Policy Items
- Users are prohibited from engaging in, promoting, or encouraging activities that violate any law, regulation, government decision, royal decree, legal agreement, or policies.
- Users are prohibited from hacking, disrupting, modifying, accessing, using, or unlawfully exploiting electronic applications, services, databases, infrastructure systems, or associated security systems, whether on local or external networks.
- Users are prohibited from disabling, interfering with, or circumventing any aspect of the service or violating any security or authentication procedures used by the system or service.
- Users are prohibited from accessing the application or service if they have exceeded a specified number of incorrect login attempts, resulting in account suspension for a specified period to prevent brute-force attacks.
- Users are prohibited from using unlicensed software or other intellectual property.
- Users are prohibited from accessing or investigating any service or system without authorization, including but not limited to security breaches, vulnerability scans, or penetration testing.
- Users must use a secure and authorized browser to access the internal network or the internet.
- Users must report suspicious websites that should be blocked or proxy/firewall issues to the Al-Baha Municipality cybersecurity team.
- Users are prohibited from bypassing firewalls or other security measures to access the internet.
- Users are prohibited from stealing resources, including sensitive information.
- Users are prohibited from forging, impersonating, or altering identities when using Al-Baha Municipality applications and services.
- Users are prohibited from downloading or installing software/tools on Al-Baha Municipality assets without prior authorization from the IT department.
- Users are prohibited from using the internet for non-work purposes, including downloading media, files, or using file-sharing software.
- Users must report any suspected cybersecurity risks or suspicious messages to the municipality’s cybersecurity team and handle security messages cautiously.
- Users are prohibited from conducting security tests to discover vulnerabilities without prior authorization from the cybersecurity department.
- Users are prohibited from using file-sharing websites without prior authorization from the cybersecurity department.
- Users are prohibited from visiting suspicious websites, including hacking tutorials.
- Users are prohibited from using external storage media without prior authorization from the cybersecurity department.
- Users are prohibited from performing any activity that may affect the efficiency or integrity of systems/assets or gaining elevated privileges without authorization.
- Users are prohibited from installing external tools without authorization from the IT department.
- Users are prohibited from using email, phone, fax, or other communication means for non-work purposes.
- Users are prohibited from sharing passwords through any means.
- Users must not disclose their own or sensitive data, and are responsible for protecting all sensitive information.
- Users are prohibited from publishing, advertising, distributing, or sharing content that defames, violates laws, contains pornography, obscenity, contradicts Islamic teachings or public morals, or is otherwise illegal via the municipality’s website.
1. Personal Information Security
The safe use policy for applications helps visitors and users understand what data is collected during their visit and how it is handled. The website management takes appropriate measures to protect personal information from loss, unauthorized access, misuse, modification, or disclosure.
2. Collection of Personal Information
When visiting the municipality website, the server logs the user's IP address, date and time of visit, and any referring URL.
Cookies from Al-Baha Municipality websites and applications must be processed or transferred securely and accurately according to business requirements.
3. Safe Use of Web Applications
Users of Al-Baha Municipality websites and applications can access data through the official website and use it responsibly without violating applicable laws and regulations.
Users must keep all obtained data, such as usernames and passwords, confidential. Sharing credentials with unauthorized persons is prohibited and users bear full responsibility for consequences.
Do not save usernames or passwords on public devices.
Users must log out from applications or websites after finishing their session.
Users are responsible for any errors resulting from reusing data obtained from municipality websites and applications.
Users must not upload materials containing viruses, malicious code, or programs that could modify, damage, or disrupt operations.
Users must enable multi-factor authentication (MFA) or biometric authentication where available when using municipality applications.

Decrease Font
Auto Tuning
Increase Font