions, links and sources, focus sessions, and any attachments you add. It is stored in a SQLite database encrypted with SQLite3MultipleCiphers.
first_unlock_this_device and is not synchronized to iCloud. On Android it is kept in Keystore-backed secure storage.allowBackup="false"). Your data is not uploaded to iCloud or Google.Nothing. The app asks for no account, no email, and no phone number; it creates no user identifier, measures no usage, sends no crash reports, and embeds no third-party advertising or analytics SDK. PortfolioOS answers the App Store privacy questionnaire as Data Not Collected.
Network access is entirely optional and begins only after an explicit action by you: pasting a public URL into Smart Import, or requesting a refresh of a source. There is no background refresh, no scheduled polling, and no automatic crawling.
When you do ask, the app contacts only the public service that owns the URL:
api.github.com — public GitHub repository metadata.itunes.apple.com — public App Store listing metadata.play.google.com — public Google Play listing metadata.What reaches that service is what would reach it from any browser: the URL you entered, the IP address of your connection, and a User-Agent header of the form PortfolioOS/<version>. No part of your portfolio and no identifier of yours is sent. The imported metadata is shown to you for review before anything is saved, and you can discard it. These services are outside our control and are governed by their own privacy policies.
When you open a source link or the support profile, the app hands the URL to your system browser or store app and steps out; what happens next is governed by that service.
Otherwise the app is offline: startup, Today, Portfolio, Search, and local editing make no network connection at all.
The widget reads a small local snapshot file shared through the app's own App Group. It holds no encryption key and has no Keychain access, so it cannot read the encrypted database by construction. Its content is marked privacy sensitive and is redacted on the Lock Screen.
The app requests no location, camera, microphone, contacts, photos, notification, or other sensitive permission. File selection goes through the system picker, which grants no general access to your storage.
PortfolioOS is a work tool for people building products and is not directed at children. Since it collects no data from any user, it collects none from children either.
Because your data never leaves your device, control is entirely yours, and there is no copy held by us for you to request, correct, or have deleted:
The other side of that promise: we hold no copy for you. If you lose your device without an exported backup, the data cannot be recovered — not by you, and not by us.
Your data stays on your device for as long as the app is installed, or until you delete it yourself. We have no retention period because we hold no data.
The one fixed retention period is entirely local: when you import a backup with Replace, the app keeps an encrypted recovery copy of your previous portfolio on your device for seven days so the import can be undone, after which it expires.
If the app's data behavior changes, this page changes with it. The full revision history is public in this page's GitHub repository, showing the date of every change and exactly what it changed.
For any question about privacy or this policy: @AbdullahDevs95 on X — the same support contact offered in the app under Settings → Support.