BotX Privacy Policy
Effective date: August 29, 2026 Operator: BoosterX Operator Privacy contact: [email protected]
This Privacy Policy explains how BotX (the Bot) processes information when it is used in Discord. The Bot is an independent application and is not affiliated with, endorsed by, or operated by Discord Inc.
This document is an operational privacy notice, not legal advice. The operator must verify the remaining legal fields and this notice against the operator's jurisdiction before publication.
1. Scope
This Policy applies to the active BotX features, including moderation and server logs, activity statistics and CoinX, invitations, language preferences and translation, AI-assisted support, role requests, temporary voice-channel controls, giveaways, and authorized license-key and order administration.
Discord separately processes information under its own privacy policy. Third-party services listed below process information under their own terms and privacy policies.
2. Information we process
Depending on the feature used, the Bot may process:
- Discord account and server data: Discord user ID, username, display name, avatar, guild ID, channel ID, message ID, role and membership information, mentions, and interaction metadata.
- Messages and attachments: message text, edited and deleted message text, links, filenames, images attached to an AI support request, referenced messages, and recent support-thread history.
- Activity data: message count, voice participation time, invite relationships and status, join and leave events, CoinX balance, and event or giveaway participation.
- Promotion and server-support data: server boost events, the boosting user's Discord ID, the server's boost count, the reward tier selected by the Bot, generated license-key metadata, and delivery status. A BoosterX key may be issued as a promotional reward for a qualifying server boost.
- Moderation data: detected spam or prohibited content, warnings and violations, moderator ID, reason, role, duration, status, and start and end times.
- Preferences: selected language and translation target language.
- Purchase and license administration data: product, payment method identifier, amount, currency, exchange rate, invoice or order identifier, purchase status and dates, and license-key records. These records are exposed only through restricted administrative functions in the current Bot.
- Operational data: errors, timestamps, performance and uptime information, and database backups needed to operate and recover the Bot.
The Bot does not need your payment-card number or payment-account password. Do not submit those details in Discord messages, commands, modals, or support threads.
3. How information is used
We process information to:
- provide Bot commands, interactions, language selection, roles, voice controls, giveaways, and community activity features;
- detect spam, repeated messages, unsafe links, prohibited words, leaked license keys, and other server-rule violations;
- keep audit logs of edited or deleted messages and server moderation events;
- calculate activity statistics, CoinX balances, invite counts, and leaderboards;
- record invite and CoinX activity for internal server features, accounting, abuse prevention, and future feature evaluation;
- process server boost events and issue a promotional BoosterX license key where the configured reward rules apply;
- translate a message selected by a user;
- answer AI support requests and route support topics to relevant server roles;
- administer purchases and license keys where an authorized administrator uses those functions;
- diagnose failures, monitor availability, prevent abuse, secure the service, and restore data after an incident;
- comply with applicable law and enforce the Terms of Service.
Where applicable law requires a legal basis, processing is based on performance of the service requested by you, our legitimate interests in operating and securing the Bot and Discord community, compliance with legal obligations, and consent where required. A server administrator is responsible for ensuring that use of logging and moderation features is lawful for that server.
4. Automated moderation and AI
The Bot automatically evaluates recent messages for spam, flooding, prohibited words, links, and repeated content. A match can cause message deletion, a warning, timeout, or another configured moderation action. Moderators may review moderation records and reverse or change an action.
When you invoke /ai, reply to a Bot AI response in a configured support forum, create a support-forum topic, or use Translate, relevant content is sent to an external AI endpoint. This can include your prompt, selected or recent messages, display names included in the conversation context, target language, and up to three supported images. Support-topic text and images may also be used to select which support roles should be notified.
Do not send passwords, authentication tokens, financial credentials, government identifiers, health records, or other sensitive personal information to AI or translation features.
5. Sharing and service providers
Information may be shared only as needed with:
- Discord, which hosts the messages, interactions, roles, channels, and server logs used by the Bot;
- OpenAI or the operator-configured OpenAI-compatible provider, for AI answers, embeddings, support routing, and translations;
- Qdrant, to retrieve support knowledge using a vector derived from an AI prompt;
- VirusTotal, to check domains found in messages for security risk;
- Telegram, for operator error reports and compressed PostgreSQL backups;
- Uptime Kuma, for availability and latency monitoring;
- hosting, database, and infrastructure providers used to run the Bot;
- authorities or other parties when required by law, to protect rights and safety, or to investigate abuse.
The active user-facing code does not sell personal information or use it for targeted advertising.
The Bot does not purchase, sell, transfer, or automate Discord Nitro subscriptions or server boosts. A server boost is detected from Discord events; any BoosterX license key is an external promotional reward and is not a Discord product or entitlement.
6. Retention
Retention depends on the data type:
- recent messages used for spam detection and voice-session timing are held in memory while the Bot runs;
- translation cache entries expire after 30 days by default; the operator can change this deployment setting;
- Discord audit messages, including edited and deleted message logs, remain in the configured Discord channels until an authorized person or Discord deletes them;
- account statistics, language preferences, invite records, moderation records, purchase records, and license administration records remain in PostgreSQL while needed for the relevant feature, dispute handling, security, or legal obligations;
- CoinX, invite, server-boost, reward, and license-delivery records remain while needed for accounting, abuse prevention, dispute handling, feature operation, or legal obligations;
- local operational logs remain until rotated or deleted by the operator;
- a compressed database backup is sent to the operator's private Telegram destination and the temporary local backup is then deleted. The current code does not define automatic deletion of the Telegram copy.
We will delete or anonymize information when it is no longer needed, when Discord requires deletion, or after a valid user request, unless retention is required by law or necessary for security, fraud prevention, or dispute resolution.
7. Your choices and rights
You may:
- avoid optional AI and translation features;
- remove content you posted where Discord permits it;
- leave the Discord server or stop interacting with the Bot;
- request access, correction, or deletion of information associated with your Discord user ID;
- object to or restrict processing, or request a portable copy, where applicable law provides those rights;
- complain to your local data-protection authority.
Send requests to [email protected] and include your Discord user ID. We may need to verify that the requester controls the relevant Discord account. Deleting Bot records does not automatically delete information retained independently by Discord or another provider.
Server owners may remove the Bot from their server. They should contact the operator to request deletion of server-specific records that are no longer needed.
8. Security
We use access restrictions, private administration channels, environment-based credentials, database access controls, and operational backups. No system is completely secure, and we cannot guarantee absolute security. Please report suspected security or privacy incidents to [email protected].
9. International processing
The Bot and its providers may process information in countries other than yours. Where required, the operator will use an appropriate legal transfer mechanism and safeguards.
10. Children
The Bot is available only to people permitted to use Discord under Discord's age requirements and applicable law. If you believe a child has provided personal information contrary to those requirements, contact us so that the information can be reviewed and deleted where appropriate.
11. Changes
We may update this Policy when Bot features, providers, or legal requirements change. We will update the effective date and provide additional notice in Discord when a change materially affects users.
12. Contact
Data controller / operator: BoosterX Operator Email or public contact method: [email protected] Security contact: [email protected]