1. Introduction
This Privacy Policy describes how Multus Bot ("we", "our", or "us") collects, uses, and shares your personal information
when you use our Discord bot and web services (the "Service").
We are committed to protecting your privacy and being transparent about our data practices.
This policy explains what information we collect, why we collect it, and how you can manage your data.
Data Controller Information
Data Controller: SimolZimol (Individual Developer)
Contact: Available through Discord (@simolzimol) or our contact form
Location: European Union
Legal Basis: Legitimate interest for service operation and user consent for data processing
2. Information We Collect
Discord Account Information
- Discord User ID (unique identifier)
- Username and discriminator
- Avatar URL
- Server membership information
Message Data
- Message content for moderation context
- Message timestamps and IDs
- Channel and server context
- Reaction data and interactions
Usage and Activity Data
- Warning and moderation history
- Command usage statistics
- Login times and session data
- Web panel interactions
Server Information
- Server ID and name
- Channel configuration
- Role and permission settings
- Bot configuration preferences
3. How We Use Your Information
We process your personal data based on the following legal bases under GDPR:
Legal Basis for Processing
- Legitimate Interest (Art. 6(1)(f) GDPR): Service operation, security, and improvement
- Consent (Art. 6(1)(a) GDPR): Optional features and analytics (where applicable)
- Contract Performance (Art. 6(1)(b) GDPR): Providing the bot service you requested
- Legal Obligation (Art. 6(1)(c) GDPR): Compliance with applicable laws
We use the collected information for the following purposes:
- Service Operation: To provide moderation, management, and administrative features
- User Experience: To personalize your experience and maintain user preferences
- Moderation: To enforce server rules and maintain community safety
- Analytics: To understand usage patterns and improve service quality (anonymized where possible)
- Communication: To send important updates and respond to support requests
- Security: To detect and prevent abuse, spam, and security threats
4. Data Retention
Retention Periods
- User Account Data: Retained while you use the service and for 30 days after last activity
- Moderation Logs: Kept for 1 year for accountability and appeals
- Message Context: Archived messages retained for 90 days
- Analytics Data: Aggregated data retained indefinitely for service improvement
- Session Data: Cleared after 24 hours of inactivity
Data may be retained longer if required by law or for legitimate business purposes such as security investigations.
5. Data Sharing and Disclosure
We do not sell, trade, or rent your personal information to third parties. We may share your information only in the following circumstances:
- Discord Platform: As required for bot functionality through Discord's API (Discord Inc., USA - adequate protection under Privacy Shield successor)
- Server Administrators: Moderation data may be visible to server moderators and administrators within your Discord server
- Legal Requirements: When required by law, court order, or government regulation
- Service Providers: With trusted third-party services that help us operate (hosting providers within EU/EEA)
- Safety and Security: To protect the rights, property, or safety of our users or others
International Data Transfers
Some of our service providers may be located outside the European Economic Area (EEA). In such cases:
- We ensure adequate protection through approved mechanisms (adequacy decisions, standard contractual clauses)
- Discord Inc. (USA) is covered by appropriate safeguards for international transfers
- We minimize data transfers outside the EEA where possible
6. Data Security
We implement appropriate technical and organizational security measures to protect your personal information:
- Encrypted data transmission using HTTPS/TLS
- Secure database storage with access controls
- Regular security updates and monitoring
- Limited access to personal data on a need-to-know basis
- Secure authentication through Discord OAuth2
While we strive to protect your information, no method of transmission over the internet is 100% secure.
We cannot guarantee absolute security but continuously work to improve our security measures.
7. Your Rights and Choices
Under the General Data Protection Regulation (GDPR), you have the following rights regarding your personal information:
Your GDPR Rights
- Right of Access (Art. 15): Request information about what personal data we have about you
- Right to Rectification (Art. 16): Request correction of inaccurate or incomplete data
- Right to Erasure (Art. 17): Request deletion of your personal data ("right to be forgotten")
- Right to Restrict Processing (Art. 18): Request restriction of processing under certain circumstances
- Right to Data Portability (Art. 20): Request a copy of your data in a machine-readable format
- Right to Object (Art. 21): Object to processing of your data for certain purposes
- Right to Withdraw Consent (Art. 7): Withdraw consent at any time where processing is based on consent
How to Exercise Your Rights
To exercise these rights, please contact us through our contact form
or Discord (@simolzimol). We will respond to your request within 30 days as required by GDPR.
Right to Lodge a Complaint: You have the right to lodge a complaint with your local data protection authority
if you believe we have not adequately addressed your concerns.
Note: Some rights may be limited by applicable law or necessary for the legitimate operation of our service.
We will inform you of any such limitations when responding to your request.
8. Cookies and Tracking
Our web service uses the following types of cookies and tracking technologies:
- Essential Cookies: Required for authentication and session management
- Functional Cookies: To remember your preferences and settings
- Analytics Cookies: To understand how you use our service (anonymized)
You can control cookies through your browser settings, but disabling essential cookies may affect service functionality.
9. Children's Privacy
Our Service is intended for users who are at least 13 years old, in compliance with Discord's Terms of Service.
We do not knowingly collect personal information from children under 13.
If we become aware that we have collected personal information from a child under 13,
we will take steps to delete such information promptly.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable law. We will notify you of any material changes by:
- Posting the new Privacy Policy on this page with an updated "Last Updated" date
- Providing prominent notice through our service for significant changes
- Sending direct notification where we have your contact information (for material changes affecting your rights)
Your continued use of the Service after the effective date of the revised Privacy Policy
constitutes acceptance of the revised policy. If you do not agree to the changes, please stop using our service.
11. Legal Compliance and Supervisory Authority
GDPR Compliance
This service is operated in compliance with the General Data Protection Regulation (EU) 2016/679.
As a service primarily targeting EU users, we adhere to GDPR requirements regardless of your location.
Supervisory Authority Contact
If you believe we have not adequately addressed your data protection concerns, you have the right to lodge a complaint with:
- Your local data protection authority in your EU member state
- The lead supervisory authority where our main establishment is located
- You can find your local DPA contact information at: European Data Protection Board