
Privacy Policy
How IsraelVR Bot collects, stores, and uses information.
1. What This Policy Covers
This Privacy Policy explains what information IsraelVR Bot may collect, store, and process while operating in Discord servers and providing dashboard features.
2. Information We May Collect
Depending on which systems a server enables, IsraelVR Bot may collect and store the following types of information:
- Discord user IDs, usernames, avatars, and basic Discord profile information used for dashboard login and audit logs.
- Discord server, channel, role, message, and category IDs, together with bot configuration settings.
- Verification status and timestamps; ticket ownership, status, type, claim state, close reasons, transcript links, and ticket timestamps.
- Ticket transcript content when the transcript feature is enabled by server staff.
- Join and leave history used for anti-alt, rejoin detection, and security checks.
- Blacklist entries, risk flags, anti-nuke and security-event logs, and related moderation metadata.
- Player files for users who received a warning or mute, including Discord ID, username, avatar, action counters, and a history of action reasons and sources.
- Leveling and activity statistics such as XP, levels, message counts, voice minutes, reactions, thread activity, boosts, and achievement unlocks.
- Dashboard audit logs, including the Discord account that made a change and the action performed.
- Uploaded or configured assets used by bot systems, such as welcome images, server logos, banners, and dashboard assets.
3. Why We Use This Information
We use this information to operate the bot, provide server-management features, run verification and ticketing, send welcome messages, manage roles, protect servers from abuse, provide moderation tools, create transcripts, manage leveling and achievements, display dashboard statistics, and keep audit records for staff accountability.
4. Dashboard Login
When Discord login is enabled, the dashboard may use Discord OAuth to identify authorized server owners and staff members. This information is used to allow or deny access and to record dashboard actions in audit logs.
5. Who Can Access the Data
Data may be accessible to the server owner and authorized server staff, to the IsraelVR Bot team when required for support or security, and to infrastructure providers needed to operate the service. Access may occur through Discord, the dashboard, logs, ticket transcripts, and database storage. We do not sell user data.
6. Third-Party Services
The bot depends on Discord and may be hosted on third-party infrastructure such as Railway, a database provider, or another hosting provider. Data may pass through or be stored by these services as required for the bot to operate. When a server administrator enables AutoMod GIF scanning, several animation frames are sent to OpenAI Moderation to classify sexual or graphic content. IsraelVR Bot does not store the GIF file, extracted frames, or deleted message content.
7. Optional Secure Browser Verification
When a server administrator enables secure browser verification, the verification page requests explicit consent before processing a random first-party browser token, coarse browser and device characteristics, and a shortened network prefix. IsraelVR Bot converts these values into server-specific HMAC digests before storage. This feature does not store raw IP addresses or raw browser characteristics. The purpose is to detect possible ban evasion and protect participating Discord servers. A match is a risk signal and is not technical proof that two Discord accounts belong to the same person. Server administrators may configure alert, quarantine, kick, or ban actions and should provide an appeal or manual-review process.
8. Data Retention
Data is retained for as long as needed to operate the server, maintain bot systems, handle tickets, investigate abuse, preserve audit history, and keep server configuration. Secure-verification digests are retained for the period configured by the server administrator, up to 365 days, and expired records are removed automatically. Player-file event details follow the configured security-event retention period; summary counters remain until an authorized deletion request or deletion of the server data. Ticket transcripts, logs, blacklist entries, level data, and configuration data may remain until deleted by authorized staff or until the bot data is reset.
9. Data Access or Deletion Requests
You may request access to or deletion of information related to you by opening a ticket in the official IsraelVR Bot support server or contacting the staff of the server where the bot was used. Some information may be retained when required for moderation, abuse prevention, security, or server records.
10. Security
We work to protect data by limiting dashboard access, keeping secrets in private configuration variables, isolating data between servers, and restricting staff tools. No system is perfectly secure, and we cannot guarantee absolute security.
11. Changes to This Policy
This policy may be updated when bot systems or service requirements change. The latest version will be available on this page.
12. Contact
For privacy questions or data-related requests, contact the IsraelVR Bot team through the official support server and open a support ticket.