مركز الثقةالثقة آلية في المنتج، وليست شعارًا.
نفرّق بين ما هو operational في النسخة العامة وما يحتاج بوابة امتثال قبل أي إطلاق مؤسسي.
Operationalالمعالجة المحلية
قراءة السجل وOCR تعمل داخل المتصفح، وملفات OCR تُخدم من نطاق كامن.
Operationalحفظ محلي باختيارك
الافتراضي جلسة مؤقتة. وبموافقة صريحة يمكن الاحتفاظ بالملف على نفس الجهاز عبر IndexedDB، مع زر واضح لإيقاف الحفظ أو حذف كل البيانات المحلية.
Operationalموافقة حسب الغرض
تحليل السجل وبناء البصمة الذاتية أغراض منفصلة، والمشاركة المؤسسية غير مفعّلة حاليًا.
Operationalاستمرارية مشفّرة
يمكن للمستخدم تنزيل نسخة محلية مشفّرة بـ AES-GCM واستعادتها لاحقًا. كامن لا يخزن عبارة المرور ولا يستطيع فك النسخة بدونها.
حوكمة الذكاء الاصطناعي
AI يقترح
الاستخراج أو الاستدلال لا يصبح حقيقة لمجرد أن نموذجًا أنتجه.
الدليل يبرر
النتائج المؤثرة في الحكم يجب أن تعود إلى مصدر أو ربط محكوم.
الإنسان يقرر
كامن لا يتخذ قرار توظيف ولا يمنع المستخدم من فرصة.
الاستعادة الآمنة
النسخة المحمولة تحفظ الأدلة وحالة الملف وJSON-LD. عند الاستعادة لا نثق بنتائج مشتقة قديمة: يعاد حساب المهارات والملاءمة من الأدلة، وتُصفّر موافقات المرشد/البحث الخارجية.
ما لا يحدث في النسخة العامة
- لا يوجد تخزين مركزي لملف الطالب.
- لا توجد مشاركة فعلية مع مرشد أو صاحب عمل أو باحث.
- لا تستخدم بيانات الملف المحلي لتدريب نموذج مركزي.
- قياس الـpilot معطل افتراضيًا، وعند تفعيله لا يلتقط محتوى السجل الأكاديمي أو بياناته الشخصية.
- لا توجد إعلانات أو عمولات تؤثر على الملاءمة.
بوابة الإطلاق المؤسسي
قبل تخزين بيانات شخصية مركزيًا أو إظهار cohort analytics، يلزم على الأقل: استضافة معتمدة، سياسة احتفاظ، اتفاقية مشاركة بيانات، ضوابط صلاحيات، سجل وصول، minimum cell size للتجميع، مراجعة PDPL، واختبار إعادة التعريف والتحيز.
ما الذي سنقيسه؟
تحليلات الاستخدام غير مفعّلة حاليًا. في تجربة جامعية لاحقة، وبعد الموافقات المطلوبة، نقترح قياس إكمال المهام، زمن الوصول لأول تفسير مفهوم، تصحيح أخطاء الإدخال، وفهم حدود التوصية. نعلن حجم العينة والتاريخ والمنهج والأخطاء مع النتائج؛ لا ننشر أرقام نمو من دون قياس.
خطة التحقق · سجل التحديثات
Trust centerTrust is a product mechanism, not a slogan.
Kamin separates what is operational in the public release from capabilities that remain behind an institutional compliance gate.
OperationalLocal processing
Transcript reading and OCR run in-browser; OCR runtime and language files are served from the Kamin origin.
OperationalLocal persistence by choice
The default is session-only. With explicit consent, the profile can persist on the same device in IndexedDB, with controls to stop persistence or delete all local data.
OperationalPurpose-specific consent
Transcript analysis and the self-reported profile are separate purposes. Institutional sharing is not operational in the public release.
OperationalEncrypted continuity
Users can download an AES-GCM encrypted local backup and restore it later. Kamin does not store the passphrase and cannot decrypt the backup without it.
AI governance
AI suggests
Extraction or inference does not become fact simply because a model produced it.
Evidence justifies
Signals that affect a judgment must trace to evidence or a governed mapping.
Humans decide
Kamin does not make hiring decisions or block a user from an opportunity.
Safe restore
The portable backup carries evidence, profile state and JSON-LD. On restore, Kamin does not trust stale derived outputs: capabilities and Fit are recomputed from evidence, while advisor/research sharing consents are reset.
What the public release does not do
- No central student-profile storage.
- No operational sharing with advisors, employers, or researchers.
- No use of local profile data to train a central model.
- Pilot analytics are disabled by default and, when enabled, exclude transcript content and personally identifying academic data.
- No advertising or commission influences Fit.
Institutional launch gate
Before central storage or cohort analytics can be enabled, Kamin requires at minimum approved hosting, a retention policy, data-sharing agreement, access controls and logging, minimum cell-size rules for aggregation, PDPL review, and re-identification/bias testing.
What will we measure?
Usage analytics are currently disabled. A future university pilot, following required approvals, proposes measuring task completion, time to an understood explanation, correction of input errors and comprehension of recommendation limits. Results will include sample size, dates, methods and errors; growth figures are not published without measurement.
Validation plan · Changelog