Privacy

Last updated October 3, 2026.

When you sign in with Discord we receive your user id, username, avatar, email, and the list of servers your token can see. We keep that so the dashboard can show servers you manage. Session cookies are httpOnly.

Backups contain server structure: settings, roles, channels, overwrites, emoji, stickers, and any optional extras you enable. They are encrypted with AES-256-GCM before they are written to Postgres or S3. We strip fields whose names look like tokens, secrets, or webhook URLs.

We do not sell backup contents. NOWPayments processes crypto invoices when you subscribe — we only store the payment reference and your plan. Contact form messages are stored so we can reply.

You can delete the account from Settings. That route is built to remove the user, backups, schedules, and audit rows tied to you. Download a backup first if you want a copy.

Questions go to the contact form. Do not send bot tokens in that message.