1. Information We CollectWe collect the following categories of data. (a) Discord identity — your user ID, username, display name and avatar, cached when you sign in or interact with the Bot. (b) Server data — guild IDs, names, icons, channel IDs, role IDs and member counts for servers where the Bot is active. (c) Moderation and activity records — moderation actions and protection events with actor ID, target ID, timestamp and optional reason; automatically deleted after one year. (d) Message edit and delete logs — only when a server administrator enables message logging: the deleted content, or the before and after of an edit, each truncated to 500 characters, with channel and message IDs; automatically deleted after one year. (e) Voice sessions — channel, join and leave time, duration, and whether the channel was AFK. (f) Message statistics — daily per-channel counts of messages, words, characters, replies, mentions and attachments. Message content is not stored for statistics. (g) Levels — per-server XP and level, plus a cross-server score derived from the same activity. (h) Violation counters — per-server counts of spam, advertising and word-filter violations, used for progressive enforcement. (i) Thank-you records — sender, recipient, server, timestamp and optional reason. (j) Tickets — the message history of a ticket channel including attachments and the list of members granted access, rendered into an HTML transcript when the ticket is closed. (k) Invite records — which invite a member joined through, who created it, the join and leave times, and whether the join was flagged by the fake filters. (l) Giveaway entries — participant IDs, entry weight, join time and drawn winners. We do not collect passwords, payment details, or the content of private messages outside the contexts above.
2. How We Use Your InformationWe use the collected data to: (a) operate and deliver bot features including moderation commands, spam and ad protection, guard (security), ticket management, welcome/goodbye messages, activity logging, message logging (edits and deletes), the thank-you system, XP and leveling, and voice session tracking; (b) display moderation history, activity logs (including message edits, deletions, and voice sessions), and statistics on user and server profile pages (only for users with public profiles and servers with public profiles enabled); (c) provide server administrators with a web dashboard to configure bot settings and view server statistics; (d) generate aggregated and anonymized statistics visible on the Status page and dashboard; (e) improve the reliability, performance, and accuracy of our services; (f) ensure compliance with Discord's Developer Terms of Service and Community Guidelines; (g) respond to support requests and administrative inquiries.
3. Data Sharing & Third PartiesWe do not sell, rent or trade your data, and we do not share it for advertising or marketing. Data is shared only in these limited cases. (a) Database hosting — MongoDB Atlas stores the data described above. (b) AI advertising detection — when a server enables AI Ad Protection, the text of a message being checked, and image attachments where relevant, are sent to DeepSeek for classification and are not used to train their models; the feature is off by default, so no message leaves our systems unless a server turns it on. (c) Legal compliance — we may disclose data where required by applicable law, court order or a governmental authority. (d) Server staff — moderation records, logs, transcripts and statistics for a server are visible to that server's administrators through the dashboard and the log channels they configured. No data from one server is ever shown to another server's staff.
4. Data Retention & DeletionModeration and activity records, including message edit and delete logs, are deleted automatically one year after they are written. Voice sessions, message statistics, levels, invite records and giveaway entries are kept while the Bot remains in the server. When the Bot is removed from a server, that server's stored data is deleted. Ticket transcripts are files: a server administrator can delete them, and we will delete them on request. To request deletion of your personal data, contact [email protected] with your Discord user ID; we process such requests within 30 days. Some records may be kept for a limited additional period where necessary to comply with a legal obligation or to resolve a dispute. Publicly visible informationSome data becomes publicly visible, but only where you or the server explicitly chose it. Your member profile at /p/<username> is public only if you turn it on, and you can turn it off at any time. A server's public giveaway page shows the prize, requirements and winners only if the server enabled the public page, and participant names appear only if the server additionally enabled participant visibility. Server profiles and the global ranking pages show aggregate activity for servers that are set to be discoverable. Nothing on these pages includes message content.
5. Data SecurityWe implement industry-standard security measures to protect your data, including: encrypted connections to our database (TLS/SSL), Discord OAuth 2.0 authentication for all web dashboard access, server-side session management with secure tokens, and restricted access controls for our infrastructure. While we take reasonable precautions, no method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security and encourage users to use strong passwords and protect their Discord accounts.
6. Your RightsDepending on your jurisdiction, you may have the following rights regarding your personal data: (a) Right to Access — request a copy of the data we hold about you. (b) Right to Rectification — request correction of inaccurate data. (c) Right to Erasure — request deletion of your personal data ('right to be forgotten'). (d) Right to Restriction — request that we limit processing of your data. (e) Right to Object — object to certain types of data processing. (f) Right to Portability — request your data in a portable format. To exercise any of these rights, contact us at [email protected]. We will respond within 30 days. 7. Cookies & Local StorageOur web dashboard uses session cookies and local storage to maintain your authentication state after signing in with Discord. These are strictly necessary for the website to function and are not used for advertising or tracking. We do not use third-party tracking cookies or analytics services.
8. Children's PrivacySylon is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have inadvertently collected such information, we will take steps to delete it promptly. If you believe a child has provided us with personal data, please contact us at [email protected]. 9. Changes to This PolicyWe may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. When we make material changes, we will update the 'Last updated' date at the top of this page and, where appropriate, notify users through our Discord support server. Your continued use of the Bot or Website after changes are posted constitutes acceptance of the updated policy.
10. Contact UsIf you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us. We aim to respond to all privacy-related inquiries within 5 business days. [email protected] · discord.gg/w4cEFKksxh