الإجابات التي ترسلها
تعالج التجربة المجانية إجابات الأسلوب والتسوق التي تختارها وملاحظة اختيارية. لا تُرسل إلى خادم RingMatcher إلا عند طلب النتيجة، وتُستخدم لإنشاء النتيجة والتحقق منها.
الصور الاختيارية ومعالجة الذكاء الاصطناعي
الصور اختيارية ولا تُطلب صور للوجه. تُصغّر حتى ثلاث صور في متصفحك وقد تمر عبر خادم RingMatcher إلى مزود الذكاء الاصطناعي المهيأ لذلك الطلب. لا يحفظ RingMatcher ملفات الصور المرفوعة عمدًا. نطلب إعدادات عدم الاحتفاظ ومنع الجمع، لكن بنية المزود وشروطه والتزاماته القانونية تظل سارية.
تسمح تعليمات الصور بدلائل التصميم البصرية فقط وتمنع التحديد أو استنتاج السمات الحساسة. يُتجاهل النص أو التعليمات داخل الصورة.
الروابط المشتركة
يتضمن رابط المشاركة النتيجة الظاهرة ومسار الألماس ونطاق الميزانية ولغة المحتوى في جزء URL. لا يتضمن الصور المرفوعة مطلقًا. يستطيع كل من يملك الرابط قراءة المعلومات المشفرة، لذا راجعه قبل المشاركة.
يمكن لجزء محدود نقل حقول الموجز الظاهرة إلى أداة المتاجر. لا يُرسل الجزء مع طلب HTTP للصفحة ويُحذف من شريط العنوان بعد الاستيراد، لكن من يملك الرابط قبل الاستيراد يستطيع قراءته.
Native app data, purchases, and recovery (authoritative English disclosure)
This native-app section is the authoritative English disclosure. The surrounding translated text may not yet describe every native-app behavior.
A questions-only Ringprint in the native app is created on the device, so those answers do not leave the device for matching. If you add up to three photos, the app re-encodes them and sends the device-resized images, their context labels, the questionnaire answers, the content locale, and a random installation identifier through RingMatcher for that request. Cookies are omitted. RingMatcher then sends the answers and images to OpenRouter, the configured AI gateway, with zero-data-retention and data-collection-denial settings requested. RingMatcher does not intentionally persist the match request body or uploaded image files, and saved Ringprints never contain a photo file or image payload. OpenRouter, any routed model provider, and their infrastructure, terms, and legal obligations still apply.
The app stores saved Ringprints in AsyncStorage, including the questionnaire answers, optional note, generated result, locale, source, timestamps, and image-analysis counts. Paid-plan snapshots, generated guidance, setup inputs, and tool activity are also stored in AsyncStorage; source snapshots omit the free-form Ringprint note. These records are app-local but are not encrypted by AsyncStorage. Photo files are excluded. A random installation UUID and purchase capabilities—including draft and access tokens, obfuscated purchase-binding identifiers, and a Google Play purchase token after billing—are stored separately with device-only SecureStore settings.
On Android, RingMatcher disables app backup and excludes its app files, databases, preferences, and device-to-device transfer domains from backup rules. This is intended to keep local Ringprints, plans, and purchase capabilities off Android backup and migration services. Other operating-system, device-administration, forensic, or user-initiated copying behavior is outside RingMatcher's control.
If you choose Report this result, the app sends RingMatcher the result identifier, visible result title, summary and rationale, the selected report reason, an optional note, the content locale, and the random installation identifier in a request header. The service uses the installation identifier and network address to enforce an hourly report limit. It writes the report content, reason, optional note, locale, a generated report identifier, and the receipt time to structured deployment logs so the report can be reviewed. Those report logs do not intentionally include the raw installation identifier or network address; their retention follows the deployment logging configuration. Reporting is optional and does not affect saved Ringprints or paid access.
Starting a Google Play checkout sends RingMatcher the selected pack, random installation UUID, local Ringprint identifier, and a SHA-256 digest of the Ringprint—not the questionnaire answers, uploaded photos, or generated plan. The server persists a digest of the installation identifier, the Ringprint identifier and digest, generated draft/access identifiers, product and pack identifiers, obfuscated Google Play binding identifiers, capability hashes, and timestamps. Claiming a purchase sends the raw Google Play purchase token to RingMatcher so it can be verified with Google Play. The server persists a digest of that token, and may persist an order-ID digest and purchase-completion timestamp; it does not write the raw purchase or order token to its purchase-state file.
The protected Google Play app-review path sends the reviewer access code and random installation UUID to RingMatcher. The server compares a one-way code digest, enforces network and installation limits, and persists only the code digest, installation digest, synthetic draft/claim/access identifiers, pack and product identifiers, and timestamps—not the plaintext review code. It returns signed, expiring plan capabilities to device-only SecureStore. This review path does not open billing or create a charge.
An unclaimed purchase draft expires after 7 days. After a successful claim, its draft and replay-claim record become eligible for pruning when that same 7-day draft capability expires. Paid access expires after 30 days for Shortlist or Complete Plan and after 90 days for Together Plan. Expired eligible rows are pruned atomically during later purchase-state maintenance, such as a subsequent draft creation or purchase grant; there is no background deletion timer. Unexpired drafts and access records are not evicted to make room for newer records.
Saved Ringprints and completed paid plans remain on the device until you remove them, the bounded local history replaces older Ringprints, app storage is cleared, or the operating system removes the app data. Removing a completed paid plan also asks SecureStore to delete its associated capability. A plan with an unfinished purchase is protected from ordinary removal because the local draft may still be needed for Google Play recovery. RingMatcher has no user account or cross-device plan library: clearing local app data, removing protected credentials, changing devices, or uninstalling can make a consumed one-time purchase or its generated plan impossible to recover. Contact contact@ringmatcher.com for privacy or server-record deletion questions.
حدود الطلبات والقياس الداخلي والسجلات التقنية
قد يشتق الخادم من عنوان الشبكة مفتاحًا مؤقتًا لتحديد الطلبات يُحفظ في الذاكرة فقط. يسجل RingMatcher مراحل داخلية في مسار الاستخدام عبر صفحة الهبوط وإنشاء Ringprint والمشاركة والتنزيل والدفع الاختياري ومسارات الباقات المدفوعة وأداة البحث عن المتاجر. لا يسمح عقد الحدث إلا باسم الحدث ومعرّفات الأدلة المدرجة في القائمة المسموح بها وقيم ثابتة للمصدر أو القناة أو الباقة أو الحالة أو وجهة CTA أو موضع CTA أو إعداد اللغة وقيم منطقية وأعداد أو درجات محدودة. ويستبعد إجابات الاستبيان والميزانيات والملاحظات ونص الاتجاه المُنشأ والروابط أو مسارات الصفحات العشوائية والوجهات المكتوبة كنص حر ومعرّفات الدفع ورسائل الأخطاء أو تتبعاتها والبيانات الشخصية وأي نص حر.
وقد تتضمن أحداث أداة البحث عن المتاجر أيضًا نوع شراء ثابتًا ومعرّف متجر من الكتالوج الذي راجعه RingMatcher.
بعد النقر من دليل إلى الاختبار، قد يحتفظ تخزين جلسة المتصفح بقيم الإسناد التالية فقط: معرّف الدليل المدرج في القائمة المسموح بها وإعداد اللغة وموضع زر CTA، إلى جانب بيانات تقنية للإصدار ووقت انتهاء الصلاحية. يُقبل الإسناد لمدة لا تتجاوز 30 دقيقة ويُستهلك مرة واحدة عند طلب Ringprint منسوب إلى الدليل. يُتجاهل السجل المنتهي وتتم إزالته عند الوصول التالي؛ وينتهي تخزين الجلسة أيضًا بانتهاء علامة تبويب المتصفح أو جلسته. ولا تتضمن البيانات إجابات الاستبيان أو الميزانيات أو الصور أو بيانات الاتصال أو معرّف حساب أو مستخدم.
تُكتب الأحداث المقبولة فقط في سجلات نشر الخادم المنظمة. لا يرسلها RingMatcher إلى خدمة تحليلات خارجية ولا يحفظها في قاعدة بيانات تحليلات مخصصة؛ وتعتمد مدة الاحتفاظ على إعدادات سجلات النشر. لا تتضمن الأحداث معرّف حساب أو مستخدم. وقد يُسجل الاستخدام التقني للذكاء الاصطناعي أيضًا من دون إجابات الاستبيان أو الصور المرفوعة.
الباقات المدفوعة وStripe
تستخدم الباقات المدفوعة الاختيارية Stripe لمعالجة دفعة واحدة. يرسل RingMatcher إلى Stripe بريد الإيصال والباقـة المختارة والمبلغ والعملة المحددين على الخادم ومعرّفات الطلب وPaymentIntent المُنشأة. يجمع Payment Element التابع لـStripe تفاصيل الدفع؛ ولا يستلم RingMatcher رقم البطاقة الكامل أو رمز الأمان ولا يخزنهما.
تحتوي بيانات Stripe الوصفية فقط على معرّفات مُنشأة وحالة الدفع والتنفيذ وتجزئة أحادية الاتجاه مرتبطة بوصول المتصفح، ولا تحتوي على إجابات الاستبيان أو الصور أو الملاحظات الخاصة أو محتوى التقرير. قد تستمر ملفات تعريف الارتباط HttpOnly وSameSite الخاصة بكل باقة حتى 100 يوم، وقد يبقى سجل الدفع المعلّق في التخزين المحلي لذلك المتصفح حتى 30 يومًا. تسري شروط Stripe وسياسة الخصوصية لديها.
في موقع الإنتاج تُحفظ جلسات التقارير المدفوعة على وحدة تخزين خادم محمية وتُستعاد بعد عمليات إعادة التشغيل والنشر المعتادة. تنتهي جلسات Shortlist وComplete Plan بعد 30 يومًا، وجلسات Couple’s Edition بعد 90 يومًا. قد يحذف RingMatcher الجلسة قبل ذلك عند تنفيذ طلب حذف.
ما لا يبيعه RingMatcher
لا يبيع RingMatcher الخواتم أو البيانات الشخصية. إذا تغيرت الحسابات أو الدفع أو التحليلات أو التخزين أو مزودو النماذج، يجب مراجعة هذه الصفحة قبل طرح الخدمة المعدلة. أرسل أسئلة الخصوصية إلى contact@ringmatcher.com.