Discord Bot Privacy Statement

What data our Discord bot accesses and how it's used

🔐Bot Permissions

Our Discord bot operates with minimal permissions to ensure your server's security and privacy:

Required Permissions

  • View Channels: Access basic server information
  • Read Message History: Fetch selected messages for analysis
  • Send Messages: Respond to commands and send notifications
  • View Server Members: Verify user identities for consent

NOT Required

  • Administrator privileges
  • Manage server or channels
  • Manage roles or members
  • Voice channel access
  • External emoji or attachment access

📊What Data the Bot Accesses

Message Data

The bot only accesses messages when:

  • Explicitly requested by a server administrator
  • From specific channels selected for analysis
  • Within date ranges chosen by the requester
  • User has provided consent via /accept command

User Information

The bot collects minimal user information:

  • Discord User ID (for consent tracking)
  • Username (at time of analysis)
  • Server membership status (for verification)

What We Don't Access

  • Private/Direct messages
  • Voice chat data or recordings
  • File uploads or attachments
  • Server configuration or settings
  • Other bots or integrations

Available Commands

/accept

Give consent to include your messages in analysis. Your consent is recorded and can be withdrawn at any time.

/decline

Decline consent and opt-out of analysis. Your messages will be excluded from any current or future analysis.

/verifydev

Admin-only command to verify uploaded messages against the current channel for accuracy.

🔄How Data is Processed

Temporary Storage

  • Messages held in memory during analysis only
  • No permanent storage of message content
  • Automatic cleanup after processing

Consent Management

  • Consent decisions stored securely
  • Timestamps for audit purposes
  • Opt-out respected immediately

Processing Flow

  1. Admin requests analysis via web interface
  2. Bot fetches only consented users' messages
  3. Messages processed through OpenAI API
  4. Analysis results returned to requester
  5. Raw message data discarded immediately

🛡️Security Measures

Bot Security

  • Secure token management
  • Rate limiting to prevent abuse
  • Command validation and sanitization
  • Error handling without data leaks

Data Protection

  • HTTPS-only communication
  • PII filtering before external processing
  • Audit logging for compliance
  • Regular security reviews

⚖️Your Rights

Consent Control

You can give or withdraw consent at any time using bot commands

Data Access

Request information about your stored consent decisions

Data Deletion

Request deletion of your consent records and analysis results

Server Removal

Server administrators can remove the bot at any time

📧Questions or Concerns?

If you have questions about the bot's data access or privacy practices, please contact us:

We respond to all privacy-related inquiries within 48 hours.

Related Information