Privacy Policy
Last updated: 8/19/26
Data controller
The publisher's identity has not been filled in yet. Set LEGAL_ENTITY before opening the service to the public.
Data collected
- Discord account : identifier, username, display name, avatar.
- OAuth tokens : kept encrypted, to maintain your session.
- Server configuration : the module settings you define.
- Audit log : actions taken in the dashboard, kept for 90 days.
- Billing : Stripe identifiers (customer and subscription). No bank details.
- Custom bot : token encrypted with AES-256-GCM, if you supply one.
Purposes
This data serves only to provide the service: signing you in, applying your configuration on Discord, managing the subscription and offering support. No data is resold or used for advertising.
Message content
The bot does not keep the content of your server's messages. Ticket transcripts are generated on demand, at closing time, then sent to the channel you designated — they are not stored on our side.
Processors
- Discord — authentication and operation of the bot.
- Stripe — payment processing.
- Infrastructure host: not stated yet. Set LEGAL_HOST.
Retention
Configurations are kept as long as the bot is present on the server. The audit log is purged automatically after 90 days. Sessions expire after 7 days of inactivity.
Your rights
You have the right to access, correct, erase and port your data. Removing the bot from a server and then asking for deletion erases the configuration attached to it. our support server
Cookies
A single cookie is set (bilbi.sid), strictly necessary to keep you signed in. No analytics or advertising cookie is used.