منصة هيّئ • إضافة Chrome (مساعد المعلم) • تطبيقات iOS و Androidمتوافق مع سياسات Google Chrome Web Store

سياسة الخصوصية وحماية البيانات (Privacy Policy)

تاريخ آخر تحديث: 2 سبتمبر 2026

تلتزم منصة هيّئ (Hayyi) وإضافة المتصفح التابعة لها «مساعد المعلم» (Hayyi - Teacher Assistant) (المسجلة في سوق Chrome الإلكتروني بالمعرف mikjljpbmicophiiojbeijjaghjbbpia) وكافة الخدمات السحابية المرتبطة بالنطاق https://hayyi.app بحماية خصوصية وأمان بيانات المعلمين والتربويين وفق أعلى معايير الخصوصية، ونظام حماية البيانات الشخصية، وسياسات متجر Google Chrome Web Store لبيانات المستخدمين (User Data Policies).

إقرار الغرض الواحد والاستخدام المحدود (Single Purpose & Limited Use Disclosure):

تم تصميم إضافة «هيّئ - مساعد المعلم» لغرض تعليمي محدد ووحيد وهو: مساعدة المعلم في أتمتة إعداد وتحضير الدروس ومزامنة الجدول المدرسي وكشوف الدرجات داخل منصة مدرستي ونظام نور.

يتوافق استخدام ونقل المعلومات الواردة من واجهات برمجة تطبيقات Chrome إلى أي خدمة أخرى بشكل كامل مع سياسة بيانات مستخدمي متجر Chrome الإلكتروني (Chrome Web Store User Data Policy)، بما في ذلك متطلبات الاستخدام المحدود (Limited Use Requirements). نحن لا نبيع ولا نتاجر ببيانات المستخدمين نهائياً.

1. البيانات التي نجمعها وكيفية جمعها (Data Collection & Methods)

نحن نلتزم بمبدأ الحد الأدنى من البيانات (Data Minimization)، حيث نجمع ونعالج فقط البيانات الأساسية الضرورية لتشغيل مهام التحضير والأتمتة:

أ. كيفية جمع البيانات (How Data is Collected):

  • بيانات يدخلها المعلم مباشرة: البريد الإلكتروني وكلمة المرور عند تسجيل الدخول، والملاحظات والواجبات التي يكتبها المعلم.
  • بيانات من صفحات المنصات التعليمية المحددة (DOM Extraction): عند قيام المعلم بالنقر على زر المزامنة أو التحضير، تقرأ الإضافة من صفحة المعلم الحالية في منصة مدرستي (*.madrasati.sa) أو نظام نور (noor.moe.gov.sa) أسماء الفصول، الجدول المدرسي الأسبوعي، ومفردات الدرس المفتوح.
  • التخزين المحلي على المتصفح (Local Storage): يتم حفظ خيارات التحضير ورمز الجلسة محلياً عبر واجهة chrome.storage.local على جهاز المعلم.

ب. أنواع البيانات المجمعة (Types of Collected Data):

  • معلومات الحساب والمصادقة (Authentication): البريد الإلكتروني، الاسم، ورمز المصادقة (Token) للتحقق من هوية المشترك.
  • بيانات المناهج والتحضير (Curriculum & Lesson Data): المادة، الصف، عنوان الدرس، عناصر خطة الدرس، الأهداف، والاستراتيجيات التعليمية.
  • الصلاحيات المستخدمة في إضافة المتصفح (Extension Permissions):
    • storage: لحفظ إعدادات المعلم ونماذج التحضير محلياً على المتصفح لضمان السرعة والعمل دون تأخير.
    • tabs: للتحقق من تبويب منصة مدرستي أو نظام نور المفتوح والتفاعل معه عند طلب التحضير.
    • downloads: للسماح للمعلم بتنزيل خطط الدروس ونماذج الاختبارات وكشوف الدرجات بصيغة PDF أو Excel على جهازه.
    • host_permissions (madrasati.sa / noor.moe.gov.sa): لحقن واجهة مساعدة المعلم وتعبئة خانات التحضير داخل الصفحات التعليمية المصرح بها فقط.

2. كيفية التعامل مع البيانات وأغراض استخدامها (Data Handling & Use)

تُستخدم البيانات المعالجة حصرياً للأغراض التشغيلية والوظيفية الأساسية للإضافة والمنصة:

  • أتمتة وتعبئة تحضير الدروس: ملء حقول الأهداف، الاستراتيجيات، الإثراءات، والواجبات تلقائياً في منصة مدرستي وفق اختيارات المعلم.
  • مزامنة الجدول والحصص: مطابقة الحصص اليومية للمعلم لتجهيز خطط الأسبوع القادم بنقرة واحدة.
  • تصدير الكشوف ونماذج الاختبارات: تنسيق درجات الطلاب وأوراق العمل في ملفات قابلة للطباعة والتنزيل.
  • إدارة الحساب والدعم الفني: التحقق من حالة الاشتراك وتوفير المساعدة التقنية وتحديثات الأمان.
تأكيد حظر الاستخدامات غير المصرح بها: لا تُستخدم البيانات نهائياً في التنميط السلوكي، الإعلانات الموجهة، التقييم الائتماني، أو أي غرض خارج النطاق التعليمي المباشر المذكور أعلاه.

3. تخزين البيانات، أمانها، وفترة الاحتفاظ (Data Storage, Security & Retention)

  • التخزين المحلي الآمن (Local Storage): تحفظ الجلسات والتفضيلات المؤقتة داخل متصفح المستخدم عبر chrome.storage.local المشفر والمحمي ببيئة عزل المتصفح (Sandbox).
  • التشفير أثناء النقل والتخزين: تُنقل كافة البيانات بين المتصفح وخوادم المنصة عبر قنوات اتصال مشفرة بالكامل باستخدام بروتوكولات الأمان القياسية HTTPS / TLS 1.3، وتُخزن في قواعد بيانات مشفرة (AES-256).
  • فترة الاحتفاظ بالبيانات (Retention Period): نحتفظ ببيانات التحضير طوال فترة نشاط حساب المعلم لتمكينه من استعادتها وتعديلها. وعند إزالة الإضافة، يتم حذف التخزين المحلي فوراً من المتصفح. وعند إلغاء الحساب، تُحذف البيانات السحابية نهائياً.

4. مشاركة البيانات والإفصاح للأطراف الثالثة (Data Sharing & All Parties Disclosed)

إفصاح شامل لكافة الأطراف ومزودي الخدمة الذين يتم التعامل معهم (All Parties With Whom Data is Shared):

الطرف / المزود (Party)الغرض من المعالجة (Purpose)نوع البيانات المنقولة (Data Transferred)
منصتا مدرستي ونظام نور (وزارة التعليم السعودية)إدخال التحضيرات ورصد الدرجات مباشرة في جلسة المعلم الرسمية بناءً على أمره المباشرنصوص التحضير والأهداف المختارة للدرس
خوادم الاستضافة وقواعد البيانات السحابية (Cloud Infrastructure)استضافة المنصة، التحقق من اشتراك المعلم، ومزامنة خطط التحضير المشفرةالبريد الإلكتروني المشفر، خطط التحضير المخزنة
مزود معالجة النصوص الذكية (AI Language Processing APIs)صياغة وتوليد المحتوى التعليمي والأهداف والاستراتيجيات الأكاديمية للدرسعنوان وموضوع الدرس فقط (لا يتم إرسال أي بيانات شخصية أو بيانات طلاب؛ لا تُستخدم في تدريب النماذج)
بوابة الدفع الإلكتروني (Payment Gateways)معالجة رسوم الاشتراك السنوي/الفصلي للمنصة عبر القنوات البنكية المشفرةبيانات الفوترة البنكية فقط (لا تصلها أي بيانات من إضافة المتصفح أو التحضيرات)

تعهدات عدم المشاركة والبيع:

  • نحن لا نبيع ولا نؤجر ولا نتاجر ببيانات المستخدمين أو الطلاب لأي طرف ثالث تحت أي ظرف.
  • نحن لا نشارك البيانات مع شبكات إعلانية، وسطاء بيانات (Data Brokers)، أو أي جهات تسويقية خارجية.
  • لا يتم تحويل البيانات لأي طرف إلا الأطراف المذكورة في الجدول أعلاه وبما يقتضيه تقديم الخدمة التعليمية للمستخدم فقط.

5. إقرار الامتثال لسياسات Google Chrome Web Store (Limited Use Policy)

تؤكد منصة هيّئ وإضافتها «مساعد المعلم» التزامها الصارم بسياسة الاستخدام المحدود (Limited Use Policy) لمتجر Google Chrome الإلكتروني:

  • الالتزام التام بالاستخدام الفردي المخصص لتحضير المعلم وأداء المهام المدرسية.
  • عدم استخدام البيانات لنشر إعلانات أو بناء ملفات تعريفية للمستخدمين عبر الإنترنت.
  • عدم تمكين البشر من قراءة بيانات المستخدم إلا بموافقة صريحة لحل مشكلة تقنية محددة أو لأسباب أمنية وقانونية ملزمة.

6. حقوق المستخدم وحذف الحساب والبيانات (User Rights & Data Deletion)

يحق لكل مستخدم في أي وقت طلب تصدير أو تعديل أو حذف حسابه وكافة بياناته نهائياً:

  • حذف البيانات المحلية: يمكن حذف كافة البيانات المخزنة محلياً على المتصفح بمسح بيانات الإضافة أو إزالتها من صفحة chrome://extensions.
  • حذف الحساب السحابي: عبر المنصة بالانتقال إلى (لوحة التحكم ➔ الإعدادات ➔ الملف الشخصي ➔ حذف الحساب والبيانات).
  • طلب الحذف عبر البريد: إرسال طلب إلى [email protected] أو [email protected] وسيتم مسح كافة البيانات بشكل كامل خلال 24–48 ساعة وتأكيد ذلك برسالة للمستخدم.

7. التواصل والاستفسارات (Contact Information)

لأي استفسارات أو بلاغات متعلقة بسياسة الخصوصية وحماية البيانات، يسعدنا التواصل معكم مباشرة:

البريد الإلكتروني المعتمد: [email protected] | [email protected]
الموقع الرسمي: https://hayyi.app
صفحة سياسة الخصوصية الرسمية: https://hayyi.app/privacy-policy

Hayyi Platform • Chrome Extension (Teacher Assistant) • Mobile AppsChrome Web Store Policy Compliant

Privacy Policy - Hayyi Platform & Chrome Extension

Last Updated: September 2, 2026

This Privacy Policy applies to the Hayyi Platform, the official "هيّئ - مساعد المعلم" (Hayyi - Teacher Assistant) Chrome Web Store extension (Extension ID: mikjljpbmicophiiojbeijjaghjbbpia), and associated cloud services operating under https://hayyi.app. We are strictly committed to safeguarding teacher and educational data in full compliance with the Google Chrome Web Store User Data Policy.

Chrome Web Store Single Purpose & Limited Use Disclosure:

The single purpose of the "Hayyi - Teacher Assistant" extension is to assist teachers in preparing educational lesson plans, synchronizing school timetables, and managing academic assessment rosters within the official Saudi educational portals (Madrasati and Noor).

The use and transfer to any other app of information received from Chrome APIs by the "Hayyi - Teacher Assistant" extension strictly adheres to the Chrome Web Store User Data Policy, including the Limited Use requirements.

1. User Data Collection & Methods

We practice strict data minimization and only collect data required for the core educational functions:

A. How Data is Collected:

  • Direct User Input: Email and password provided by the user upon logging in to authenticate their Hayyi subscription.
  • Automated In-Page (DOM) Interaction: Only when the user clicks the sync or prepare action, the extension reads the active schedule, lesson title, subject, and class roster directly from the teacher's active session on *.madrasati.sa or noor.moe.gov.sa.
  • Local Storage APIs: Settings, cached drafts, and session tokens are saved locally in the browser via chrome.storage.local.

B. Categories of Data Collected:

  • Authentication & Profile Data: Email address, teacher name, and session tokens used for subscription validation.
  • Curriculum & Lesson Data: Subject names, grade levels, timetable schedules, learning goals, strategies, and homework descriptions.
  • Chrome Extension Permissions:
    • storage: To store user preferences and lesson drafts locally within the browser sandbox for performance.
    • tabs: To identify active Madrasati or Noor portal tabs when the teacher requests automated lesson injection.
    • downloads: To allow teachers to download exported PDF lesson plans and Excel grade books directly to their local drive.
    • host_permissions (*.madrasati.sa, noor.moe.gov.sa): To inject teacher assistance controls and auto-fill lesson preparation fields directly into the educational portal.

2. Data Handling & Use

All processed data is strictly utilized for the following core functional purposes:

  • Automated Lesson Preparation: Populating lesson planning fields (learning goals, enrichment links, homework) directly into the teacher's active lesson form in Madrasati.
  • Timetable Synchronization: Mapping weekly teaching schedules to facilitate rapid lesson planning.
  • Report Generation: Formatting exam papers, worksheets, and student attendance sheets for download.
  • Account & Security Maintenance: Authenticating subscribers and delivering technical bug fixes.

Strict Restriction: Collected data is NEVER used for targeted advertising, credit scoring, surveillance, behavioral profiling, or any purpose unrelated to the extension's stated single educational purpose.

3. Data Storage, Security & Retention

  • Local Browser Storage: Cached preferences and session states are maintained locally in chrome.storage.local inside Chrome's secure sandbox.
  • Encrypted Transmission & Storage: Cloud communications are protected end-to-end using HTTPS / TLS 1.3 protocols, and stored data is encrypted at rest (AES-256).
  • Retention Period: Cloud data is kept only during the active lifecycle of the teacher's subscription to ensure continuous access to their lesson plans. Uninstalling the extension immediately purges all local data. Account deletion requests permanently purge all cloud data within 24–48 hours.

4. Data Sharing & Third-Party Disclosures (All Parties Disclosed)

Comprehensive disclosure of all parties with whom data may be processed or shared:

Third Party / ServicePurpose of ProcessingData Transferred
Madrasati & Noor Portals (Saudi Ministry of Education)Auto-filling teacher lesson plans and student rosters directly into the teacher's own authenticated session.Lesson preparation text and educational objectives selected by the teacher.
Cloud Database & Infrastructure ProvidersSecure encrypted backend hosting, user authentication, and multi-device lesson plan synchronization.Encrypted account credentials and saved lesson plans.
AI Language Processing APIs (Enterprise Tier)Drafting educational objectives and lesson ideas based on lesson titles.Curriculum topic and grade level only. Zero personal data or student names are sent. Data is not used to train AI models under enterprise zero-retention agreements.
Payment GatewaysProcessing optional platform subscription payments.Billing and payment card details only. No extension or classroom data is shared.

Explicit No-Sale and Non-Disclosure Guarantees:

  • We NEVER sell, rent, lease, or monetize user personal or student data to any third party under any circumstances.
  • We NEVER share user data with advertising platforms, data brokers, or marketing entities.
  • Except for the core service providers listed above which are strictly necessary to deliver the application functionality, NO third parties receive user data.

5. Chrome Web Store Limited Use Certification

We certify that our extension adheres to all Chrome Web Store developer requirements:

  • Data collection is restricted to the declared single purpose of lesson planning assistance.
  • Data is never transferred or used for personalized advertising or credit determination.
  • Human access to user data is strictly prohibited unless explicit consent is granted to resolve a specific user support issue or required by law.

6. User Rights & Account/Data Deletion

Every user retains the right to review, export, or permanently erase their data at any time:

  • Local Storage Removal: Remove the extension from Chrome (chrome://extensions) or clear browser storage to instantly eliminate all local data.
  • In-Platform Account Deletion: Navigate to Dashboard → Settings → Profile → Delete Account.
  • Direct Email Request: Send an email to [email protected] or [email protected]. All associated cloud records will be permanently deleted within 24–48 hours.

7. Contact Information

For any privacy questions, data requests, or policy inquiries, please contact our team:

Support Email: [email protected] | [email protected]
Official Website: https://hayyi.app
Official Privacy Policy URL: https://hayyi.app/privacy-policy