Discord Bot Privacy Statement
What data our Discord bot accesses and how it's used
🔐Bot Permissions
Our Discord bot operates with minimal permissions to ensure your server's security and privacy:
✓Required Permissions
- View Channels: Access basic server information
- Read Message History: Fetch selected messages for analysis
- Send Messages: Respond to commands and send notifications
- View Server Members: Verify user identities for consent
✗NOT Required
- Administrator privileges
- Manage server or channels
- Manage roles or members
- Voice channel access
- External emoji or attachment access
📊What Data the Bot Accesses
Message Data
The bot only accesses messages when:
- Explicitly requested by a server administrator
- From specific channels selected for analysis
- Within date ranges chosen by the requester
- User has provided consent via
/acceptcommand
User Information
The bot collects minimal user information:
- Discord User ID (for consent tracking)
- Username (at time of analysis)
- Server membership status (for verification)
What We Don't Access
- Private/Direct messages
- Voice chat data or recordings
- File uploads or attachments
- Server configuration or settings
- Other bots or integrations
⚡Available Commands
/accept
Give consent to include your messages in analysis. Your consent is recorded and can be withdrawn at any time.
/decline
Decline consent and opt-out of analysis. Your messages will be excluded from any current or future analysis.
/verifydev
Admin-only command to verify uploaded messages against the current channel for accuracy.
🔄How Data is Processed
Temporary Storage
- Messages held in memory during analysis only
- No permanent storage of message content
- Automatic cleanup after processing
Consent Management
- Consent decisions stored securely
- Timestamps for audit purposes
- Opt-out respected immediately
Processing Flow
- Admin requests analysis via web interface
- Bot fetches only consented users' messages
- Messages processed through OpenAI API
- Analysis results returned to requester
- Raw message data discarded immediately
🛡️Security Measures
Bot Security
- Secure token management
- Rate limiting to prevent abuse
- Command validation and sanitization
- Error handling without data leaks
Data Protection
- HTTPS-only communication
- PII filtering before external processing
- Audit logging for compliance
- Regular security reviews
⚖️Your Rights
Consent Control
You can give or withdraw consent at any time using bot commands
Data Access
Request information about your stored consent decisions
Data Deletion
Request deletion of your consent records and analysis results
Server Removal
Server administrators can remove the bot at any time
📧Questions or Concerns?
If you have questions about the bot's data access or privacy practices, please contact us:
We respond to all privacy-related inquiries within 48 hours.