Privacy Policy | ARISBOT
Thank you for using ARISBOT — a Discord bot and dashboard service designed to make server management easier and more secure. We value your privacy and are committed to protecting your data. This Privacy Policy explains what information we collect, how we use it, and the measures we take to keep your data safe from unauthorized access.
1. Information We Collect
- Discord account details such as user ID, username, and avatar (retrieved via Discord’s OAuth2 API).
 - Temporary authentication tokens (Access and Refresh Tokens) used to verify your identity with Discord.
 - Authorized Discord server data, such as server name, ID, and granted permissions.
 - Technical information including your IP address, browser User-Agent, and login timestamps for security verification.
 - Session cookies used to maintain your logged-in state on the dashboard.
 
2. How We Use Your Information
- To authenticate you and allow you to access your Discord servers through the dashboard.
 - To prevent duplicate or unauthorized logins by validating active sessions.
 - To store and manage your bot or dashboard configurations within your authorized servers.
 - To improve performance, fix issues, and enhance the overall user experience.
 - To comply with Discord Developer Terms and applicable privacy laws.
 
3. Data Protection & Security Measures
All data is securely stored in our encrypted Firestore database. We verify IP addresses and User-Agent information on each login attempt to prevent session hijacking. Each user can only have one active session at a time — when a new login occurs, the old session is automatically invalidated. Access Tokens are stored in an encrypted format and are never shared with any third party.
4. Data Retention
Session data is stored for a maximum of 3 hours per login. After this period, it will automatically expire. OAuth2 tokens are stored securely and deleted when you log out, revoke access, or when the session expires. We only retain necessary data required for the bot and dashboard to function properly.
5. Data Sharing
- We do not sell or rent any user data.
 - We may share limited technical data with trusted service providers (e.g., hosting and database providers) strictly for operational purposes.
 - We may disclose information if required by law, regulation, or legal process.
 
6. Your Rights
You have the right to access, modify, or delete your personal data at any time. To make a request, contact us at support@superlog.online. We will respond to all verified requests within seven (7) business days.
7. Policy Updates
We may update this Privacy Policy periodically to reflect system or legal changes. Any significant updates will be announced on this page. Continuing to use our services after updates indicates your acceptance of the new terms.
8. Contact Information
If you have any questions, concerns, or complaints regarding your privacy or data protection, please contact us at support@superlog.online.