Privacy Policy
Last updated: August 4, 2026 · 中文版
This Privacy Policy applies to the "Gold Today" website (beseyat.com/gold) and the "سعر الذهب اليوم — Gold Today" mobile application (package/bundle id com.beseyat.gold) distributed through the Apple App Store, Google Play, HUAWEI AppGallery and Samsung Galaxy Store. We designed our services around collecting as little data as possible, and this page describes exactly what is and is not processed.
App name and developer name
App name: "سعر الذهب اليوم — Gold Today" (package/bundle id: com.beseyat.gold). Developer name: Beseyat (بصيات) — the same developer that publishes this app on the Apple App Store, Google Play, HUAWEI AppGallery and Samsung Galaxy Store. Website: beseyat.com/gold. Contact email: [email protected]. This privacy policy is issued by that developer specifically for this app and this website, and it concerns the protection of your personal information.
Who we are and how to contact us
The website and the app are operated by the Beseyat — Gold Today team, based in the Kingdom of Saudi Arabia (the "data controller" for the purposes of data-protection laws). For any privacy question, complaint or request, email us at [email protected] — we respond within 7 business days.
Data collected by the mobile app
The app requires no account and no sign-in, and it collects no personal data: no names, email addresses or phone numbers, no location, and no contact lists. The current version of the app contains no third-party analytics, advertising or tracking SDKs of any kind and does not access the device advertising identifier.
Everything you enter in the app — settings (language, currency, country, theme), your gold portfolio, price alerts, saved comparison offers and price history — is stored locally on your device only and never leaves it. You can delete it at any time by clearing the app's data in system settings or uninstalling the app; deletion is immediate and complete, and no copy exists on our servers.
When refreshing prices, the app contacts our servers and public price sources to fetch numbers only; as with any internet request, servers transiently process your device's IP address to deliver the response and protect against abuse, without linking it to your identity and without us storing it for identification purposes.
Price alerts use local notifications generated on your device: we operate no external push-notification servers and collect no push tokens.
App permissions
Internet: to fetch updated prices. Notifications (optional): requested only when you create your first price alert, and you may decline or revoke it in system settings at any time. Background refresh: to check alert prices and update the home-screen widget. The app requests no other permissions — no camera, microphone, location, storage or contacts.
Data collected by the website
The website requires no registration and collects no personal data from visitors. It sets a single technical session cookie required for the site to function, and we currently use no third-party analytics.
Server logs: like most websites, our hosting provider and the Cloudflare network record transient technical data (IP address, browser type, requested pages, request time) for security, abuse prevention and troubleshooting; these logs are rotated and deleted periodically and are not used to identify visitors.
Advertising — Google AdSense (website) and Google AdMob (app)
We may display advertising: on the website through Google AdSense, and in a future version of the app through Google AdMob (the Google Mobile Ads SDK). This section is the full disclosure that applies whenever such ads are shown.
Google, as a third-party vendor, uses cookies to serve ads on this site. Google's use of advertising cookies (including the DART cookie) enables it and its partners to serve ads to you based on your visits to this site and/or other sites on the internet. On the web this works through cookies and similar technologies; in the app, the Google Mobile Ads SDK may process your device's advertising identifier (Google Advertising ID on Android, IDFA on iOS), IP address, and coarse technical device information to serve and measure ads and to protect against fraud.
You may opt out of personalized advertising by visiting Google Ads Settings at adssettings.google.com, and opt out of some (but not all) third-party vendors' use of cookies for personalized advertising at www.aboutads.info/choices (or www.youronlinechoices.com in Europe). On your device you can limit or reset the advertising identifier at any time: Android — Settings › Google › Ads (delete or reset advertising ID); iOS — Settings › Privacy & Security › Tracking and › Apple Advertising.
iOS App Tracking Transparency: if personalized ads are ever enabled in the iOS app, the app will first ask your permission through Apple's App Tracking Transparency prompt. If you decline, your advertising identifier is not accessed and only non-personalized (contextual) ads would be shown.
Visitors and users in the EEA, the UK and Switzerland: personalized ads are shown only after you give explicit consent through a Google-certified consent management platform (consent message) in accordance with the IAB Transparency and Consent Framework and Google's EU User Consent Policy. You can change or withdraw your consent at any time from the "Privacy settings" / consent link on the site or in the app's settings. Without consent, at most non-personalized ads are shown, which still use limited technical data (such as IP address) for frequency capping and fraud prevention.
How Google uses information from sites and apps that use its services is described at policies.google.com/technologies/partner-sites, and Google's own privacy policy is at policies.google.com/privacy. The list of ad-technology providers Google works with in Europe is available at support.google.com/admanager/answer/9012903.
Ads on our services are always configured for a general audience. We do not serve personalized ads to users known to be children, and ad requests are tagged accordingly where required (COPPA / Google's child-directed settings).
Third-party services and SDKs we rely on
To obtain prices we contact public data sources: gold-api.com and Swissquote (metal prices), open.er-api.com and jsDelivr (exchange rates). The website is delivered through the Cloudflare network (cloudflare.com/privacypolicy) for security and performance. Like any internet request, these parties transiently receive an IP address solely to fulfil the request; we share no identifying data about you with them.
Third-party SDKs inside the current app: none beyond the operating-system frameworks — no analytics, advertising, crash-reporting or social SDKs. If a future version adds the Google Mobile Ads SDK (AdMob, privacy policy: policies.google.com/privacy), this page and the stores' data-safety labels will be updated before release.
Data sharing, selling and "sale" under the CCPA
We do not sell, rent or share your personal data with anyone for marketing purposes, and we do not "sell" or "share" personal information as those terms are defined by the California Consumer Privacy Act (CCPA/CPRA). Since the app collects no personal data in the first place, there is nothing to share. If advertising is enabled, the only processing by ad vendors is the one described in the advertising section above, governed by your consent and opt-out choices.
Data retention
App data (settings, portfolio, alerts, history) is retained on your device only, for as long as you keep the app, and is destroyed the moment you clear the app's data or uninstall it. Technical server and CDN logs are kept for a short rotating window (no longer than 30 days in the ordinary course) and then deleted. We keep no user databases and therefore retain no personal records. Emails you send us are kept only as long as needed to handle your request. If consent records for advertising become applicable, they are kept only as long as legally required.
International data transfers
Our servers are operated with hosting and CDN partners whose infrastructure (including Cloudflare's global network) may process technical request data outside your country, including in the United States and the European Union. If advertising is enabled, Google may process the data described above on servers in the United States and other countries. Any such transfer relies on the safeguard mechanisms recognized by applicable law (such as standard contractual clauses). No personal profile data of yours is transferred by us, because we hold none.
Children
Our services are suitable for general audiences (rated 4+ / Everyone / all ages) and are not directed at children under 13. We do not knowingly collect data from children; because we collect no personal data from any user, the service complies with children's privacy requirements such as COPPA and GDPR-K. If ads are shown, they are never personalized for users known to be children. If you believe a child has provided us data, contact us and we will delete it.
Your rights and how to delete your data
Under the Saudi Personal Data Protection Law (PDPL), the EU/UK GDPR, the CCPA/CPRA and similar laws, you have the right to access, correct, delete, restrict, port and object to the processing of your personal data, the right to withdraw consent at any time, the right not to be discriminated against for exercising these rights, and the right to lodge a complaint with your supervisory authority (in Saudi Arabia: SDAIA).
Deleting your data: the app stores everything on your device, so you can delete all of it instantly — with no request to us needed — by clearing the app's data (Android: Settings › Apps › Gold Today › Storage › Clear data) or uninstalling the app (iOS and Android). There is no account to close because none is ever created. For anything else — including consent withdrawal or a rights request — email [email protected] and we will act within the legally required period.
Where we process anything at all, our legal bases under the GDPR are: legitimate interest (Art. 6(1)(f)) for security logging and abuse prevention, and consent (Art. 6(1)(a)) for any personalized advertising.
Security
All communication between the app, the website and our servers is encrypted over HTTPS (TLS). Access to our servers is restricted by key-based authentication. There are no user databases to breach, because we store no accounts or personal data.
App stores
This policy satisfies the privacy requirements of the stores where the app is distributed: Apple App Store (App Privacy label: Data Not Collected; no tracking under App Tracking Transparency), Google Play (Data safety: no data collected or shared; data-deletion path described above), HUAWEI AppGallery and Samsung Galaxy Store. If advertising SDKs are added, those labels will be updated before the release ships. The stores themselves may collect download and installation data under their own independent policies (Apple, Google, Huawei, Samsung).
Changes to this policy
We may update this policy as our services or legal requirements change; any revision is published on this page with an updated effective date above, and material changes will be highlighted in-app or on the site. Continued use of the service after a revision constitutes acknowledgement of it.
We would love to hear your questions, feedback or corrections by email: [email protected]