1. إطار الامتثال التشريعي والقانوني
يلتزم فريق NexisCode Software Labs بحماية خصوصية مستخدمي تطبيق Stokko (نظام نقاط البيع وإدارة المخزون والمحاسبة) والامتثال لأعلى المعايير القانونية والتنظيمية:
- القانون الجزائري رقم 18-07: المتعلق بحماية الأشخاص الطبيعيين في مجال معالجة المعطيات ذات الطابع الشخصي.
- القانون الجزائري رقم 07-11: المتضمن النظام المحاسبي المالي (SCF) والتزامات حفظ السجلات التجارية.
- اللائحة العامة لحماية البيانات (GDPR): المعيار الأوروبي لحماية البيانات الرقمية (EU 2016/679).
- سياسات Google Play Developer: بما يشمل متطلبات سلامة البيانات (Data Safety) وحذف الحسابات (Account Deletion Policy).
2. بيانات الحساب وتوصيف الأسماء العرفية (Account Data & Descriptors)
يعمل تطبيق Stokko في إدارة الحسابات والديون وفق منهجية واضحة ومحددة للبيانات:
- بيانات الحساب والمصادقة (Account Data): عند تسجيل الحساب أو تسجيل الدخول (عبر البريد الإلكتروني أو حساب Google)، يجمع التطبيق البريد الإلكتروني واسم الحساب حصرياً لأغراض توثيق هوية التاجر، حماية الحساب، وتأمين الدخول إلى المتجر. لا تُشارك هذه البيانات مع أي طرف خارجي أو معلنين.
- الأسماء العرفية والتجارية للزبائن: يُتيح التطبيق للتاجر تسجيل اسم مبسط أو عرفي للزبون (مثل: "حسين الكهربائي"، "عمي رابح"، "أمين") بهدف إسناد المعاملة المالية في دفتر الديون الداخلي للمحل.
- انعدام المعطيات المحددة للهوية (No Direct PII): لا يقوم التطبيق بطلب أو جمع أو معالجة الألقاب العائلية الرسمية، أو أرقام بطاقات الهوية والتعريف الوطني (NIN)، أو وثائق الحالة المدنية للزبائن. وبالتالي، فإن الاسم المسجل منفرداً لا يمكنه تحديد هوية الشخص الطبيعي بصفة مباشرة أو قاطعة وفقاً للمادة 3 من القانون 18-07.
💡 المعالجة التعاقدية المشروعة: تُعالج أسماء الزبائن كوصف وظيفي داخلي حصرياً لتنفيذ المعاملة المالية وعقد البيع بالدين بين التاجر وزبونه (طبقاً للمادتين 7 و 9 من القانون 18-07).
3. التشفير التام والمزامنة السحابية المغلقة (VIP)
- التشفير المحلي التام (SQLCipher AES-256): تُخزن كافة السجلات والأسعار والمبيعات محلياً على جهاز التاجر داخل قاعدة بيانات مشفرة بـ
SQLCipher AES-256 ومحمية بمعالج الأمان المادي للجهاز (Android Keystore).
- المزامنة السحابية المغلقة: لحسابات VIP متعددة الأجهزة، تتم مزامنة دفتر الديون والمخزون عبر اتصال مشفر (TLS/SSL) محصور حصرياً بين أجهزة المحل التابعة لنفس التاجر (صاحب المحل والكاشير).
- انعدام المشاركة مع أطراف ثالثة: لا يتم بيع، أو تأجير، أو مشاركة أي جزء من سجلات المحل أو الزبائن مع شركات إعلانية أو أطراف خارجية على الإطلاق.
4. أذونات الجهاز ومبررات استخدامها (Device Permissions)
يطلب التطبيق فقط الأذونات الضرورية لتقديم وظائف الكاشير وإدارة المحل:
📷 الكاميرا (Camera)
تُستخدم حصرياً لمسح الرموز الشريطية (Barcode) وقراءة النصوص من الفواتير الورقية عبر تقنية التعرف البصري (OCR). لا يتم التقاط أو تخزين أي صور شخصية.
🖨️ البلوتوث (Bluetooth)
تُستخدم للاتصال بالطابعات الحرارية (Thermal Receipt Printers) وطابعات الملصقات وقارئات الباركود اللاسلكية. تُستخدم بصيغة neverForLocation ولا تجمع الموقع الجغرافي إطلاقاً.
💾 التخزين (Storage)
تُستخدم لتصدير الفواتير والتقارير المحاسبية بصيغة PDF و CSV وحفظ النسخ الاحتياطية المشفرة على ذاكرة الجهاز.
🌐 الإنترنت والشبكة (Internet)
تُستخدم للمزامنة السحابية المشفرة لحسابات VIP، والتحقق من الاشتراكات عبر Google Play Billing، وتحديث كتالوج المنتجات.
5. الخدمات الخارجية، الاشتراكات، والذكاء الاصطناعي (Third-Party SDKs & AI)
- خدمات Google Firebase: تُستخدم المصادقة وقواعد البيانات السحابية المشفرة (Firestore) وإدارة التهيئة عن بُعد (Remote Config). راجع سياسة خصوصية Firebase.
- حماية سلامة التطبيق (Play Integrity & App Check): للتحقق من سلامة التطبيق وحمايته من التعديل أو الاستنساخ غير المصرح به.
- المدفوعات والاشتراكات (Google Play Billing): تتم جميع عمليات الترقية لحسابات VIP عبر نظام الدفع الرسمي لـ Google Play. لا يقوم التطبيق بجمع أو حفظ أي بيانات بطاقات بنكية أو معلومات دفع.
- الذكاء الاصطناعي ومعالجة النصوص (ML Kit & Vertex AI): تُعالج تقنيات الذكاء الاصطناعي والتعرف الضوئي (OCR) نصوص الفواتير وأسماء السلع محلياً أو سحابياً بشكل مؤقت لتصنيف المنتجات. لا تُستخدم بيانات التاجر أو الزبائن في تدريب نماذج الذكاء الاصطناعي العامة.
6. الالتزام الجبائي وحفظ السجلات المحاسبية (القانون 07-11)
يحتفظ التطبيق بسجلات المبيعات والحركات المالية محلياً لتمكين التاجر من الوفاء بالتزامه القانوني بحفظ الوثائق المحاسبية لمدة 10 سنوات طبقاً للمادة 11 من القانون 07-11 (النظام المحاسبي المالي SCF).
التاجر هو المسؤول القانوني الحصري عن فواتيره وتصريحاته الجبائية لدى إدارة الضرائب؛ وتُعتبر تقارير الضرائب المدمجة (TVA و IFU) أدوات استرشادية وتقديرية للمحاسبة الداخلية فقط.
7. حقوق المستخدم وحذف الحساب عبر الويب (Google Play Deletion Mandate)
- الوصول والتصحيح: يمكن للمستخدم الاطلاع على كافة بياناته وتعديلها في أي وقت.
- تصدير البيانات: يمكن تصدير بيانات المخزون والمبيعات بصيغة CSV أو PDF بضغطة زر.
- خصوصية الأطفال (COPPA): التطبيق مُوجَّه حصرياً للتجار والأنشطة المهنية للبالغين (+18 سنة).
- تحديثات السياسة: يتم إشعار المستخدمين بأي تحديثات جوهرية قبل 15 يوماً من سريانها عبر تنبيه داخل التطبيق.
🗑️ آلية حذف الحساب والبيانات السحابية (داخل التطبيق وعبر الويب):
امتثالاً لمتطلبات Google Play، يمكن للمستخدم طلب الحذف النهائي لحسابه وكافة بياناته السحابية بإحدى طريقتين:
- من داخل التطبيق: الدخول إلى
الإعدادات ← الحساب ← حذف الحساب نهائياً.
- عبر الويب (بدون الحاجة لتثبيت التطبيق): إرسال طلب حذف إلى البريد الرسمي: support@nexiscode.online متضمناً البريد الإلكتروني المسجل. يتم حذف الحساب وسجلاته السحابية نهائياً خلال مدة أقصاها 30 يوماً.
1. Cadre Juridique et Conformité
L'équipe NexisCode Software Labs s'engage à protéger la confidentialité des données des utilisateurs de Stokko (caisse enregistreuse et gestion de stock) selon les normes les plus strictes :
- Loi algérienne n° 18-07 : Relative à la protection des personnes physiques dans le traitement des données à caractère personnel.
- Loi algérienne n° 07-11 : Portant Système Comptable Financier (SCF) et conservation décennale des pièces.
- Règlement Général sur la Protection des Données (RGPD) : Norme européenne (UE 2016/679).
- Règlement Google Play pour les Développeurs : Section Sécurité des Données (Data Safety) et Politique de Suppression de Compte.
2. Données du Compte et Descripteurs Fonctionnels
Dans la gestion des comptes et du carnet de dettes, Stokko applique une architecture claire et sécurisée :
- Données de Compte (Account Data) : Lors de l'inscription ou de la connexion (par e-mail ou compte Google), l'application collecte l'adresse e-mail et le nom renseigné exclusivement à des fins d'authentification, de sécurisation et de gestion du compte de la boutique. Ces données ne sont jamais partagées avec des tiers.
- Noms d'usage uniquement : L'application permet d'enregistrer un nom usuel ou commercial (ex. "Hocine Electricien", "Amine") pour attribuer les transactions dans le carnet interne.
- Absence de données nominatives directes : L'application ne collecte ni nom de famille officiel, ni numéro d'identification nationale (NIN), ni document d'état civil des clients. Isolément, ces désignations ne permettent en aucun cas d'identifier directement une personne physique au sens de l'article 3 de la loi 18-07.
💡 Traitement Contractuel : Ces descripteurs sont cantonnés à la gestion interne de caisse pour l'exécution du contrat de vente à crédit (Art. 7 et 9, Loi 18-07).
3. Chiffrement Local et Synchronisation Confinée (VIP)
- Chiffrement Local (SQLCipher AES-256) : Vos registres et ventes sont chiffrés sur l'appareil et scellés dans le processeur sécurisé
(Android Keystore).
- Synchronisation Confinée : Pour les comptes multi-caisses VIP, la synchronisation est chiffrée (TLS/SSL) et strictement réservée aux terminaux autorisés de la même boutique.
- Aucun Partage Tiers : Aucune donnée n'est vendue, louée ou transmise à des régies publicitaires.
4. Permissions Appareil et Justifications
📷 Caméra (Camera)
Pour la lecture des codes-barres et la numérisation OCR des factures. Aucune image personnelle n'est enregistrée.
🖨️ Bluetooth
Pour la connexion aux imprimantes thermiques de reçus et lecteurs code-barres (flag neverForLocation sans géolocalisation).
💾 Stockage (Storage)
Pour l'export local des factures/rapports PDF et CSV et la sauvegarde chiffrée.
🌐 Internet & Réseau
Pour la synchronisation cloud VIP, la vérification des abonnements Google Play et les mises à jour du catalogue.
5. Services Tiers, Abonnements et Intelligence Artificielle
- Google Firebase : Authentification, base Firestore chiffrée et Remote Config. Confidentialité Firebase.
- Intégrité (Play Integrity & App Check) : Vérification de l'authenticité de l'application et protection anti-fraude.
- Abonnements Google Play Billing : Les paiements VIP sont gérés exclusivement par Google Play. L'application ne traite aucune donnée bancaire.
- IA et Reconnaissance Visuelle (ML Kit & Vertex AI) : Traitement local/sécurisé des factures sans utilisation de vos données pour l'entraînement de modèles d'IA publics.
6. Conservation Comptable (Loi 07-11) et Fiscalité
Les transactions sont conservées localement pour assister le commerçant dans son obligation légale de conservation décennale (Art. 11 de la loi 07-11). Les rapports fiscaux intégrés (TVA/IFU) constituent des outils indicatifs de gestion interne.
7. Droits Utilisateurs et Suppression via le Web
🗑️ Suppression de Compte et Données Cloud (Application & Web) :
Conformément aux exigences de Google Play, vous pouvez demander la suppression intégrale de votre compte :
- Dans l'application : Menu
Paramètres → Compte → Supprimer définitivement le compte.
- Via le Web : Envoyez un e-mail à support@nexiscode.online avec votre adresse e-mail de compte. Suppression définitive sous 30 jours.
1. Regulatory Compliance Framework
NexisCode Software Labs is committed to ensuring high data protection and privacy standards for Stokko (POS & Inventory Management) users under:
- Algerian Law No. 18-07: Protection of Individuals in Personal Data Processing.
- Algerian Law No. 07-11: Financial Accounting System (SCF) and 10-year statutory record retention.
- General Data Protection Regulation (GDPR): Regulation (EU) 2016/679.
- Google Play Developer Policies: Including Data Safety and Web-Based Account Deletion requirements.
2. Account Data & Functional Descriptors
For store account management and internal debt ledger operations, Stokko applies clear data boundaries:
- Account Data: When registering or signing in (via Email/Password or Google Sign-In), the application collects your email address and registered name solely for authentication, account security, and store profile management. This data is never shared with third parties or advertisers.
- Informal / Commercial Handles Only: The app allows merchants to record a customer reference name (e.g. "Hocine Electrician", "Uncle Rabah", "Amine") strictly to assign ledger entries.
- No Direct PII Collection: The app does not collect family surnames, national ID numbers (NIN), or official civil registry data. In isolation, reference names cannot identify a natural person under Article 3 of Law 18-07.
💡 Contractual Trade Basis: Descriptors are used strictly for private point-of-sale execution between the merchant and the customer (Art. 7 & 9, Law 18-07).
3. AES-256 Storage & Private Multi-Device Sync (VIP)
- On-Device Encryption (SQLCipher AES-256): Store records, prices, and sales are encrypted locally and backed by hardware security
(Android Keystore).
- Confined Cloud Synchronization: Multi-terminal VIP sync is transmitted via TLS/SSL strictly between the merchant's authenticated store devices.
- Zero Third-Party Sharing: No store or customer records are sold, rented, or shared with advertisers or external parties.
4. Device Permissions & Specific Justifications
📷 Camera
Used exclusively for barcode scanning and OCR document invoice recognition. No personal images are collected.
🖨️ Bluetooth
Used to connect to ESC/POS thermal receipt printers and wireless barcode scanners (flagged neverForLocation, no geolocation collected).
💾 Storage
For local export of PDF invoices, CSV financial reports, and encrypted database backups.
🌐 Internet & Network
For VIP multi-device sync, Google Play Billing subscription verification, and catalog updates.
5. Third-Party Services, Billing & AI Technologies
- Google Firebase: Authentication, encrypted Firestore database, and Remote Config. Firebase Privacy Policy.
- App Integrity (Play Integrity & App Check): Ensures app authenticity and protects against tampered software.
- Google Play Billing: In-app VIP subscriptions are processed securely through Google Play. We never handle or store payment card data.
- On-Device ML Kit & Vertex AI: OCR text extraction and product categorization. Store data is never used to train general AI models.
6. Accounting Retention & Fiscal Responsibility (Law 07-11)
Transaction records are retained on-device to support the merchant's 10-year statutory accounting obligation under Article 11 of Algerian Law 07-11 (SCF). Embedded tax estimates (TVA/IFU) are internal managerial tools only.
7. User Rights & Web-Based Account Deletion
🗑️ Account & Cloud Data Deletion (In-App & Web URL):
Compliant with Google Play Data Safety requirements, you may delete your account and cloud data anytime:
- In-App: Go to
Settings → Account → Delete Account Permanently.
- Web-Based Request (No App Install Required): Send an email to support@nexiscode.online with your registered email address. Permanent deletion will be executed within 30 days.