الخصوصية افتراضيًا
سياسة الخصوصية
يمكنك إكمال Smart بلا حساب أو اسم أو بريد أو هاتف. تُستخدم إجاباتك مؤقتًا لإرجاع النتيجة، ولا نحفظ الإجابات أو النتيجة افتراضيًا.
ما يبقى على جهازك
يحفظ المتصفح تفضيل اللغة والوضع اللوني فقط. إذا وافقت بعد النتيجة على المساهمة البحثية ونجح الحفظ، يحتفظ أيضًا بإيصال حذف يتكون من معرّف التقييم ورمز الحذف. لا نخزن جلسة التقييم أو الإجابات أو الأوقات أو النتيجة في تخزين المتصفح، ولا نستخدم الكوكيز أو البصمة أو التحليلات والإعلانات المتتبعة.
المساهمة البحثية الاختيارية
تظهر الموافقة بعد النتيجة فقط. عند الموافقة الصريحة نحفظ: معرّف تقييم مستعار، وإصدار الأداة، ومعرّف النموذج، واللغة، ووضع الجلسة، وأوقات الإكمال وانتهاء التفويض والموافقة وانتهاء الاحتفاظ، وإجابات المهام الموحّدة وأوقاتها، وعلامات الجودة من قائمة مغلقة (انقطاع، أو مشكلة جهاز، أو خمول طويل، أو إخفاء الصفحة)، والمقاييس الخام المحسوبة على الخادم، وبصمة أحادية الاتجاه لرمز الحذف. يبقى رمز الحذف الخام معك وحدك. الغرض هو فحص جودة البنود والموثوقية والإنصاف والمعايرة المستقبلية. لا يحتوي سجل البحث اسمًا أو بريدًا أو هاتفًا أو عنوان IP أو نص user-agent.
مدة الاحتفاظ المنطقية في الإصدار الأول ٣٠ يومًا بالضبط: عند الحد يتوقف احتساب السجل والوصول إليه. يجري الحذف الفعلي في دورة التنظيف التالية، عادة خلال خمس دقائق ما دامت الخدمة تعمل، وعند بدء الخدمة بعد التوقف. يمكنك قبل ذلك استخدام الحذف الذاتي بالإيصال.
الاستضافة والقانون
بلد استضافة Smart هو الكويت. المرجع التنظيمي الحالي هو قرار رقم 26 لسنة 2024 الصادر عن الهيئة العامة للاتصالات وتقنية المعلومات، وقد ألغى القرار 42 لسنة 2021. كما يقدم قانون المعاملات الإلكترونية الكويتي 20 لسنة 2014 أساسًا متعلقًا بالموافقة والغرض والوصول. هذا الوصف ليس استشارة قانونية ولا ادعاء امتثال شامل لكل دولة خليجية.
السجلات التشغيلية والأمان
يستمر تقييد المعدّل مؤقتًا في الذاكرة بحسب عنوان IP من دون كتابة العنوان في سجل الوصول. لا نسجل وصول مسارات API، وسجل الصفحات العامة لا يحتوي عنوان IP أو المسار أو معرّف التقييم. قد تحتوي سجلات الأخطاء التشغيلية الحرجة فقط على عنوان IP للمصدر أو المسار المطلوب عندما يكتبه Nginx لتشخيص عطل؛ يصل إليها مشغلو الخادم فقط، وتُحتفظ بها مدة لا تتجاوز ١٤ يومًا. حذف مساهمة البحث لا يحذف سجل خطأ حرجًا منفصلًا قبل انتهاء هذه المدة. الاتصال مشفر عند النشر، والرموز القصيرة الأجل لا توضع في الروابط. لا توجد خطوط خارجية أو متتبعات أو إعلانات أو بوابة دفع أو بيع للنتائج.
You can use Smart without an account, name, email, or phone number. Responses are processed ephemerally to return a result and are not stored by default.
What stays on your device
The browser keeps language and color-theme preferences only. After an explicit post-result research contribution succeeds, it also keeps a deletion receipt containing the assessment ID and deletion token. It does not store the assessment session, answers, timings, or result. Smart uses no cookies, fingerprinting, behavioral analytics, or advertising trackers.
Optional research contribution
Consent appears only after the result. With explicit consent, we store a pseudonymous assessment ID, instrument version, form ID, locale, session mode, completion, authorization-expiry, consent, and retention-expiry timestamps, normalized task responses and timings, closed-list quality flags (interruption, device issue, long inactivity, or page hidden), server-calculated raw metrics, and a one-way hash of the deletion token. The raw deletion token stays only with you. The pilot purpose is item-quality, reliability, fairness, and future-calibration research. The research row contains no name, email, phone, IP address, or user-agent string.
Version 1 retention is 30 days. Records stop counting and become inaccessible exactly 30 days after consent. Physical deletion runs in the next cleanup cycle, normally within five minutes while the service is running and on startup after downtime. Before then, use self-service deletion with the receipt.
Hosting and law
Smart's hosting country is Kuwait. The current regulatory reference is CITRA Decision 26/2024, which repealed Decision 42/2021. Kuwait Electronic Transactions Law 20/2014 also provides a consent, purpose, and access baseline. This is not legal advice or a claim of universal GCC compliance.
Operational logs and security
Rate limiting continues temporarily in memory by IP address without writing the address to the access log. API access logging is disabled, and public-page access logs contain no IP address, path, or assessment ID. Critical operational error logs may contain a source IP address or requested path only when Nginx writes it to diagnose a failure; only server operators can access them, and they are kept for no more than 14 days. Research self-deletion does not erase a separate critical error record before that lifecycle ends. Published traffic is encrypted and short-lived bearer material is never placed in URLs. There are no external fonts, trackers, advertisements, payment path, or result sales.
آخر تحديث: 2026-09-02