سياسة ملفات تعريف الارتباط — الموافقة والتفضيلات
1. ما هي ملفات تعريف الارتباط وكيف نستخدمها
ملفات تعريف الارتباط هي ملفات نصية صغيرة يحفظها المتصفح عند زيارة موقع ويب. تساعد على تذكّر التفضيلات، وتشغيل الميزات الأساسية، وعند السماح بذلك، قياس الأداء وفعالية الحملات.
في 2luv نستخدم ملفات تعريف الارتباط بشكل أساسي من أجل: (أ) تذكّر موافقتك، (ب) توفير ميزات وأمان في بعض الصفحات (مثل المحتوى المحمي بكلمة مرور)، و(ج) عند الموافقة، قياس الاستخدام والتحويلات.
2. أنواع ملفات تعريف الارتباط والغرض منها
ضرورية: أساسية للأمان والوظائف الرئيسية (مثل تذكّر الموافقة ومصادقة المحتوى المحمي).
وظيفية: تحسّن تجربتك وتساعد على التنقل (مثل تذكّر آخر محتوى تم الوصول إليه).
تفضيلات: تحفظ اختيارات مثل اللغة.
تحليلات: تساعد على قياس وفهم استخدام الموقع (إحصاءات) عند تفعيلها.
تسويق: تساعد على قياس الحملات والتحويلات عند تفعيلها.
3. كيف نجمع موافقتك ومدة الاحتفاظ بها
عند دخولك إلى 2luv نعرض لافتة لملفات تعريف الارتباط لتتمكن من القبول أو الرفض أو تخصيص تفضيلاتك (مثل التحليلات والتسويق).
يتم حفظ اختيارك لكي نحترمه في الزيارات القادمة. بشكل عام نحتفظ بالسجل لمدة تصل إلى 12 شهرًا (قد يختلف حسب إعدادات المتصفح). وفي بعض الحالات نستخدم أيضًا localStorage في المتصفح لتخزين التفضيلات.
4. كيف يمكنك رفض ملفات تعريف الارتباط
يمكنك رفض ملفات تعريف الارتباط الاختيارية مباشرةً من اللافتة بالنقر على "رفض" أو بإيقاف الفئات ضمن "تخصيص".
كما يمكنك إدارة ملفات تعريف الارتباط من إعدادات المتصفح (حظر/حذف/تقييد). إذا حذفت ملفات تعريف الارتباط فقد تتم إعادة ضبط بعض التفضيلات.
5. ما هي ملفات تعريف الارتباط المستخدمة
تتضمن القائمة أدناه ملفات تعريف ارتباط طرف أول (تضعها 2luv) وملفات/معرّفات قد تضعها خدمات طرف ثالث (التحليلات/الإعلانات). قد تختلف بعض الأسماء والمدد حسب المزوّد والمتصفح.
| التقنية | التصنيف | المسؤول | الاسم | الغرض | المدة | النطاق | Consent mode | الحذف |
|---|---|---|---|---|---|---|---|---|
| cookie / localStorage | ضرورية | 2luv-ui | تخزّن اختيارك للموافقة (بما في ذلك تفضيلات Consent Mode) لكي نحترم اختياراتك في الزيارات القادمة. | 12 شهرًا | 2luv domain | security_storage | Kept when optional data is rejected; reset when the visitor clears all browser data. | |
| Cookie | ضرورية | 2luv-ui | يحافظ على عرض الخدمة باللغة الصحيحة وتنسيق التاريخ واتجاه القراءة المناسب في هذا المتصفح. | 12 شهرًا | 2luv domain | functionality_storage | Deleted by the full device/session cleanup action. | |
| Cookie | ضرورية | 2luv-ui | يحافظ على اتساق الأسعار والعملة وتوفر الخطط والتوجيه الإقليمي في هذا المتصفح. | 12 شهرًا | 2luv domain | functionality_storage | Deleted by the full device/session cleanup action. | |
| Cookie | تفضيلات | 2luv-api | تساعد على العودة بسرعة إلى آخر هدية/رسالة تم الوصول إليها في هذا المتصفح. | 30 days | 2luv API domain | functionality_storage | Deleted by the full device/session cleanup action. | |
| Cookie | ضرورية | 2luv-api | ملف تعريف ارتباط أمني (httpOnly) للتعرّف على الجهاز/المتصفح والمساعدة في حماية الوصول والعمليات الحساسة. | 12 months | 2luv API domain | security_storage | Deleted by the full device/session cleanup action through the API. | |
| Cookie | ضرورية | 2luv-api | تفويض HttpOnly قصير المدة مرتبط بهذا الجهاز/المتصفح لتحديث نتائج العثور على هديتي دون إعادة استخدام الرمز المرسل عبر البريد الإلكتروني. | جلسة المتصفح، بحد أقصى 8 ساعات | نطاق واجهة 2luv البرمجية | security_storage | يُحذف عبر إجراء التنظيف الكامل للجهاز أو الجلسة من خلال واجهة API. | |
| localStorage | ضرورية | 2luv-ui | يتذكر مؤقتًا في هذا المتصفح البريد الإلكتروني المؤكد لخدمة العثور على هديتي لتحديث النتائج بعد التنقل أو إعادة التحميل. | صالح لمدة 8 ساعات؛ يُحذف السجل المنتهي عند فتح العثور على هديتي مرة أخرى | هذا المتصفح فقط | security_storage | يُحذف عند اختيار بريد آخر أو انتهاء الصلاحية أو إجراء التنظيف الكامل للجهاز أو الجلسة. | |
| Cookie | ضرورية | 2luv-api | ملف تعريف ارتباط للمصادقة (httpOnly) للحفاظ على الوصول إلى الرسائل المحمية بكلمة مرور والسماح بالإجراءات المصرّح بها المتعلقة بهذا المحتوى. | 30 يومًا | 2luv API domain | security_storage | Deleted by the full device/session cleanup action through the API. | |
| Cookie | ضرورية | يساعد على التمييز بين الأشخاص وإساءة الاستخدام الآلية أثناء البحث أو التواصل أو الكتابة بمساعدة الذكاء الاصطناعي أو رفع الوسائط أو إنشاء الرسائل أو تعديلها. | حتى 6 أشهر | not consent-controlled; strictly necessary security | Loaded only on protected form submission; provider data must be managed through browser or Google settings. | |||
| Cookie | تحليلات | Google Analytics: يساعد على فهم استخدام الموقع (إحصاءات مجمعة) والأداء والتنقل مع احترام Consent Mode. | حتى 13 شهرًا | Google / 2luv domain | analytics_storage | Deleted when optional cookies are rejected where browser access allows it. | ||
| Cookie | تفضيلات | 2luv-api | Compatibility resume cookie name that the current letter API clears when deleting session state. | legacy/session | 2luv API domain | functionality_storage | Deleted by the full device/session cleanup action. | |
| Cookie | ضرورية | 2luv-api | Short-lived HttpOnly owner capability for legacy Gift edits. | Up to 30 days; recovered sessions use 1 hour | 2luv API domain | security_storage | Deleted by the full device/session cleanup action through the API. | |
| Cookie | ضرورية | 2luv-api | HttpOnly view or owner capability for interactive Card collections. | Session or 30 days | 2luv API domain | security_storage | Deleted by the full device/session cleanup action through the API. | |
| Cookie | ضرورية | 2luv-api | Short-lived signed capability used to read one checkout payment status. | 24 hours | 2luv API domain | security_storage | Deleted by the full device/session cleanup action through the API. | |
| localStorage | ضرورية | 2luv-ui | Stores an unfinished create flow locally so a visitor can recover a draft before publishing. | 30 days after last save | browser only | security_storage | Deleted by the full device/session cleanup action. | |
| IndexedDB | ضرورية | 2luv-ui | Stores draft photo blobs locally while a visitor is composing an unpublished gift or letter. | 30 days after last save | browser only | security_storage | Deleted by the full device/session cleanup action. | |
| localStorage | ضرورية | 2luv-ui | Prevents duplicate create requests when a submission is retried. | Until creation succeeds or browser data is cleared | browser only | security_storage | Deleted after successful creation or by the full device/session cleanup action. | |
| sessionStorage | ضرورية | 2luv-ui | Keeps the latest create-flow lead and letter link available during payment continuation. | Until replaced or browser data is cleared | browser only | security_storage | Deleted by the full device/session cleanup action. | |
| sessionStorage | ضرورية | 2luv-ui | Stores an unpublished WebMCP-assisted create draft in this browser. | Until published, replaced or browser data is cleared | browser only | security_storage | Deleted by the full device/session cleanup action. | |
| sessionStorage | ضرورية | 2luv-ui | Legacy owner capability from older builds; current builds use HttpOnly cookies and never write this key. | Browser tab session | browser only | security_storage | Deleted by the full device/session cleanup action. | |
| sessionStorage | تحليلات | 2luv-ui | Stores temporary Google Analytics debug state for the current tab. | Browser tab session | browser only | analytics_storage | Deleted when analytics consent is revoked or by the full device/session cleanup action. | |
| localStorage | تفضيلات | 2luv-ui | Stores the selected light, dark, or system theme preference; system is resolved locally from the browser color-scheme setting. | until changed or cleared | browser only | functionality_storage | Deleted by the full device/session cleanup action. | |
| localStorage | تفضيلات | 2luv-ui | Legacy mirror of the selected language used by public controls. | until changed or cleared | browser only | functionality_storage | Deleted by the full device/session cleanup action. | |
| localStorage | تفضيلات | 2luv-ui | Stores recently opened gift and letter links in this browser so the landing page can resume the latest item after preference consent. | until changed, consent is revoked, or cleared | browser only | functionality_storage | Deleted when preference consent is revoked or by the full device/session cleanup action. | |
| localStorage | تسويق | 2luv-ui | Stores consented campaign and click identifiers for checkout attribution. | 90 days | browser only | ad_storage | Deleted when marketing consent is revoked or by the full device/session cleanup action. | |
| Cookie | تسويق | 2luv-ui | Preserves browser and advertising click identifiers for server-side Meta and TikTok conversions. Click cookies are created only after an actual ad click; no social pixel scripts are loaded. | 90 days | 2luv domain | ad_storage / ad_user_data | Deleted when marketing consent is revoked or optional browser data is cleared. | |
| Cookie | تسويق | 2luv-ui | Reads an existing TikTok browser identifier for consented server-side conversions. The current UI does not create or renew this cookie. | Existing cookie expiry | 2luv domain | ad_storage / ad_user_data | Deleted when marketing consent is revoked or optional browser data is cleared. | |
| sessionStorage | تفضيلات | 2luv-ui | Tracks promo cards shown during the current tab session to avoid repeated prompts. | browser tab session | browser only | functionality_storage | Deleted when the tab closes or by the full device/session cleanup action. | |
| sessionStorage | تفضيلات | 2luv-ui | Stores the keyboard state for the Termo interactive card during the current tab session. | browser tab session | browser only | functionality_storage | Deleted when the tab closes or by the full device/session cleanup action. | |
| network telemetry | ضرورية | Microsoft | Records sanitized server request routes, status, duration and failures for reliability and security operations without browser identifiers. | Azure project retention policy | Microsoft Azure / 2luv server | not browser consent-controlled; operational server telemetry | Managed through the Azure Application Insights retention policy. | |
| network telemetry | تحليلات | Sentry | Captures frontend errors and performance traces only after analytics consent. | provider-defined project retention | Sentry SaaS / 2luv domain | analytics_storage | Sentry loads only after analytics consent; optional browser data cleanup removes legacy Sentry Replay keys from earlier builds. | |
| Cookie | تسويق | Measures ad conversions and campaign attribution only when marketing consent is granted. | provider-defined, commonly up to 3 months | Google / 2luv domain | ad_storage, ad_user_data, ad_personalization | Deleted when optional cookies are rejected where browser access allows it. | ||
| network telemetry | تسويق | Sends normalized email or phone only as SHA-256 hashes for enhanced conversion matching after ad_user_data consent. | in memory until sent or consent is revoked; provider-defined retention after receipt | ad_user_data | Queued user_data is cleared when marketing consent is denied; raw contact values are never sent through the Google tag. | |||
| Third-party embed | تسويق | Music provider | Loads third-party media previews after marketing consent or when the visitor opens the provider directly. | provider-defined | third-party providers | ad_storage | Blocked until consent; provider data must be managed with the provider. | |
| HTTP cache | ضرورية | 2luv-api | Caches public, non-sensitive metadata briefly for performance and availability. | 60 seconds browser, up to 1 hour stale revalidation depending on endpoint | browser/CDN | not consent-controlled | Browser cache can be cleared from browser settings. | |
| HTTP cache | ضرورية | 2luv-api | Sensitive responses are marked private or no-store to avoid shared caching. | no-store or private short-lived | browser only | not consent-controlled | No shared cache should retain these responses. | |
| CDN cache | ضرورية | 2luv edge | Caches versioned public assets so pages load quickly without storing visitor profile data. | 7 days to 12 months depending on asset type | browser/CDN | not consent-controlled | Browser cache can be cleared from browser settings. | |
| Server memory | ضرورية | 2luv-api | Short-lived server-side caches reduce repeated API and media work without being written to the visitor browser. | 10 seconds to 6 hours depending on cache | 2luv-api memory | not consent-controlled | Expires automatically on TTL or process restart. | |
| Database | ضرورية | 2luv-api | Keeps short operational state required for uploads, edit sessions and payment safety. | 5 minutes to 24 hours where TTL exists; payment safety records follow backend retention | 2luv database | security_storage | Backend retention and operational cleanup, not browser cookie cleanup. |
6. كيفية ممارسة حقوقك
يمكنك طلب معلومات وممارسة حقوق الخصوصية الخاصة بك (مثل: تأكيد المعالجة، الوصول، التصحيح، إخفاء الهوية، قابلية النقل، الحذف، وسحب الموافقة) عند الاقتضاء، عبر التواصل معنا.
قناة التواصل: contact@2-luv.com.
7. التغييرات وتاريخ تعديل سياسة ملفات تعريف الارتباط
قد نقوم بتحديث سياسة ملفات تعريف الارتباط هذه لتعكس تغييرات في خدماتنا أو تقنياتنا أو التزاماتنا القانونية. عند وجود تغييرات مهمة، سنحدّث تاريخ "آخر تحديث" أعلى هذه الصفحة.