Privacy Policy
1. Who We Are
Al-Zaytoonah University of Jordan ("the University," "we," "us," or "our") provides the Elearning.ZUJ mobile application (the "App") as part of its electronic learning services. This Privacy Policy applies to information processed through the App and the University systems that support it.
2. Scope and Intended Users
The App is intended for authorized University students, faculty members, staff, and other users granted access by the University. University accounts are generally issued and administered by the University rather than created as independent consumer accounts inside the App.
The App is not directed to children under 13. A person under the minimum age required by applicable law should use the App only when authorized by the University and, where legally required, with permission from a parent or legal guardian.
3. Information We Collect or Process
The information processed depends on the user's role, the courses and services used, device settings, and App features enabled.
| Category | Examples | Purpose |
|---|---|---|
| Account and identity information | Name, University email address, username, University or student identifier, role, department or program, and authentication status. | Authenticate users, authorize access, display the correct courses and services, prevent unauthorized access, and provide support. |
| Educational and user-generated content | Course enrollments, assignments, submissions, quiz or assessment activity, grades or feedback when made available through the service, forum posts, messages, files, profile information, and other content a user chooses to submit. | Provide learning-management functions, facilitate instruction and communication, record academic activity, and meet University academic or administrative requirements. |
| Usage and activity information | App interactions, pages or features used, session timestamps, course-access activity, and related service events. | Operate the App, maintain service integrity, improve usability, support users, and understand aggregate service usage. |
| Device and diagnostic information | Device type, operating-system version, App version, language, IP address, device or installation identifiers used by platform services, crash logs, performance information, and error details. | Secure the App, detect abuse, diagnose crashes, resolve technical issues, maintain compatibility, and improve performance. |
| Notification information | Push-notification token and notification preferences. | Deliver course announcements, reminders, messages, service notices, and other educational notifications selected or permitted by the user. |
| Support communications | Email address, message content, screenshots, device details, and information submitted when contacting support. | Respond to questions, investigate problems, and maintain support records. |
We do not intentionally collect financial information, health information, precise location, contacts, call logs, SMS messages, or advertising profiles through the App unless a future App feature expressly requires such information and the user receives an appropriate disclosure and consent request before collection.
4. Device Permissions
The App may request device permissions only when needed for a feature the user chooses to use. Depending on the installed version and device platform, these may include:
- Notifications: to deliver educational announcements, reminders, and service messages.
- Camera or photo access: to capture or select a profile image, scan content, or upload course-related material when the user initiates that action.
- Files or media access: to choose, upload, save, or open course documents and user-selected files.
- Microphone: only if an App feature allows the user to record or transmit audio and the user initiates that feature.
Permission requests are controlled by the device operating system. Users may deny or later revoke optional permissions through device settings. A feature that requires a denied permission may not function, but unrelated App features should remain available where technically possible.
5. How We Use Information
We process information to:
- provide, maintain, and secure electronic learning services;
- authenticate users and enforce role-based access;
- deliver courses, assignments, assessments, grades, feedback, files, discussions, and notifications;
- communicate service, academic, administrative, or security information;
- provide technical support and investigate reported issues;
- detect fraud, misuse, security incidents, and violations of University rules;
- analyze performance and improve the App and related learning services; and
- comply with legal, regulatory, accreditation, recordkeeping, and University obligations.
6. Legal Bases for Processing
Where applicable data-protection law requires a legal basis, we rely on one or more of the following:
- performance of educational or other services requested by the user or provided under the user's relationship with the University;
- the University's legitimate interests in operating, securing, supporting, and improving its educational systems;
- compliance with legal, academic, administrative, accreditation, or recordkeeping obligations;
- performance of tasks carried out in the public interest or under official authority, where applicable; and
- consent, where consent is required, including for optional device permissions or optional processing.
7. Analytics, Diagnostics, and Third-Party Services
The App may use service providers that process limited information on our behalf to operate, secure, analyze, or support the App. Based on the services currently identified for the App, these may include:
- Google Play Services on supported Android devices.
- Google Firebase services, including analytics or diagnostic functionality when enabled in the App.
These providers may process device, usage, identifier, IP-address, analytics, crash, or diagnostic information in accordance with their own privacy terms and our configuration of their services. We require service providers to use information only for authorized purposes and to apply appropriate privacy and security protections.
We do not use App data for cross-app advertising tracking and do not sell personal information. If a future version introduces tracking or materially different third-party processing, we will update this policy and obtain any consent required by the operating system or applicable law.
8. When We Share Information
We may disclose information only as reasonably necessary:
- within the University to authorized academic, administrative, technical, security, or support personnel;
- to instructors or authorized course personnel for educational and course-administration purposes;
- to contracted technology and hosting providers that process information on our behalf;
- to comply with applicable law, a lawful request, court order, regulatory requirement, or University legal obligation;
- to protect the rights, safety, systems, users, and property of the University or others; or
- with the user's direction or consent.
We do not authorize third parties to sell personal information received from the App.
9. International Data Transfers
Some technology providers may process information in countries other than Jordan. Where required, we use contractual, organizational, and technical safeguards intended to protect information during international processing or transfer.
10. Data Retention
We retain information only for as long as needed for the purposes described in this policy, including to provide the service, maintain academic and administrative records, meet accreditation or legal requirements, resolve disputes, enforce agreements, protect security, and maintain necessary backups.
Retention periods vary by data type. Course activity, assessments, grades, and other official educational records may be retained according to University record-retention rules even after App access ends. Diagnostic and support records are generally retained for a shorter period unless they are needed for security, legal, or unresolved support matters. Backup copies may remain for a limited period before routine deletion or replacement.
11. Account and Data Deletion
Users may request deletion of personal information associated with the App by contacting the University using the details below. Because University accounts and educational records may be administered outside the App, deleting the App from a device does not delete the user's University account or official academic records.
Upon a valid request, we will delete or de-identify information that is not required to be retained. We may retain information where necessary to comply with legal, educational, academic-integrity, accreditation, security, dispute-resolution, or recordkeeping obligations. Where an account is controlled by an educational institution, account closure may also require completion of the University's identity-verification and administrative procedures.
12. User Privacy Rights and Choices
Subject to applicable law and University recordkeeping requirements, users may request to:
- access personal information held about them;
- correct inaccurate or incomplete information;
- delete eligible information or request account closure;
- restrict or object to certain processing;
- receive eligible information in a portable format;
- withdraw consent for processing based on consent; and
- submit a complaint to the University or an applicable data-protection authority.
Users may manage notification, camera, microphone, file, and photo permissions in device settings. Withdrawing consent does not affect processing completed before withdrawal and may prevent an optional feature from working.
13. Security
We use reasonable administrative, technical, and organizational safeguards designed to protect information against unauthorized access, disclosure, alteration, loss, or misuse. These measures may include encrypted network transmission, access controls, authentication, logging, backups, system monitoring, software updates, and staff access restrictions.
No electronic transmission or storage method is completely secure. Users should protect their credentials, use a secure device, and promptly report suspected unauthorized access.
14. Links and External Services
The App may contain links to websites, learning resources, or services not operated by the University. Their privacy practices are governed by their own policies. Users should review the privacy information of an external service before providing personal information to it.
15. Changes to This Policy
We may update this Privacy Policy when the App, our data practices, legal requirements, or third-party services change. The updated version will be published at this location with a revised "Last updated" date. When required, we will provide an additional notice or request consent before applying a material change.
16. Contact Us
Al-Zaytoonah University of Jordan
Elearning.ZUJ / E-Learning Support
Amman, Jordan
Email: elearning@zuj.edu.jo
Privacy, access, correction, and deletion requests should include enough information to identify the requester and the relevant University account. We may request reasonable identity verification before processing a request.