Privacy policy

Your information and how we use it.

This policy covers website visits, general enquiries, email subscriptions, donations and shop orders.

Our approach

We ask only for the details needed to help you.

Al‑Fuṣḥā is an Australian non-profit and an ACNC-registered charity. We handle personal information with care, whether or not a particular privacy law applies to an activity.

We collect only what we reasonably need for the service you choose. An enquiry does not subscribe you to emails. Subscribing does not register a learner or reserve a course place.

Courses

Applications and learner areas use only the information needed to run the course.

An adult course application asks the applicant to confirm that they will be 18 or older when the course begins, then asks for their name, email address, mobile number, age at the course start, selected course and class session, previous Arabic study, reading Arabic, Arabic writing experience, learning goal, expected attendance and required declarations. Preferred name, languages used, further study background and learning or accessibility needs are optional. We use these details only to assess the application, plan the class and communicate about the application or course. An application does not guarantee a place or create learner access. If an applicant answers that they will be under 18, the website shows parent-or-guardian contact guidance without submitting or saving the form; it is not a child or guardian enrolment route.

Authorised Al‑Fuṣḥā staff use application and decision records to review the request, ask for clarification and communicate an outcome. Approved learners can request a short-lived sign-in code at their approved email address. Their application and secure Al‑Fuṣḥā session control access to the private dashboard. Private messages to course staff and staff replies are visible only to the learner and authorised staff. Questions submitted through Public Q&A may be published only after staff approval, without the learner’s name or contact details.

Course records are kept in restricted Microsoft Azure services. We do not share application answers, contact details, dashboard activity or private questions with advertising platforms, and we do not sell learner information. Optional ad measurement uses only the limited submission signal explained below.

An optional, unselected choice on the application requests separate email updates when the form is submitted. Eligible new signups join when their explicit consent is recorded, without a confirmation email. Choosing updates does not affect the application. We retain the original optional choice with the application so an interrupted signup can be checked without submitting another application.

Website visits

Optional analytics cookies, with your permission.

Our single optional-cookies notice covers Google Analytics, Google Ads measurement and the limited Meta ad measurement explained below. These stay off unless you choose “Accept”, confirming you are 18 or over. “Decline” keeps them off without affecting the website or your application. You can reopen Cookie preferences in the footer and change this choice. An older saved choice does not enable the new Google Ads measurement purpose: we ask you to accept the updated scope first. Existing Meta permission is unchanged until you change your choice or it expires.

When allowed, Google Analytics receives the public page address, title and basic browser, device and session information. We remove free-form query parameters, fragments and referrer details; a validated Google ad-click identifier may accompany the public address to attribute an ad visit. Google also receives limited signals when our server confirms a saved course application, a committed contact enquiry, an accepted newsletter subscription request or a received donation. A newsletter request does not mean a new subscriber: existing preferences are protected and membership status is not disclosed. Donation measurement sends only the success event, without the amount, currency, payment reference or donor details, after a consented checkout returns to this browser within 24 hours. Failed requests and checkout clicks do not count as completed payments or applications. We do not send names, email addresses, form entries, order details, payment details or donation details to Analytics. We also exclude phone numbers, course selections and internal record identifiers. Google Signals, personalised advertising, audience sharing, enhanced conversions, User-ID and cross-domain tracking stay off.

Confirmed shop purchases use the same count-only measurement and original checkout consent, with a separate local checkout binding usable for up to 24 hours and removed on the next check or when you decline. No products, quantities, delivery information, amounts or order references are sent to Google. Neither payment signal tracks later refunds or cancellations. We also record secondary clicks on our WhatsApp contact, WhatsApp community and social-profile links after permission. These report only the type of click and, for social profiles, the platform name—not the destination address, link text, phone number or message. A click does not establish that a message was sent, a community was joined or an account was followed.

The combined choice is saved in your browser for up to seven days. After permission, Google may use first-party analytics and advertising-measurement identifiers to connect visits with these actions. We link Analytics to our Google Ads account for measurement, not personalised advertising. The accepted application, contact enquiry and newsletter request signals are also sent directly to Google Ads as count-only conversions, while Analytics reporting remains separate. These direct signals contain no form contents, monetary values or internal record identifiers. Bounded local records bind a donation checkout to its return and prevent repeated success responses being reported twice; their hashes are never sent to Google. Donation checkout bindings stop being usable after 24 hours and are removed on the next check or when you decline. Declining clears accessible Google measurement cookies and stops future conversion reporting; it cannot recall data already sent. Al-Fuṣḥā’s Analytics property retains event and user-level data for two months. Read how Google uses information from sites that use its services and Google’s privacy policy.

Microsoft Azure hosts the website. It may process your IP address, request details and technical security information to deliver and protect the site. Al-Fuṣḥā does not use this information to build a marketing profile. Hosting and security records are kept only as long as reasonably needed for operation, security, provider controls or legal requirements, then removed or de-identified.

Optional ad measurement

Help us understand which ads lead to applications.

“Accept” in the optional-cookies notice allows the Google measurement described above and this Meta measurement. Your choice lasts up to seven days. When present on the course listing or application page, the Facebook or Instagram click identifier is saved in this browser only after permission. Email updates remain a separate choice. Declining has no effect on applying for a course.

After permission, Meta Pixel measures visits to the public course listing and application pages. Meta receives browser and device information, including your IP address and cookie identifiers. We remove query parameters and fragments before loading Pixel. Automatic form tracking and advanced matching are off: we do not supply names, email addresses, phone numbers, ages, gender, class or venue selections, religion, form answers or learner identifiers.

After our server confirms receipt of an eligible application from an ad click, the browser and server may report the same submission to Meta. They share a pseudonymous event identifier so Meta can count it once. The server sends only the ad-click identifier, browser user-agent information, submission time and the application page address without query parameters. A button click or failed application is not a conversion.

This is not anonymous reporting: Meta may match the signal to an ad interaction or account and use it to measure results and personalise ad delivery. Meta may process it outside Australia under Meta’s Privacy Policy. Al‑Fuṣḥā does not receive the person’s Meta profile.

Open Cookie preferences in the footer and choose “Decline” to turn off both types of optional measurement. This removes our saved click identifier and accessible Meta measurement cookies and stops future reporting from this browser. Meta cookies may otherwise remain after the seven-day permission expires, but our integration will not use them without a current Accept choice. Withdrawal cannot recall a signal already sent to Meta. We do not retain the click identifier or browser information in application records; only a minimal consent and delivery-attempt receipt is retained with the application under its existing retention rules. We do not backfill earlier applications or install Pixel on private learner/staff pages.

General enquiries

We use your details to answer your message.

The enquiry form asks for your name, email address, an optional organisation, the reason for writing and your message. We use this information to send the message to an authorised Al-Fuṣḥā mailbox, reply, manage necessary follow-up and handle privacy requests. Microsoft Azure Communication Services carries the message from the website to the mailbox.

The website temporarily keeps the details needed to deliver your enquiry and acknowledgement reliably. These delivery copies are removed when the provider reports a final outcome. Delivery stops after 24 hours; any remaining copies are removed by the next successful cleanup. If a service interruption delays cleanup, removal happens when it resumes. This temporary store is separate from the enquiry in our mailbox and its necessary follow-up.

We keep a limited delivery receipt without your name, address or message to prevent duplicate sending and investigate interruptions. The live receipt is scheduled for removal after seven days. Routine backups omit the temporary message contents and optional updates details.

Please do not send sensitive information we do not need. Only authorised Al-Fuṣḥā people who need an enquiry to reply or manage it can access the message.

Email subscriptions

Email updates are a separate choice.

The updates form collects your email address, an optional first name and a record of the consent wording, time and website source. We use this information only for occasional Al-Fuṣḥā news about courses, apps, resources and books. The consent box is not preselected.

Email subscriptions use dedicated Al-Fuṣḥā services in Microsoft Azure. Azure Table Storage keeps the minimum subscriber and consent record. Azure Communication Services sends authorised update emails and any retained historical confirmation emails. A restricted Azure queue and function control the pace of authorised messages. Email delivery may pass through networks outside Australia. Microsoft’s global event service may process delivery results so failed or suppressed addresses are not emailed again. Microsoft handles service information under its own terms; read Microsoft’s privacy statement.

Eligible new signups join when we record their explicit consent, whether requested through the updates form or the optional choice on an enquiry or course application. No confirmation email is needed. We keep the consent wording version, source, method and original time, separately from the activation time; this is not an email-address verification. Existing pending or suppressed addresses are not activated by a new form submission. We do not import subscriber lists from another organisation. The subscription form does not ask for a child’s name, age, phone number, address, religion or enrolment information. Every update email includes a way to unsubscribe without signing in or giving more personal information.

A new subscription has a temporary acceptance receipt, with no confirmation email, scheduled for removal after seven days. Optional signup requests are retained for recovery for up to 24 hours without changing or duplicating the primary enquiry or application. Application signup recovery uses an explicit retry of the original request; enquiry signup recovery also uses the existing delivery process. For historical signups awaiting confirmation, a temporary copy of the original confirmation email helps us recover an interrupted delivery without creating another subscription. Its original consent time and 48-hour confirmation deadline stay the same during recovery. We stop using that copy at the deadline and remove it by the next successful cleanup; routine backups omit its contents and confirmation link. The separate subscriber and consent record follows the retention periods below.

Where practical, campaign administration uses a one-way identifier instead of the email address. After an address unsubscribes or is suppressed, we remove the address and its linked delivery history. We keep only the minimum record needed to prevent an email being sent there again by mistake.

Donations

Stripe handles payment. Al‑Fuṣḥā keeps a limited donation record.

If you choose to donate online, payment is completed on Stripe-hosted Checkout. Stripe processes the payment and any contact or payment details it needs under its own service and privacy terms. Al‑Fuṣḥā’s website does not receive or store your full card details.

After Stripe confirms payment, Al‑Fuṣḥā keeps a limited record for acknowledgement, accounting, reconciliation and any refund: a donation reference, amount and status, together with limited Stripe payment references. The Al‑Fuṣḥā donation ledger does not store the donor’s name, email address or card details. A donation does not subscribe you to email updates and is not presented as tax deductible.

We keep the minimum donation and refund record for as long as reasonably needed for accounting, reconciliation, disputes and legal obligations. Stripe keeps its own records under its terms. If you need help with a donation, contact Al‑Fuṣḥā and include the donation reference shown after payment.

Shop orders

Stripe handles card payment. We keep only what is needed for the order.

You can browse the shop without giving personal information. If you place an order, payment is completed on Stripe-hosted Checkout. Stripe collects and processes card details under its own service and privacy terms. Al-Fuṣḥā’s website and order service do not receive or store your full card details.

After Stripe confirms payment, the private Al-Fuṣḥā order service keeps only what is reasonably needed to check, fulfil, support and reconcile the order: your name, email and Australian delivery address; the books, quantities and amounts; limited Stripe order and payment references; and fulfilment, tracking, communication, refund or problem records. Stripe provides the payment receipt or paid invoice. Al-Fuṣḥā’s order message is not a tax invoice.

Only authorised Al-Fuṣḥā people and the providers needed for payment, hosting, email and delivery can use order information. We do not add it to email updates, use it for advertising profiles or share it with another organisation. Opening an order-return web address does not prove payment or reveal an order.

How long we keep information

We remove or reduce records when they are no longer needed.

Enquiries
We normally remove mailbox copies within 12 months after the final reply. We keep them longer only if reasonably needed for an unresolved matter, security, recovery or a legal requirement.
Unconfirmed signups
We review and remove unconfirmed update records within 60 days, unless a provider requires a shorter period.
Active subscribers
We keep the email address, optional first name, consent record and minimum delivery records while the person remains subscribed and the service continues.
After unsubscribing
We remove the address and linked delivery history. We may keep a minimal one-way suppression record for as long as reasonably needed to prevent the address being added or emailed again by mistake.
Course applications and learner areas
Incomplete applications expire after 30 days. Application-only personal details are removed when they are no longer needed, while the minimum decision, access, moderation and audit record may remain for course operation, safety, recovery or legal requirements.
Book orders
We remove the customer’s name, email, delivery address and related private notes or provider identifiers 24 months after dispatch, collection, cancellation or full refund. A current dispute, chargeback, court order or other legal hold may require us to keep them longer. We keep only de-identified financial and operating records for seven years, then delete them unless a legal hold still applies. Private order backups use a rolling 35-day recovery period.
Service providers
Microsoft Azure, Stripe and authorised mailbox or delivery providers process information only for the hosting, payment, storage, email, delivery, mailbox or security work they provide, under their own terms.

Your choices

Ask about your information or raise a concern.

Email contact@alfusha.org to ask what we hold about you, request access or correction, ask for deletion where appropriate, withdraw consent or make a complaint. We may need enough information to confirm that the request relates to you before showing or changing a record.

We will consider the request within a reasonable time, explain the outcome in plain language and take appropriate action. After a deletion request, we may keep a minimal suppression record so an unsubscribed address is not contacted again.

An authorised person can correct or remove the optional first name after confirming the request. To change an email address, the new address must be confirmed before the old one is suppressed. We do not transfer consent silently.

Security and changes

We protect access and explain important changes.

We use access controls, secure connections and trusted service providers to protect information. No internet service can promise complete security. If a serious privacy or security incident occurs, we will contain it, assess the affected information, recover safely and make any notification required in the circumstances.

We will update this page before beginning an important new collection, provider, purpose or disclosure. The date will change when the policy changes in a meaningful way. We will not silently extend an earlier consent to an unrelated purpose.