Privacy Policy
Last updated: 2026-08-12
Agnostos ("we", "us") is a Discord bot and web panel operated as a hobby/independent service. This Privacy Policy explains what data we collect, why we collect it, and what we do with it.
1. Data we collect
When you sign in with Discord, we receive the following from Discord's OAuth API:
- Discord user ID, username, and global name. Used to identify you in the panel and across visits.
- Avatar hash and locale. Used for display.
- Email address (and whether it is verified by Discord). Used to send transactional account-related messages and as a fallback identifier for billing. We do not send marketing emails.
- The list of guilds you share with Agnostos. Used to determine which servers you can manage.
For each Discord server where the bot is installed, the bot may store:
- Member activity — message counts, voice time, online presence, command usage, and join/leave events. Used to power the Watchdog and Analytics features.
- Profile change history — previous usernames, nicknames, and avatars observed by the bot. Used by Watchdog for moderation context.
- Invite attribution — which invite code a user joined under, when available.
- Per-server configuration — command permission rules, log channels, music preferences.
- Operational logs — recent bot events and errors, retained for up to 30 days.
2. Payment data
If you upgrade a server to Premium, payment is processed by Stripe. Agnostos never sees or stores your card details. We only store the Stripe customer ID and subscription ID associated with your server so we know which server is paid.
3. Data retention
- Account data is kept while your account is active and for up to 30 days after deletion (to handle billing reversals and abuse appeals).
- Server data is retained while the bot is installed in that server.
- Logs are kept for at most 30 days then automatically pruned.
4. How we share data
We do not sell or share personal data with third parties for advertising purposes. We share data only with:
- Discord — we communicate with Discord's APIs to provide the service.
- Stripe — only payment-related data, and only when you upgrade.
- Law enforcement — only if compelled by a valid legal request.
5. Your rights
You can:
- Access the data we hold about you. Open the Settings menu in the panel, or contact us.
- Delete your account from the panel via Settings → "Delete account". Your user record is removed; server-level activity that does not personally identify you may be retained.
- Export your data. Contact us and we'll respond within 30 days.
- Object to processing or request correction by contacting us.
6. Security
Sessions are HTTP-only, SameSite-Lax cookies. Data at rest is stored in an embedded database within an isolated container. We use TLS in production for all panel traffic. We do not have access to your Discord password.
7. Children
Agnostos is not directed at children under 13 (or the equivalent minimum age in your jurisdiction). If you believe a child has provided us their information, contact us and we will delete it.
8. Changes
We may update this policy. The "last updated" date at the top of this page reflects the most recent change. Continued use of the service after changes constitutes acceptance.
9. Contact
For privacy questions or to exercise your rights, reach us through our support channel.
← Back to home