مرحباً بك في تطبيق DocSera ("التطبيق" أو "نحن"). تُحدّد هذه الوثيقة كيف نقوم بجمع بياناتك الشخصية والصحية، وكيف نستخدمها، وأين نحفظها، ومع مَن نشاركها، وما هي حقوقك تجاه هذه البيانات. باستخدامك للتطبيق وإنشاء حساب فيه، فإنك توافق على ممارسات الخصوصية الموضحة في هذه الوثيقة.
ملخّص سريع: بياناتك الصحية مخزّنة بالكامل على خادم محلّي داخل الجمهورية العربية السورية، ومشفّرة بالكامل، ولا تُباع ولا تُؤجَّر، ولا تُشارَك مع أي طرف ثالث لأغراض تسويقية تحت أي ظرف.
1. ما هي البيانات التي نجمعها
1.1 بيانات الحساب الأساسية
عند إنشاء حسابك، نطلب منك:
الاسم الأول والاسم الأخير
رقم الهاتف الجوّال (مع التحقق منه برمز لمرة واحدة)
البريد الإلكتروني (مع التحقق منه برمز لمرة واحدة)
تاريخ الميلاد
الجنس
العنوان (اختياري)
1.2 البيانات الصحية
عند استخدامك لميزات الرعاية الصحية، نُخزّن:
سجل المواعيد: تاريخ ووقت الموعد، الطبيب، سبب الزيارة، وحالة الموعد.
المستندات الطبية التي ترفعها بنفسك: الوصفات، التقارير، التحاليل، الصور الطبية. يتم تشفيرها داخل التخزين الخاص بنا.
الملف الصحي الذي تُدخِله بنفسك: الحساسيات، الأمراض المزمنة، الأدوية، السجل العائلي.
المراسلات مع الأطباء: الرسائل النصية والصوتية والمرفقات. جميع محتويات الرسائل مشفّرة بمعيار AES-256-GCM قبل تخزينها.
التقارير الطبية الصادرة عن الأطباء: تُحفظ في حسابك للاطلاع عليها لاحقاً.
ملفات الأقارب الذين تُديرهم: بيانات أفراد العائلة (مثل الأبناء القاصرين أو كبار السن) عند اختيارك إضافتهم لحسابك.
1.3 البيانات التقنية والتشغيلية
معلومات الجهاز: نوع الجهاز، نظام التشغيل وإصداره، إصدار التطبيق، اللغة.
سجل الأنشطة داخل التطبيق: الصفحات التي تزورها والإجراءات التي تتخذها، لتحسين تجربة الاستخدام واكتشاف الأخطاء. لا تتضمن هذه السجلات محتوى رسائلك أو مستنداتك أو أي معلومات شخصية حساسة.
تقارير الأعطال: عند توقف التطبيق عن العمل بشكل غير متوقع، يُرسل تقرير تقني للخطأ. لا يحتوي على بياناتك الشخصية أو الصحية.
الشكاوى والاقتراحات: إذا أرسلت شكوى أو اقتراحاً من داخل التطبيق، نحفظ نصّ رسالتك ونوعها ووسيلة التواصل التي تختار إدخالها اختيارياً، لمعالجتها والردّ عليك.
1.4 بيانات الموقع الجغرافي (اختيارية)
إذا منحت التطبيق إذن الوصول إلى موقعك، نستخدم موقعك أثناء استخدام التطبيق فقط لعرض الأطباء القريبين منك على الخريطة. لا نتتبع موقعك في الخلفية ولا نحتفظ بسجل تاريخي لتنقّلاتك. يمكنك سحب هذا الإذن في أي وقت من إعدادات الجهاز.
1.5 بيانات لا نجمعها
لا نجمع أي بيانات بيومترية. بصمات الوجه أو الأصابع لا تغادر جهازك أبداً (يتعامل معها نظام التشغيل مباشرة).
لا نقرأ جهات اتصالك أو رسائلك خارج التطبيق.
لا نقرأ تقويم جهازك. إضافة موعد إلى التقويم تتم فقط عند ضغطك على زر "إضافة إلى التقويم"، عبر نظام التشغيل.
لا نستخدم ملفات تعريف الارتباط (Cookies) للتتبع عبر مواقع أخرى.
2. كيف نستخدم بياناتك
نستخدم بياناتك حصراً للأغراض التالية:
تقديم الخدمة: إنشاء حسابك، التحقق من هويتك، حجز المواعيد، إدارة سجلك الطبي، تيسير المراسلات بينك وبين الطبيب.
الأمان: اكتشاف محاولات الاحتيال، حماية حسابك، إصدار رموز التحقق، تتبع الأجهزة الموثوقة، فرض حدود محاولات تسجيل الدخول.
الاتصالات التشغيلية: رموز التحقق برسائل SMS والبريد الإلكتروني، تأكيدات الحجز، تذكيرات المواعيد، الإشعارات داخل التطبيق المتعلقة بحسابك. لا نُرسل حالياً أي رسائل تسويقية بالبريد الإلكتروني.
تحسين التطبيق: تحليل أنماط الاستخدام المُجمَّعة (من دون تتبّعك شخصياً) لاكتشاف المشاكل وتحسين التصميم.
الالتزام القانوني: الاستجابة لطلبات السلطات المختصة عند الاقتضاء قانونياً.
لا نستخدم بياناتك أبداً لـ: الإعلانات، البيع لأطراف ثالثة، التحليلات السلوكية لأغراض تسويقية، إنشاء ملفات إعلانية، مشاركة بياناتك مع شركات إعلانات.
3. مشاركة البيانات
3.1 مع الأطباء الذين تختارهم
عند حجزك موعداً لدى طبيب — وهو فعل صريح منك — يرتبط ملفك بقائمة مرضى ذلك الطبيب، ويستطيع هو (وفريق عيادته ضمن أذونات يمنحها لهم) الاطلاع على ملفك الصحي في التطبيق — بياناتك التعريفية الأساسية وتاريخك الطبي ووثائقك — وذلك لغرض تقديم الرعاية حصراً. وينشأ الارتباط نفسه عند قبولك طلب ربط يرسله إليك طبيبك. الأطباء غير المرتبطين بك لا يرون أي شيء من ملفك.
3.2 مع الشركاء التجاريين (برنامج الولاء والعروض)
يضم تطبيق DocSera برنامج ولاء وعروض من شركاء تجاريين معتمدين. ولا تشمل القسائم أدوية. عند استخدامك قسيمة لدى أحد الشركاء، نُشارك مع الشريك فقط:
اسمك الأول (دون اسم العائلة)
رمز القسيمة وقيمة الخصم
تاريخ صلاحية القسيمة
لا يحصل الشركاء على رقم هاتفك، بريدك الإلكتروني، عنوانك، تاريخ ميلادك، أو أي بيانات صحية مهما كانت.
3.3 مع مزوّدي الخدمات التقنية
نستعين بمجموعة محدودة جداً من مزوّدي الخدمات التقنية لتشغيل التطبيق. هؤلاء المزوّدون مُلزَمون تعاقدياً بحماية بياناتك ولا يستخدمونها لأي غرض آخر:
Firebase Cloud Messaging (شركة Google Ireland Ltd، الاتحاد الأوروبي): مزوّد الإشعارات الأساسي على أجهزة أندرويد وأجهزة iOS التي تدعم خدمات Google Play. يستلم رمز جهازك ومحتوى الإشعار النصي القصير فقط (مثلاً: "لديك رد جديد من الطبيب"). لا يستلم أبداً محتوى الرسائل أو المستندات أو أي بيانات صحية.
Pushy (الولايات المتحدة): مزوّد إشعارات احتياطي للأجهزة التي لا تدعم خدمات Google Play (مثل أجهزة هواوي). نطاق البيانات نفسه — رمز الجهاز ومحتوى الإشعار النصي القصير فقط. لا يستلم أبداً محتوى الرسائل أو المستندات أو أي بيانات صحية.
Google Maps: لعرض الخرائط فقط. لا يستلم Google أي بيانات شخصية أو صحية — فقط إحداثيات الخريطة المعروضة، عبر وسيط على خادمنا.
Mailgun (الولايات المتحدة): بوابة إرسال البريد الإلكتروني. تُستخدم لإرسال رموز التحقق والرسائل الحسابية إلى بريدك عند إضافته — تستلم عنوان بريدك ومحتوى رسالة التحقق فقط. لا تستلم أي بيانات صحية.
3.4 الإفصاح بموجب القانون
قد نُفصِح عن بياناتك للسلطات المختصة في الجمهورية العربية السورية إذا طُلب منا ذلك بموجب أمر قضائي صحيح أو التزام قانوني واضح، وضمن الحد الأدنى المطلوب فقط.
3.5 الاطلاع الرقابي (بيانات مجمَّعة فقط)
قد نُتيح للجهات الرقابية المختصة الاطلاع على بيانات تشغيلية مجمَّعة عن عمل المنصّة (مثل أعداد الخدمات المقدَّمة) وقوائم مقدّمي الخدمة المهنية، وذلك في إطار الترخيص والإشراف التنظيمي. لا يتضمن هذا الاطلاع أي بيانات شخصية أو ملفات طبية لأي مستخدم.
4. أين تُخزَّن بياناتك
تُخزَّن جميع بياناتك الشخصية والصحية والمستندات والرسائل على خادم محلي داخل الجمهورية العربية السورية، مُستضاف على بنية شركة سيريتل للاتصالات المتنقلة. لا تُغادر بياناتك الصحية الأراضي السورية أبداً. وتُسجَّل تقارير الأعطال التقنية وتُعالَج بالكامل داخل بنية التطبيق في سورية، بعد تنقية تلقائية لأي معرّفات شخصية.
5. كيف نحمي بياناتك
التشفير أثناء النقل: جميع الاتصالات بين تطبيقك والخادم محمية بـ TLS 1.2 أو أحدث. لا نستخدم أبداً اتصالات HTTP غير مشفّرة.
تشفير الرسائل: محتوى رسائلك مع الأطباء (نصوص، صور، ملفات، رسائل صوتية) مُشفّر بمعيار AES-256-GCM (تشفير معتمد بالمصادقة) قبل أن يُخزَّن على الخادم.
التشفير على الجهاز: جلسة دخولك وبيانات تسجيل الدخول البيومتري مخزَّنة في Keychain (iOS) أو في EncryptedSharedPreferences (Android).
الفصل بين البيانات: قاعدة البيانات تطبّق سياسات أمنية على مستوى كل سجل (Row-Level Security)، فلا يستطيع أي مستخدم رؤية بيانات مستخدم آخر.
الوصول الإداري: فريق DocSera الفني المحدود يصل إلى بياناتك فقط عند الضرورة لإصلاح مشكلة تقنية، وعبر نظام صلاحيات صارم ومُسجَّل.
كلمات المرور: لا نُخزّن كلمات مرورك بشكل قابل للقراءة.
تحديث أمني إلزامي: إذا اكتُشِفت ثغرة أمنية، يُمكننا إجبار جميع المستخدمين على تحديث التطبيق.
المراجعة الأمنية: أجرينا مراجعة أمنية داخلية قبل الإطلاق.
6. الإشعار في حال خرق البيانات
في حال اكتشافنا لخرق أمني يُؤثّر على بياناتك الشخصية أو الصحية، نلتزم بـ:
إخطارك دون تأخير غير مبرَّر بعد تأكيد الحادث، عبر البريد الإلكتروني وإشعار داخل التطبيق.
توضيح ما حدث، ما هي البيانات المتأثرة، وما الإجراءات التي يجب أن تتخذها.
إخطار الهيئة الوطنية لخدمات تقانة المعلومات وفق القوانين السارية.
7. حقوقك في بياناتك
حق الاطلاع: طلب نسخة من بياناتك المُخزَّنة لدينا.
حق التصحيح: تصحيح أي بيانات غير دقيقة (مباشرة من إعدادات الحساب لمعظم الحقول).
حق إيقاف الحساب: إيقاف حسابك مؤقتاً مع إمكانية إعادة تفعيله لاحقاً.
حق الحذف الدائم: طلب الحذف الكامل لحسابك (انظر القسم 8).
حق سحب الموافقة: سحب أي موافقة منحتها سابقاً (مثلاً منع الإشعارات أو إلغاء أذونات الموقع).
عند طلبك تعطيل حسابك، يُغلَق فوراً ولا يمكنك استخدامه. تُلغى مواعيدك المستقبلية. خلال 30 يوماً يمكنك إعادة تفعيله إذا غيّرت رأيك.
المرحلة 2: طلب الحذف الدائم
إذا اخترت "الحذف الدائم"، يبدأ عدّاد لمدّة 30 يوماً يمكنك خلاله التراجع. خلال هذه الفترة الحساب مُعطَّل.
المرحلة 3: التمويه (Pseudonymization) — بعد 30 يوماً
إذا لم تتراجع خلال الـ30 يوماً، نقوم تلقائياً بـ:
حذف معلوماتك الشخصية: اسمك، بريدك، رقم هاتفك، تاريخ ميلادك، عنوانك، أجهزتك الموثوقة، تفضيلاتك، رمز الإحالة، نقاط الولاء.
تمويه السجلات الطبية المرتبطة: المواعيد، الرسائل، المستندات، التقارير. تُستبدل هويتك الشخصية في هذه السجلات بمُعرِّف غير قابل للتعريف ("مستخدم محذوف" / "Deleted User")، ويُستبدل بريدك الإلكتروني بمُعرِّف مُبهَم (مثلاً deleted_a1b2c3d4@deleted.docsera.app)، ويُستبدل رقم هاتفك بمُعرِّف مماثل غير قابل للاستخدام. تبقى السجلات متاحة فقط للأطباء الذين عالجوك كجزء من ملفاتهم الطبية المهنية.
سبب احتفاظ الأطباء بسجلاتهم: الممارسة الطبية المعتمدة في الجمهورية العربية السورية تُلزم الطبيب بالاحتفاظ بسجلاته الإكلينيكية لأغراض المسؤولية القانونية والمراجعة المهنية.
المرحلة 4: الحذف الكامل — بعد 7 سنوات
بعد مرور 7 سنوات من تاريخ التمويه، يتم تلقائياً حذف جميع السجلات الطبية المرتبطة بحسابك السابق، بما في ذلك السجلات المُموَّهة لدى الأطباء، بشكل دائم ولا يمكن استرجاعه.
للبدء في عملية الحذف: الإعدادات > الأمان > حذف الحساب، أو راسلنا على support@docsera.app.
9. الاحتفاظ بالبيانات
بيانات الحساب الشخصية: طوال فترة استخدامك للتطبيق + 30 يوماً بعد طلب الحذف.
السجلات الطبية: تُمَوَّه بعد 30 يوماً من طلب الحذف، ثم تُحذف نهائياً بعد 7 سنوات.
سجلات الأنشطة (Analytics): تُفصَل هوية المستخدم عنها بعد 90 يوماً، وتُحتفَظ الإحصاءات مجهولة الهوية لأغراض التشغيل والتحسين.
تقارير الأعطال التقنية: تُسجَّل داخل بنية التطبيق في سورية، وتُحذف بعد 24 شهراً كحدّ أقصى.
سجلات التدقيق الإدارية: طوال فترة الالتزام القانوني المعمول به.
10. الأطفال والقاصرون
التطبيق مُصمَّم للاستخدام من قِبل من بلغوا السادسة عشرة من العمر. للقاصرين دون 16 عاماً، يجب أن يُدير حساباتهم وملفاتهم الطبية ولي الأمر من خلال ميزة "إدارة الأقارب". لا نسمح بشكل متعمَّد بإنشاء حسابات مستقلة لأطفال دون السادسة عشرة. إذا اكتشفنا حساباً لقاصر دون إشراف، نقوم بتعطيله فوراً.
11. الأذونات التي يطلبها التطبيق
الكاميرا: لالتقاط صور المستندات الطبية لرفعها إلى ملفك.
مكتبة الصور: لاختيار صور أو مستندات موجودة على جهازك لرفعها.
الميكروفون: لتسجيل الرسائل الصوتية في المحادثات مع الطبيب فقط.
الموقع (أثناء الاستخدام فقط): لعرض الأطباء القريبين منك على الخريطة.
التعرّف البيومتري: لتسجيل الدخول السريع. تُعالَج البيانات البيومترية بواسطة نظام التشغيل ولا تُغادر جهازك.
التقويم (اختياري وعند الطلب فقط): فقط عندما تضغط زر "إضافة إلى التقويم". لا نقرأ تقويمك.
12. التغييرات على هذه السياسة
قد نُحدِّث هذه السياسة لتعكس تحسينات في الخدمة أو متطلبات قانونية جديدة. عند أي تحديث جوهري، سنُخطرك داخل التطبيق ونطلب موافقتك على النسخة الجديدة قبل متابعة استخدام الخدمة. يُمكنك دائماً مراجعة الإصدار الحالي من خلال الإعدادات > الإشعارات والخصوصية > سياسة الخصوصية.
هذه السياسة مُصمَّمة لتلتزم بمتطلّبات متاجر التطبيقات (Apple App Store و Google Play) ومتطلّبات وزارة الصحّة في الجمهورية العربية السورية الصادرة بموجب القرار التنظيميّ رقم 24/ت لعام 2025 (الضوابط والنواظم العامّة للتطبيقات الطبّية الإلكترونية).
14.1 تصنيف التطبيق المستهدَف
يُقدَّم تطبيق DocSera للحصول على ترخيص ضمن الصنف الثاني من القرار 24/ت، باعتباره تطبيقاً لتنظيم المواعيد والملفّات الشخصية بين المرضى والأطبّاء المرخّصين — وهو النشاط المُدرَج صراحةً في الملحق الثالث من القرار (الصنف الثاني، البند الأوّل: "تطبيقات تنظيم المواعيد بين المرضى والأطبّاء"). التطبيق لا يُقدّم استشارة طبية ولا تشخيصاً ولا توصيات دوائية — لمزيد من التفاصيل راجع الإقرار الطبّي.
14.2 الجهة المسؤولة والكيان القانونيّ
اسم الجهة المسؤولة: DocSera — اسم تجاريّ لنشاط السيّد جورج فادي زخور (تاجر فرد سوريّ).
السجل التجاريّ: رقم 0310108095، مديرية التجارة الداخلية وحماية المستهلك في ريف دمشق، بتاريخ 04/03/2026.
غرفة التجارة: عضو في غرفة تجارة ريف دمشق، رقم تسجيل 79273.
النشاط المُسجَّل (كود 620103): "أنشطة أخرى للبرمجة الحاسوبية — تطبيقات متعلّقة بتنظيم المواعيد".
عنوان المقرّ: ريف دمشق — المنطقة العقارية: جرمانا — العقار 1181، مكتب 171، الجمهورية العربية السورية.
هاتف الدعم الرسميّ: 0983322665.
14.3 الأدوار المسؤولة عن التطبيق (وفق الملحق 2 من القرار 24)
مالك التطبيق + المدير التنفيذيّ + المطوّر + مسؤول حماية البيانات (DPO): جورج فادي زخور — بكالوريوس هندسة برمجيات (ISE)، جامعة دويسبورغ-إيسن، ألمانيا، 2024.
المسؤول العلميّ: د. طوني بسام فصحية — إجازة في طب الأسنان، جامعة دمشق، 2023 — يحمل المسؤولية القانونية والأخلاقية عن أيّ محتوى طبّيّ بموجب المادة 6.4 من القرار 24.
14.4 مطابقة الأقسام مع متطلّبات القرار 24 (الملحق 2، البند 7)
تُرفَق وثيقة منفصلة بعنوان "مطابقة سياسة الاستخدام" ضمن حزمة التقديم للوزارة، تُوضّح أين تقع كلّ من الأقسام التسعة المطلوبة في هذه السياسة + شروط الاستخدام + الإقرار الطبّيّ. الترجمة المبدئيّة:
القسم 1 (التعريف بالتطبيق) → القسم 1 من شروط الاستخدام + الإقرار الطبّيّ.
القسم 2 (الجهة المسؤولة) → القسم 14 من هذه السياسة (أعلاه).
القسم 3 (الفئات المستهدَفة) → القسم 2 من شروط الاستخدام + القسم 10 من هذه السياسة.
القسم 4 (توصيف عمل التطبيق) → القسم 1 من شروط الاستخدام + الأقسام 1–3 من هذه السياسة.
القسم 5 (حقوق المستخدم ومسؤولياته) → القسم 7 من هذه السياسة + القسمان 3 و4 من شروط الاستخدام.
القسم 6 (آليات الحماية) → الأقسام 4 و5 و6 من هذه السياسة.
القسم 7 (حقوق الجهة المسؤولة وواجباتها) → القسم 8 من شروط الاستخدام + القسم 14 من هذه السياسة.
القسم 8 (سياسة القاصرين) → القسم 10 من هذه السياسة + القسم 2 من شروط الاستخدام.
القسم 9 (الإجراءات التنظيمية) → القسم 17 من شروط الاستخدام.
14.5 الاستضافة داخل سوريا — التزام صريح بالمادة 3.ت.1 من القرار 24
كل البيانات الشخصية والصحية والمستندات والرسائل مُخزّنة على بنية تحتية فيزيائية تقع داخل أراضي الجمهورية العربية السورية (سيريتل) كما هو مُبيَّن في القسم 4 أعلاه. تُتاح رسالة تأكيد رسميّة من مزوّد الاستضافة ضمن وثائق التقديم للوزارة.
14.6 إشعار الجهات التنظيمية عند خرق البيانات
إضافةً إلى ما ورد في القسم 6 أعلاه، نلتزم — في حال خرق يمسّ بيانات صحّية — بإشعار وزارة الصحّة في الجمهورية العربية السورية ضمن الجدول الزمنيّ المنصوص عليه في القرار 24، وبتنسيق التحقيق معها، إضافةً إلى إخطار الهيئة الوطنية لخدمات تقانة المعلومات وفق القوانين السارية. مسؤول حماية البيانات (DPO) هو نقطة التواصل المعتمَدة لأيّ اتصال تنظيميّ.
14.7 الاعتمادية والاعتماد لدى الجهات النقابية
نتعهّد بالحصول على موافقات الجهات النقابية المختصّة (نقابة الأطبّاء، نقابة المهن الصحّية...) قبل إطلاق أيّ خدمات إضافية ضمن نطاقها، وذلك وفقاً للالتزامات المنصوص عليها في نموذج الطلب الموقَّع للوزارة.
Privacy Policy
Version 1.0 — Effective 23 July 2026
Welcome to DocSera ("the App", or "we"). This document sets out exactly what personal and health data we collect, how we use it, where it is stored, with whom it is shared, and what rights you have over it. By using the App and creating an account, you accept the privacy practices described here.
Quick summary: Your health data is stored entirely on a local server inside the Syrian Arab Republic, fully encrypted, never sold, never rented, and never shared with any third party for marketing purposes under any circumstance.
1. Data we collect
1.1 Basic account data
When you create your account, we collect:
First and last name
Mobile phone number (verified by one-time code)
Email address (verified by one-time code)
Date of birth
Gender
Address (optional)
1.2 Health data
When you use the healthcare features, we store:
Appointment history: date, time, doctor, reason, and status of each appointment.
Medical documents you upload: prescriptions, lab reports, scans, and similar files. They are encrypted in our storage.
Health profile entries you enter: allergies, chronic conditions, medications, family history.
Doctor messages: text, voice, and file attachments. The content of every message is encrypted with AES-256-GCM before storage.
Doctor-issued reports: kept in your account for future reference.
Relative profiles you manage: data of family members (e.g. minor children, elderly relatives) you choose to add.
1.3 Technical and operational data
Device info: device type, OS version, app version, language.
In-app activity logs: screens you visit and actions you take, used to improve the experience and detect bugs. They never include the content of your messages, documents, or any sensitive personal information.
Crash reports: when the app stops unexpectedly, a technical error report helps us fix it. The report contains no personal or health data.
1.4 Location data (optional)
If you grant location permission, we use your location only while the app is in use to show nearby doctors on the map. We do not track your location in the background and we do not retain a history of your movements. You can revoke this permission at any time from your device's settings.
1.5 Data we do NOT collect
We collect no biometric data (Face ID and Fingerprint never leave your device — they are handled by the operating system itself).
We do not read your contacts or messages outside the app.
We do not read your device calendar (adding an appointment to the calendar happens only when you tap "Add to my calendar", and is handled entirely by the OS).
We do not use cookies for cross-site tracking.
2. How we use your data
Service delivery: creating your account, identity verification, booking appointments, managing your medical record, facilitating doctor messaging.
Operational communications: SMS and email one-time codes, booking confirmations, appointment reminders, in-app notifications about your account. We do not currently send any marketing emails.
Service improvement: analyzing aggregate usage patterns (without tracking you personally) to find issues and improve the design.
Legal compliance: responding to legitimate requests from competent authorities when legally required.
We never use your data for: advertising, sale to third parties, behavioral analytics for marketing, advertising profiling, or sharing with advertising companies.
3. Data sharing
3.1 With doctors you choose
When you book an appointment or send a message to a doctor, only what you explicitly choose to share is shared with that doctor: your name, date of birth, gender, reason for visit, and any documents you attach to that interaction. The doctor does not see your full medical history automatically — only what concerns the interaction between the two of you, or what you deliberately share with them.
3.2 With business partners (loyalty program)
DocSera includes a loyalty and offers program from approved commercial partners. Vouchers never include medicines. When you redeem a voucher with a partner, we share with the partner only:
Your first name (no last name)
The voucher code and discount value
The voucher expiration date
Partners do not receive your phone number, email, address, date of birth, or any health data whatsoever.
3.3 With technical service providers
Firebase Cloud Messaging (Google Ireland Ltd, EU): primary push notification provider on Android and on iOS devices with Google Play Services. Receives only your device token and the short notification text (e.g. "You have a new reply from your doctor"). Never receives the content of messages, documents, or any health data.
Pushy (United States): fallback push notification provider for devices without Google Play Services (e.g. Huawei devices). Same data scope as FCM — device token and short notification text only. Never receives the content of messages, documents, or any health data.
Google Maps: solely to display maps. Google receives no personal or health data — only the map tile coordinates being displayed, routed via a proxy on our server.
Mailgun (United States): email delivery gateway. Used to send verification codes and account emails to your address when you add one — receives only your email address and the verification message content. Never receives any health data.
3.4 Disclosure required by law
We may disclose your data to competent authorities in the Syrian Arab Republic if required by a valid court order or clear legal obligation, and only to the minimum necessary extent.
4. Where your data is stored
All your personal data, health data, documents, and messages are stored on a local server inside the Syrian Arab Republic, hosted on Syriatel Mobile Telecom infrastructure. Your health data never leaves Syrian territory. Technical crash reports are recorded and processed entirely within the app’s infrastructure in Syria, with personal identifiers automatically scrubbed.
5. How we protect your data
Encryption in transit: all communication between your app and our server is protected by TLS 1.2 or newer. We never use unencrypted HTTP connections.
Message encryption: the content of your messages with doctors (text, images, files, voice messages) is encrypted with AES-256-GCM (authenticated encryption) before being stored on the server.
On-device encryption: your login session and biometric credentials are stored in Keychain (iOS) or EncryptedSharedPreferences (Android).
Row-level data isolation: the database enforces per-row security policies — no user can read another user's data, even if they bypass the app.
Administrative access: our small technical team accesses your data only when necessary to fix a technical issue, via a strict permission system with audit logging.
Passwords: we do not store your passwords in a readable form.
Forced security updates: if a security flaw is discovered, we can require all users to update to a patched version.
Security review: we conducted an internal security review prior to launch.
6. Breach notification
We will notify you without undue delay after confirming an incident, by email and in-app notification.
The notification will explain what happened, what data was affected, and what steps you should take.
We will notify the National Authority for Information Technology Services of the Syrian Arab Republic in accordance with applicable laws.
7. Your rights
Right of access: request a copy of the data we hold about you.
Right of rectification: correct any inaccurate data.
Right to deactivate: deactivate your account temporarily with the option to reactivate later.
Right to permanent deletion: request permanent deletion of your account (see section 8).
Right to withdraw consent: withdraw any consent you previously gave.
When you request deactivation, your account is closed immediately. Future appointments are cancelled. For 30 days you can reactivate it if you change your mind.
Stage 2: Permanent-deletion request
If you choose "Permanent deletion", a 30-day countdown begins during which you can cancel. The account is deactivated and unusable during this window.
Stage 3: Pseudonymization — after 30 days
If you do not cancel within 30 days, we automatically:
Delete your personal information: name, email, phone, date of birth, address, trusted devices, preferences, referral code, loyalty points.
Pseudonymize the related medical records: appointments, messages, documents, reports. Your personal identity is replaced in those records with a non-identifying placeholder ("Deleted User" / "مستخدم محذوف"), your email is replaced with an opaque identifier (e.g. deleted_a1b2c3d4@deleted.docsera.app), and your phone is replaced with a similar non-routable identifier. The records remain accessible only to the doctors who treated you, as part of their professional medical files.
Why doctors keep their records: medical practice in the Syrian Arab Republic obliges physicians to retain their clinical records for legal-liability and professional-review purposes.
Stage 4: Full deletion — after 7 years
After 7 years from the pseudonymization date, all medical records associated with your former account — including the pseudonymized records held by doctors — are automatically and permanently deleted, and cannot be recovered.
To start the deletion process: Settings > Security > Delete account, or contact support@docsera.app.
9. Data retention
Personal account data: while you use the app + 30 days after deletion is requested.
Medical records: pseudonymized 30 days after deletion request, fully purged 7 years after that.
Activity logs (analytics): de-identified after 90 days; anonymized statistics are retained for operational purposes.
Technical crash reports: recorded within the app’s infrastructure in Syria; deleted after a maximum of 24 months.
Administrative audit logs: for as long as legally required.
10. Children and minors
The app is intended for users aged 16 and above. For minors under 16, accounts and medical files must be managed by a parent or legal guardian via the "Manage Relatives" feature. We do not knowingly allow standalone account creation by children under 16. If we become aware of an unsupervised minor account, we deactivate it immediately.
11. Permissions the app requests
Camera: to capture photos of medical documents you wish to upload.
Photo library: to select photos or documents already on your device.
Microphone: only to record voice messages in conversations with your doctor.
Location (in-use only): to display nearby doctors on the map.
Biometric (Face ID / Fingerprint): for fast login. Biometric data is handled directly by the operating system and never leaves your device.
Calendar (optional, on demand): only when you tap "Add to my calendar". We do not read your existing calendar entries.
12. Changes to this policy
We may update this policy to reflect service improvements or new legal requirements. For any material change, we will notify you in-app and require you to accept the new version before continuing to use the service. You can always review the current version under Settings > Notifications & Privacy > Privacy Policy.
This policy is designed to comply with the requirements of Apple App Store and Google Play and with the requirements of the Ministry of Health of the Syrian Arab Republic issued by Regulatory Decision No. 24/T of 2025 (General Controls and Regulations for Electronic Medical Applications).
14.1 Target tier classification
DocSera is submitted for licensing under الصنف الثاني (Tier 2) of Decision 24/T, as an application for organizing appointments and personal medical records between patients and licensed physicians — the activity explicitly listed in Annex 3 of the Decision (Tier 2, Item 1: "appointment-organization applications between patients and physicians"). The application does not provide medical consultation, diagnosis, or pharmacological recommendations — for details see the Medical Disclaimer.
14.2 Responsible entity and legal body
Responsible entity: DocSera — a trade name for the activity of Mr. George Zakhour (Syrian sole proprietor).
Commercial Register: No. 0310108095, Internal Trade and Consumer Protection Directorate of Damascus Countryside, dated 2026-03-04.
Chamber of Commerce: Member of Damascus Countryside Chamber of Commerce, registration #79273.
Registered address: Damascus Countryside — Jaramana real-estate area — Property 1181, Office 171, Syrian Arab Republic.
Official support phone: 0983322665.
14.3 Roles responsible for the application (per Annex 2 of Decision 24)
Application Owner + CEO + Developer + Data Protection Officer (DPO): George Zakhour — BSc Software Engineering (ISE), University of Duisburg-Essen, Germany, 2024.
Scientific Officer: Dr. Tony Bassam Fasshia — Doctor of Dental Surgery, University of Damascus, 2023 — bearing legal and ethical liability for any medical content under Article 6.4 of Decision 24.
14.4 Mapping the sections to the requirements of Decision 24 (Annex 2, Item 7)
A separate "Use Policy Mapping" document is included in the Ministry submission package, indicating where each of the nine required sections is satisfied across this policy + the Terms of Use + the Medical Disclaimer. Preliminary mapping:
Section 1 (About the App) → Section 1 of Terms of Use + Medical Disclaimer.
Section 2 (Responsible Entity) → Section 14 of this Policy (above).
Section 3 (Target Audiences) → Section 2 of Terms of Use + Section 10 of this Policy.
Section 4 (Application Function Description) → Section 1 of Terms of Use + Sections 1–3 of this Policy.
Section 5 (User Rights and Obligations) → Section 7 of this Policy + Sections 3 and 4 of Terms of Use.
Section 6 (Protection Mechanisms) → Sections 4, 5, and 6 of this Policy.
Section 7 (Rights and Duties of Responsible Entity) → Section 8 of Terms of Use + Section 14 of this Policy.
Section 8 (Minors Policy) → Section 10 of this Policy + Section 2 of Terms of Use.
Section 9 (Regulatory Procedures) → Section 17 of Terms of Use.
14.5 Hosting inside Syria — explicit commitment to Article 3.ت.1 of Decision 24
All personal data, health data, documents, and messages are stored on a physical infrastructure located within the Syrian Arab Republic (Syriatel) as described in Section 4 above. An official confirmation letter from the hosting provider is included in the Ministry submission package.
14.6 Notification to regulatory authorities upon data breach
In addition to Section 6 above, we commit — in the event of a breach affecting health data — to notify the Ministry of Health of the Syrian Arab Republic within the timeframe stipulated in Decision 24, and to cooperate with their investigation, in addition to notifying the National Authority for Information Technology Services in accordance with applicable laws. The Data Protection Officer (DPO) is the designated point of contact for any regulatory communication.
14.7 Accreditation with professional bodies
We commit to obtaining approvals from competent professional bodies (Syrian Medical Association, Syrian Health Professions Association, etc.) prior to launching any additional services within their scope, in line with the commitments set out in the signed Ministry application form.