SHADO Dashboard
SHADO

PRIVACY & TRANSPARENCY

Privacy Policy

How this website handles information, and how data handling differs in a self-hosted SHADO deployment.

Updated September 23, 2026

Scope and contact

This notice covers the public website at shado.rv.sa and inquiries sent directly to its creator, Dr. Mohammed S. Alrokayan. It also explains the data paths to consider when using SHADO software with a configured server.

For privacy questions or requests, contact a@alrokayan.com . If you use a server operated by your employer or another organization, that operator is responsible for its deployment-specific privacy notice and handling of information on that server.

Visiting this website

This website is a static site hosted on GitHub Pages. Its own code does not include advertising, analytics trackers, registration forms or a payment system. It does not set application cookies or store visitor profiles. Images, styles and scripts are served with the site rather than embedded from third-party media players.

The hosting provider processes technical request information needed to deliver and protect the service, which can include IP addresses and request metadata. GitHub describes its practices in its General Privacy Statement.

The domain uses Cloudflare DNS. DNS resolution involves your chosen resolver and the domain’s DNS infrastructure. The current website configuration uses DNS-only records, rather than routing website content through Cloudflare’s HTTP proxy.

Contacting the creator

If you email a demonstration request, support question or other inquiry, the recipient receives your email address, message and any attachments you choose to include. This information is used to respond, arrange the requested discussion and handle the issue raised. Email providers also process messages under their own terms.

Do not include passwords, API keys, pairing tokens or unnecessary personal or confidential information. You can request access, correction or deletion of correspondence by contacting the address above. Identity verification may be needed before acting on a request.

This website does not provide an automated email-retention or deletion service. To ask how an inquiry is retained or request its deletion, contact the creator directly.

Information processed by SHADO software

Depending on enabled features, a SHADO deployment can process:

InformationPurpose
Prompts, responses, conversation history and memoryAnswer questions and retain working context.
Uploaded or connected files and imagesProvide information for the task you request.
Voice recordings, transcripts and generated speechSupport speech input, transcription and read-aloud.
Device screens and tool inputs or outputsSupport authorized device interaction and connected actions.
Authentication, connection settings and operational recordsConnect clients, manage access and operate the deployment.

The mobile client may retain server connection details and authentication state, including secure-storage values or session cookies depending on the sign-in path. The server can retain conversations, files and operational information. Actual retention and access depend on the deployment and features used.

Local models and external services

With local models, inference takes place on the infrastructure hosting those models. Enabling cloud models, search, speech services or integrations can send the information required for a request to those services. Their processing locations, retention and other practices are governed by the relevant provider and deployment configuration.

Self-hosting does not mean every possible integration is offline. Review enabled capabilities before submitting sensitive information. Grant device and microphone access only where needed for the intended feature.

Retention, deletion and your choices

A self-hosted server’s operator determines its storage, backups, retention and access arrangements. Contact that operator to request access, correction or deletion of information held there, or to understand what rights and procedures apply to your use.

Removing the mobile app or signing out does not automatically delete server-side conversations, files or backups. Where information has been sent to an external service, that service may have a separate deletion process.

You can choose not to contact the creator, avoid optional external links and ask your deployment operator which integrations are enabled. Rights and exceptions depend on the applicable law and the party processing the information.

The Dashboard link leads to a separate application with authentication and server-side processing. Other external links are governed by their operators’ policies. App Store and Play Store buttons are currently placeholders and do not link to store listings.

This notice will be updated when the website’s handling of information materially changes. The date above identifies this version. A future store release or managed service must describe its actual release-specific data practices; this page does not assert that any app has passed store review.