This policy explains what data Yamamah Insights collects, why, who it is shared with, and what you can do about it. It applies to yamamahinsights.com and its services.
What we collect
- Account data: username, name, email address, and a password stored as a one-way hash (we cannot read it).
- Optional data: a bio, a profile picture, and a mobile number if you choose to verify one.
- University affiliation (optional): campus, whether you are a student or staff, college and department or division, and clubs — used on your profile and on certificates.
- What you publish: articles, comments and mentions — public by nature.
- Technical data: server logs (IP address, browser, request time) and article view counts — tied to a browsing session rather than to your account.
How we use it
To run and verify your account, to credit articles and comments to their authors, to send the newsletters and notifications you asked for, to issue certificates to those who qualify, to protect the platform from abuse, and to understand which pieces are read. We do not sell your data and do not use it for targeted advertising.
Cookies and analytics
We use strictly necessary cookies for sign-in and form protection — the site does not work without them. Usage analytics load only after you explicitly accept them in the banner shown on your first visit; your choice is stored locally in your browser and can be reversed by clearing the site's data.
Push notifications
If you allow them, your browser registers a subscription with us so we can send alerts about new pieces. The subscription does not disclose your identity to the browser vendor, and you can turn it off at any time from your browser's site settings or from your account settings.
Newsletter
Subscribing to the newsletter (daily, weekly or monthly) is optional and is handled through an external email provider, which stores your email address, subscription status and delivery data. Every message carries a one-click unsubscribe link.
Phone verification
If you choose to verify your number, we send a code through an SMS provider, which receives the number and the code for that purpose only.
Where data is stored
The platform, its database and its files are hosted on cloud servers in the Riyadh region, inside Saudi Arabia. Daily backups are taken to access-restricted storage and kept for thirty days. Data travels over an encrypted connection (HTTPS).
Who we share it with
We share data only with the service providers needed to operate, and only as far as needed: our cloud hosting and storage provider, our email provider, our SMS verification provider, a usage-analytics service (with your consent), and the language-model and search providers that process article text and assistant questions — with no account data. Each is contractually bound to use what reaches them for the service alone. We may also disclose what the law requires on a competent authority's request.
Retention
We keep account data for as long as the account exists. When an account is deleted its personal data is deleted; published articles may remain in the archive as part of the editorial record, with your byline removed on request.
Your rights
You can view and edit your data from your account page, request a copy of it or its deletion, and withdraw any consent you gave (analytics, notifications, the newsletter). To do any of these, write to [email protected] and we will respond within thirty days.
Changes to this policy
We may update this page; the last-updated date appears at the bottom, and we announce substantive changes on the platform.
Questions: [email protected] — Last updated: August 2026