The Dandesh app is developed by the Hananel Apps studio, which is responsible for processing your data inside the app. For privacy matters, contact: hananelqh@gmail.com.
This policy covers the Dandesh app on Android and iOS. This informational website has its own studio privacy policy and does not collect data from you through browsing.
Dandesh collects the data needed to run the chat service and manage your account:
We use data only for the following purposes:
To generate the companion’s replies, your messages are sent to external large-language-model providers: we route requests through OpenRouter to external model providers, and the model used may change. For factual questions we may use a web-search service (Tavily) to fetch current information.
Replies are AI-generated and may be inaccurate or incomplete, and are not a substitute for professional advice.
We use trusted service providers to run the app; they process data on our behalf or under their own policies:
We do not sell your personal data, nor share it for marketing.
Dandesh shows ads via Google AdMob (banner, interstitial, and rewarded ads), and partner networks may compete for each impression in a real-time auction run by AdMob — currently Unity Ads on Android. Ads may be personalized based on your interests: ad networks process your device’s advertising identifier and approximate IP-derived location (such as country) to serve, measure, and personalize ads under Google’s and its partners’ policies.
In the European Economic Area, the United Kingdom, and Switzerland, personalized ads are shown only after your explicit consent through the in-app consent form; declining means you only see non-personalized ads. You can limit ad personalization or reset/delete your advertising identifier at any time in your device settings (Android: Settings → Google → Ads).
Ads are not shown to VIP members or users who purchased permanent Remove Ads, and are suppressed in sensitive conversations. Rewarded ads are optional, and a reward is granted only after Google and the server confirm that the ad was completed.
Dandesh uses Google Firebase Analytics with privacy-restricted settings: automatic data collection is disabled, no Advertising ID (ADID) is collected, no ad-personalization signals are sent, and no personal user identifier is set (setUserId stays empty/null).
Only aggregated usage events are recorded — such as app opens, sessions, screen navigation, feature interactions, and rewarded-ad events — with no conversation content, messages, AI replies, or personal data (PII). Analytics is enabled only after you accept the consent screen, and is fully suppressed during sensitive conversations.
For crash diagnostics, Dandesh uses Google Firebase Crashlytics under the same controls: collection is disabled at build time and is enabled only after you consent, and no user identifier is ever set. A crash report carries only your account type, UI language, release channel, and the name of the last screen; the error message and stack trace are redacted of email addresses and access tokens before they are sent. No conversation content is sent, and screen names are not recorded during sensitive conversations.
On iOS only: when you request a refund from Apple, Apple asks us for consumption data to help it decide your request. We send nothing unless you switch this on yourself — it is off by default, entirely separate from accepting the Terms and from marketing consent, and you can turn it on or off at any time in Settings. Only three things are sent: that the purchase was actually delivered, what share of it was used, and that we offer free credit before any purchase. No conversation content, name, email address, or account identifier is sent.
We keep aggregated or anonymized operational logs (such as model cost and ad performance) that contain no chat content and do not identify you.
Data is stored in Supabase with row-level security (RLS) that limits your access to your own data. On your device, session tokens are stored encrypted in iOS Keychain or Android Keystore.
Never send your password, verification code, or any secret to us by email; the app does not use a password at all.
We keep your account and conversation data for as long as your account exists or as needed to provide the service.
When you delete your account, associated data is deleted, except limited records no longer linked to your user identifier: safety/moderation logs, aggregated ad and cost analytics, anti-abuse records, and Apple transaction records required to prevent replay and preserve entitlement/refund integrity. The consumable Pulse ledger linked to the account is deleted with the account.
You can delete your account from within the app, or by emailing hananelqh@gmail.com if you lose access. Full details and exactly what is deleted are on the “Delete account” page.
To the extent applicable law allows, you may:
Dandesh is intended for adults aged 18 and over only, and the consent screen requires you to confirm your age. AI companions are also limited to 18 and over.
The app is not directed to anyone under 18; if an account is found to belong to someone underage, we delete it once we become aware.
We may update this policy as the app or legal requirements change, and we will update the “Last updated” date above.
تطبيق دندوشة من تطوير استوديو حنانيل آبس، وهو المسؤول عن معالجة بياناتك داخل التطبيق. للتواصل بشأن الخصوصية: hananelqh@gmail.com.
تغطّي هذه السياسة تطبيق دندوشة على نظامَي Android وiOS. أمّا هذا الموقع التعريفي فله سياسة خصوصية الاستوديو الخاصة، ولا يجمع بيانات منك عبر تصفّحه.
يجمع دندوشة البيانات اللازمة لتشغيل خدمة المحادثة وإدارة حسابك:
نستخدم البيانات للأغراض التالية فقط:
لتوليد ردود الرفيق، تُرسل رسائلك إلى مزوّد نماذج لغوية خارجي: نوجّه الطلبات عبر OpenRouter إلى مزوّدي نماذج لغوية خارجيين، وقد يتغيّر النموذج المستخدم. وعند الأسئلة المعرفية قد نستعين بخدمة بحث (Tavily) لجلب معلومات حديثة.
الردود مولّدة آلياً وقد تكون غير دقيقة أو غير مكتملة، وليست بديلاً عن استشارة مهنية.
نستعين بمزوّدي خدمة موثوقين لتشغيل التطبيق، يعالجون البيانات نيابةً عنا أو وفق سياساتهم:
لا نبيع بياناتك الشخصية، ولا نشاركها لأغراض تسويقية.
يعرض دندوشة إعلانات عبر Google AdMob (بانر، وإعلانات كاملة بين التصفّح، وإعلانات بمكافأة)، وقد تتنافس شبكات شريكة على عرض الإعلان في مزاد لحظي تديره AdMob — حالياً Unity Ads على أندرويد. قد تكون الإعلانات مخصّصة بناءً على اهتماماتك: تعالج الشبكات الإعلانية معرّف إعلانات جهازك وعنوان IP التقريبي (مثل البلد) لعرض الإعلانات وقياسها وتخصيصها وفق سياسات Google وشركائها.
في المنطقة الاقتصادية الأوروبية وبريطانيا وسويسرا لا تُعرض إعلانات مخصّصة إلا بعد موافقتك الصريحة عبر نموذج الموافقة داخل التطبيق، ورفضُك يعني إعلانات غير مخصّصة فقط. وتستطيع في أي وقت الحدّ من تخصيص الإعلانات أو إعادة تعيين/حذف معرّف الإعلانات من إعدادات جهازك (أندرويد: الإعدادات ← Google ← الإعلانات).
لا تظهر الإعلانات لمشتركي VIP أو لمن اشترى إزالة الإعلانات الدائمة، وتُكتم في المحادثات الحسّاسة. إعلانات المكافأة اختيارية، ولا تُمنح المكافأة إلا بعد تأكيد Google والخادم اكتمال الإعلان.
يستخدم دندوشة خدمة Google Firebase Analytics بإعدادات مقيَّدة للخصوصية: الجمع التلقائي للبيانات معطّل، ولا يُجمع أي معرّف إعلاني (Advertising ID)، ولا تُرسَل أي إشارات لتخصيص الإعلانات، ولا يُضبط أي معرّف مستخدم شخصي (setUserId يبقى فارغاً/null).
تُسجَّل فقط أحداث استخدام مجمّعة — مثل فتح التطبيق والجلسات والتنقّل بين الشاشات والتفاعل مع خصائص التطبيق وأحداث إعلانات المكافأة — دون أي محتوى محادثات أو رسائل أو ردود ذكاء اصطناعي أو بيانات شخصية (PII). تُفعَّل هذه التحليلات فقط بعد موافقتك على شاشة الموافقة، وتُكبَح تماماً أثناء المحادثات الحسّاسة.
ولتشخيص الأعطال يستخدم دندوشة Google Firebase Crashlytics بالضوابط نفسها: الجمع معطّل عند بناء التطبيق ولا يُفعَّل إلا بعد موافقتك، ولا يُضبط أي معرّف مستخدم إطلاقاً. لا يُرسَل مع تقرير العطل إلا نوع الحساب ولغة الواجهة وقناة الإصدار واسم آخر شاشة، وتُنقَّح رسالة الخطأ وأثر المكدّس من عناوين البريد ورموز الدخول قبل الإرسال. لا يُرسَل أي محتوى محادثة، ولا تُسجَّل أسماء الشاشات أثناء المحادثات الحسّاسة.
وعلى iOS وحده: عند طلبك استرداداً من Apple تطلب Apple منّا بيانات استهلاك تساعدها على البتّ في طلبك. لا نرسل شيئاً إلا إذا فعّلتَ الخيار بنفسك — وهو مطفأ افتراضياً، ومنفصل تماماً عن قبول الشروط وعن الموافقة التسويقية، ويمكنك تشغيله أو إيقافه في أي وقت من «الإعدادات». والمُرسَل ثلاثة أشياء فقط: أن الشراء سُلّم فعلاً، ونسبة ما استُهلك منه، وأننا نقدّم رصيداً مجانياً قبل أي شراء. لا يُرسَل أي محتوى محادثة ولا اسم ولا بريد ولا معرّف حساب.
نحتفظ بسجلات تشغيلية مجمّعة أو مجهّلة الهوية (مثل تكلفة النماذج وأداء الإعلانات) لا تتضمّن محتوى محادثاتك ولا تحدّد شخصك.
تُخزَّن البيانات في Supabase مع سياسات وصول على مستوى الصف (RLS) تقصر وصولك على بياناتك أنت. وعلى جهازك تُحفظ رموز الجلسة بشكل مشفّر في iOS Keychain أو Android Keystore.
لا تُرسل كلمة المرور أو رمز التحقق أو أي رمز سري لنا عبر البريد إطلاقاً؛ والتطبيق أصلاً لا يستخدم كلمة مرور.
نحتفظ ببيانات حسابك ومحادثاتك طالما ظل حسابك قائماً أو بالقدر اللازم لتقديم الخدمة.
عند حذف الحساب تُحذف البيانات المرتبطة به، باستثناء سجلات محدودة لا تعود مرتبطة بمعرّف المستخدم: سجلات الإشراف/السلامة، وتحليلات الإعلانات والتكلفة المجمّعة، وسجلات مكافحة إساءة الاستخدام، وسجلات معاملات Apple اللازمة لمنع التكرار وحفظ سلامة الاستحقاقات والاستردادات. يُحذف سجل النبضات الاستهلاكية المرتبط بالحساب مع الحساب.
يمكنك حذف حسابك من داخل التطبيق، أو بإرسال طلب إلى hananelqh@gmail.com عند فقدان الوصول. التفاصيل الكاملة وما يُحذف فعلياً في صفحة «حذف الحساب».
يحق لك، بالقدر الذي يتيحه القانون المعمول به:
دندوشة مخصّص للبالغين بعمر 18 عاماً فأكثر فقط، وتتطلب شاشة الموافقة تأكيد عمرك. كما أن شخصيات الرفيق محدّدة بـ18 عاماً فأكثر.
التطبيق غير موجّه لمن هم دون 18 عاماً، وإذا تبيّن أن حساباً يخص شخصاً دون السن نحذفه عند العلم به.
قد نحدّث هذه السياسة عند تغيّر التطبيق أو المتطلبات القانونية، وسنحدّث تاريخ «آخر تحديث» أعلاه.