Skip to content
EntrophyEntrophy

Legal

Privacy policy

This is a template. It describes Entrophy's default data handling accurately, but the operator running this deployment (currently shown as “Entrophy”, contact “entrophybot@gmail.com”) should review it for their own jurisdiction and business details before relying on it as a legal document.

1. What this covers

This Privacy Policy explains what Entrophy collects when you use the Entrophy Discord bot, its dashboard, and this website, and why. It does not cover Discord itself — see Discord's own Privacy Policy for that.

2. Data collected by the bot

By default, Entrophy stores only what a feature needs to function: Discord IDs (server, user, channel, role, message) tied to the feature that used them — for example a moderation case, a ticket, or a level profile.

Message content is never stored unless a specific feature explicitly requires it and a server administrator turns that feature on (for example, the Enforcer plugin's context capture, which can be disabled per server). Deleted-message and edited-message logging captures that an event happened, not the message text, unless a server enables content capture.

Server administrators control which plugins are enabled and can review, export, or request deletion of their server's data at any time from the dashboard's privacy settings.

3. Data collected by the dashboard

Signing into the dashboard uses Discord OAuth. We receive your Discord user id, username, avatar, and the list of servers you manage, only to determine which servers you're allowed to configure.

A session cookie keeps you signed in; it is httpOnly, cannot be read by page scripts, and expires automatically. OAuth tokens are encrypted at rest and used only to call the Discord API on your behalf.

4. Donations

Donations are processed by Stripe through Stripe Checkout — card details are entered on Stripe's own hosted page and never reach Entrophy's servers. We store only the donation amount, currency, status, and Stripe's session/payment identifiers — never your name, email, or card information.

5. Cookies

This website does not use tracking or advertising cookies. The dashboard uses one strictly-necessary session cookie to keep you signed in.

6. Data retention & deletion

Retention periods for moderation cases, logs, tickets, and Enforcer records are configurable per server, with sensible defaults. A server administrator can request an export or deletion of their server's data from the dashboard at any time; deletion removes the associated database records.

7. Third parties

Entrophy shares data only with the services required to operate the features you use — Discord (the platform itself), Stripe (donations only), and any optional integration a server administrator explicitly connects (for example Twitch, GitHub, an AI provider for the AI assistant plugin, or a translation/weather provider for the utility plugin). No data is sold.

8. Your rights

Depending on your location, you may have rights to access, correct, or delete your data. Server administrators can act on Discord-server-scoped data directly from the dashboard; for anything else, contact entrophybot@gmail.com.

9. Children

Entrophy runs on Discord, which requires users to be at least 13 years old under Discord's own Terms of Service. Entrophy does not knowingly collect data from anyone below that age, and relies on Discord's own age requirements rather than collecting separate age verification.

10. Changes to this policy

This policy may be updated as features change. Material changes will be reflected here with an updated effective date.

11. Contact

Questions about this policy: entrophybot@gmail.com.