Privacy & Cookies
In short: we only store what's needed to run the bot and dashboard. We don't use analytics, advertising, or tracking cookies, and we don't record or store your Discord messages or voice audio.
This site sets a single cookie, connect.sid. It keeps you signed in between page
loads. It does not track you across other sites, and we don't use it for analytics or
advertising.
This cookie is strictly necessary: it only exists to keep your login session and protect against cross-site request forgery (CSRF) once you sign in. That's why you won't see a cookie consent banner here.
- Expires automatically after 24 hours
- Marked
HttpOnly, so page scripts can't access it - Sent over HTTPS only
We don't use any analytics, advertising, or third-party tracking cookies anywhere on this site.
- When you sign in with Discord: your Discord ID, display name, and avatar, plus the access level assigned to you in each Discord server the bot is added to.
- If you connect Twitch for stream notifications: your Twitch user ID and the OAuth access/refresh tokens needed to receive that data. These tokens are encrypted at rest and are never stored in plain text.
- If you generate a Streamdeck API key: only a one-way hash of it, never the key itself.
- If you request a companion app token: only a one-way hash of it, never the token itself.
- If a connected Twitch channel gets a follow, subscription, resub, gift sub, raid, or channel-point redemption: the event type, the viewer's Twitch display name, and a short detail (for example a raid's viewer count, or a redeemed reward's name). This is shown on the dashboard's live "Recent Events" feed and is the only data we store about Twitch viewers who aren't signed-in users of this site. If you have an active companion app token, the same events for your own channel are also delivered live to your companion app; a redemption's live push additionally includes the reward ID, the redeemer's Twitch login, and any text they entered, none of which we store. Your companion app can also fetch a short history of recent follow/sub/resub/giftsub/raid activity (not redemptions) to catch up after reconnecting, drawn from the same "Recent Events" data described above.
We do not record or transcribe voice channel audio, and we do not store the content of Discord messages or chat logs. A short list of the most recent bot command executions is kept in memory for moderators to review, but it isn't written to a database and is lost on restart.
To provide the service we exchange data with Discord, for login and avatars, and Twitch, for stream notifications you opt into. We don't share your data with any analytics, advertising, or marketing services. We don't use any.
- Login sessions expire 24 hours after being issued.
- Server logs are kept for 14 days, then deleted.
- If your account is removed from the system, your stored Discord/Twitch data is deleted with it, including any encrypted Twitch tokens and your companion app token.
- Streamdeck API keys aren't deleted automatically. Contact a server administrator to have one revoked.
- You can revoke your own companion app token at any time from the dashboard.
- Recent-events activity (follows, subs, raids, redemptions) is capped at the 200 most recent events per connected Twitch channel. Older events are deleted automatically as new ones come in, so this data is never kept indefinitely. It's deleted immediately, in full, if the channel is disconnected from this site.
To request deletion of your data, contact a server administrator.