EFFECTIVE: OCTOBER 2, 2026

Privacy Policy

We believe in absolute transparency. This Privacy Policy details the exact data Prism Bot collects, how it is stored across our multi-cloud mesh, and your rights to manage or delete your data.

1. Commitment to Privacy

Prism Bot ("we", "us", or "our") is committed to protecting your privacy. We collect only the minimum telemetry and identifiers strictly required to provide server moderation, anti-nuke security, and Minecraft fleet management.

We do not sell, rent, monetize, or broker personal user data to any third party under any circumstances.

2. Information We Collect

When Prism Bot is added to a Discord server or when you interact with our commands, we collect:

Discord User Identifiers
  • Discord User ID (snowflake)
  • Discord Username & Display Avatar Hash
  • Guild-specific roles and permissions
Minecraft Account Data
  • Minecraft Java/Bedrock in-game username
  • Mojang UUID (resolved via official Mojang API)
  • Account linking verification PIN codes
Guild & Minecraft Telemetry
  • Server ID, channel IDs, configuration settings
  • Minecraft server host/IP, port, and engine type
  • Encrypted RCON ports and credentials (staff only)
Moderation & Audit Records
  • Warnings, kicks, bans, and timeout records
  • In-game punishment reasons, durations, and staff IDs
  • Anti-nuke trigger timestamps for audit integrity

3. How We Use Collected Data

All collected data is utilized exclusively for core functionality:

  • Enforcing server security, anti-raid thresholds, and automated verification challenges.
  • Querying live server pings (player counts, MOTD, TPS) via Minecraft query protocol.
  • Synchronizing linked Minecraft accounts with Discord roles via DiscordSRV bridge tokens.
  • Maintaining auditable punishment histories for guild staff teams.
  • Authenticating administrators through secure Discord OAuth2 sessions.

4. 5-Cloud Database Mesh Storage & Security

Prism Bot utilizes a segmented cloud database mesh for high availability and tamper resistance:

  • Turso (libSQL Edge): Stores guild settings, player links, and server fleet configurations.
  • MongoDB Atlas: Maintains immutable audit logs and moderation events.
  • Supabase Realtime: Synchronizes real-time status broadcasts across Discord and dashboard clients.
  • Aiven PostgreSQL: Manages high-performance sanction caches.
  • Layerbase: Monitors network health and ping latency telemetry.

All data in transit is encrypted using TLS 1.3. Sensitive credentials (such as RCON passwords and session secrets) are hashed or encrypted using industry-standard AES-256 and JWT algorithms.

5. Data Retention & Right to Erasure (GDPR / CCPA)

Under GDPR, CCPA, and Discord Developer Policy guidelines, you hold full control over your data:

Unlinking Your Account: You can permanently unlink your Minecraft account from Discord at any time by executing /minecraft unlink in Discord or via the web portal.

Server Data Purge: When Prism Bot is kicked or removed from a Discord server, all server-specific configurations, button roles, and verification gates are scheduled for automated deletion.

Manual Data Deletion Requests: To request complete erasure of all records associated with your Discord User ID, email us at support@kibbles.dev with your Discord User Snowflake. Requests are fulfilled within 14 business days.

6. Third-Party Integrations

Prism Bot interfaces with external services solely to fulfill core features:

  • Discord API (discord.com) – Authentication, command dispatch, and member events.
  • Mojang API (api.mojang.com) – Resolving Minecraft usernames to official Mojang UUIDs.
  • Crafatar (crafatar.com) – Rendering 3D Minecraft player head avatars.

Questions regarding our policies?

Contact our legal and data protection team or join our community server for dispute inquiries.