Privacy Policy
Last updated: July 12, 2026
This Privacy Policy describes how Arken Bot (“we”, “our”, or “us”) collects, uses, and protects information when you use our Discord bot and web dashboard at arkenbot.app. By using Arken Bot you agree to the practices described here.
1. Information We Collect
We collect only the minimum data needed to operate the bot:
- Discord account data — your Discord user ID, username, and avatar, obtained via Discord OAuth when you log in to the dashboard.
- Guild (server) data — server IDs, channel IDs, role IDs, and configuration settings entered by server administrators.
- Message metadata — message IDs and timestamps used for features such as starboard, scheduled messages, and moderation logs. We do not store message content.
- Moderation records — warnings, bans, kicks, and case notes created by server moderators.
- XP and leveling data — per-user XP totals and level history within each server.
We do not collect payment information, email addresses (unless voluntarily provided for support), or any data from users who have not interacted with the bot in a server where it is active.
3. YouTube Data
Arken Bot uses the YouTube Data API v3 to power our YouTube live stream notification feature. Our use of YouTube data is governed by the YouTube Terms of Service and Google's Privacy Policy.
What we access: We request only public video metadata — specifically video title, live broadcast status (liveBroadcastContent), and thumbnail URL — using the snippet and liveStreamingDetails resource parts. We do not request the statistics resource part and do not store, display, or process view counts, subscriber counts, like counts, or any other YouTube statistics. We do not access private videos, upload videos, manage YouTube accounts, or read any user's YouTube account data.
No OAuth: We do not request YouTube OAuth scopes. All YouTube API calls are server-side requests using an API key against publicly available video data.
Data refresh cadence: Our bot polls the YouTube Data API v3 every 5 minutes per configured alert. Each poll fetches fresh data from YouTube's servers; we do not cache API responses between polls. When a live stream ends, the stored video ID is cleared within the next poll cycle (within 5 minutes). As an additional safeguard, any stored YouTube video ID that has not been cleared within 30 days is automatically purged from our database.
Data stored: We store only a single YouTube video ID per configured alert, used solely to prevent sending duplicate notifications for the same livestream. This is a plain identifier string; it is not a statistic. It is stored until the stream ends (typically hours), deleted when the alert is removed by a server administrator, deleted when the bot is removed from a server, and automatically purged after 30 days in all cases.
No redistribution: YouTube data is used only to trigger a Discord notification embed containing the video title, thumbnail, and link. We do not store, cache beyond the current poll cycle, or redistribute YouTube media or content.
You can revoke Arken Bot's access to any server configuration at any time by removing the bot from your Discord server or deleting your alert configurations via the dashboard. To request deletion of all data associated with your server, contact us at support@arkenbot.app.
4. Reddit Data
Arken Bot uses the Reddit Data API to power our Reddit feed notification feature. Our use of Reddit data is governed by the Reddit Data API Terms and Reddit's Privacy Policy.
What we access: We fetch only public post metadata — post ID, title, permalink, and author username — from the newest posts of subreddits that server administrators choose to follow. We do not access private communities, direct messages, votes, or any Reddit account data.
No user accounts: All Reddit API calls use application-only OAuth credentials. We never request access to any user's Reddit account, and no Reddit login is ever involved.
Data refresh cadence: Feeds are polled every 5 minutes. Each poll fetches fresh data directly from Reddit; responses are not cached between polls.
Data stored: We store only the ID of the most recently notified post per configured feed, used solely to prevent duplicate notifications. It is deleted when a server administrator removes the feed or the bot is removed from the server.
No redistribution: Reddit data is used only to trigger a Discord notification containing the post title, a link back to Reddit, and the author's public username. We do not store, archive, or redistribute Reddit content.
5. Monday.com Data
Arken Bot can receive webhook notifications from monday.com when server administrators connect a board. Use of this feature is subject to the monday.com Terms of Service and Privacy Policy.
What we receive: Board event payloads that monday.com pushes to a unique webhook URL configured by a server administrator — item names, board and group identifiers, column changes, and the numeric ID of the user who made the change. Payloads are processed transiently to build a Discord notification and are not stored.
Optional API token: Administrators may provide a monday.com API token to display user names instead of numeric IDs. The token is stored server-side, is never exposed through our API or dashboard, is used exclusively to look up display names, and is deleted when the administrator removes it or deletes the alert.
Data stored: Alert configuration only — the Discord channel, an optional board label, the event filter, and the optional API token. Resolved display names are cached in memory for up to one hour and never written to disk.
6. Trello Data
Arken Bot can receive webhook notifications from Trello when server administrators connect a board. Use of this feature is subject to the Atlassian Cloud Terms of Service and the Atlassian Privacy Policy.
What we receive: Board action payloads that Trello pushes to a unique webhook URL — card and list names, comments, attachments metadata, and the display name of the member who performed the action. Payloads are processed transiently to build a Discord notification and are not stored.
API credentials: The Trello API key and token an administrator provides during setup are used once to register the webhook with Trello and to read the board's name. They are never written to our database and never stored.
Data stored: Alert configuration only — the Discord channel, the board ID and name, and the event filter. When an alert is deleted, the corresponding Trello webhook is deactivated automatically.
7. AI Features
Some optional Arken Bot features use a third-party AI provider, Groq, to process text. Groq's handling of the data it receives is governed by the Groq Privacy Policy and Terms of Use.
Which features use AI: the /ask and /summarize commands (when a member runs them), the AI triage button in the ticket system (when a staff member clicks it), and AI Moderation (only in servers where an administrator has explicitly enabled it — it is off by default).
What is sent: when one of these features runs, only the text needed for that request is sent to Groq to generate a response — the question you type (/ask), the recent messages in the channel (/summarize), the ticket's details and conversation (ticket triage), or the individual message being checked (AI Moderation). We do not send account identifiers, and no data is sent to any AI provider unless one of these features is actually used.
Opt-in and control: AI Moderation is disabled by default and runs only after a server administrator turns it on in Dashboard → Auto-Mod. The assistant commands and ticket triage run only when a member or staff member chooses to use them.
Storage and training: we do not store the text sent to Groq or the AI's responses beyond delivering the result. An AI Moderation flag is recorded in your server's moderation log in the same way as any other Auto-Mod action. Per Groq's Terms of Use, data submitted through its API is not used to train its models.
Availability: AI features require an API key configured on the bot. Where none is set, these features are unavailable and no data is sent to any AI provider.
8. How We Use Your Data
- To operate bot features configured by server administrators (moderation, leveling, alerts, etc.)
- To display your server's dashboard and settings on the web interface
- To send Discord notifications when configured triggers occur (stream alerts, birthdays, scheduled messages)
- To maintain moderation records and audit logs within your server
We do not sell, share, or license your data to third parties for advertising or marketing purposes.
9. Data Sharing
We share data only with the following service providers necessary to operate the bot:
- Discord — to operate the bot and authenticate dashboard users via OAuth.
- Google / YouTube — public video metadata API calls for stream alert notifications. See Section 3.
- Reddit — public post metadata API calls for feed notifications. See Section 4.
- Monday.com — inbound board event webhooks and optional display-name lookups. See Section 5.
- Trello / Atlassian — inbound board action webhooks; credentials used once at setup. See Section 6.
- Groq — text processing for optional AI features (assistant commands, ticket triage, and opt-in AI moderation), only when those features are used. See Section 7.
- Infrastructure providers — hosting, database, and CDN providers bound by their own privacy policies and data processing agreements.
10. Data Retention and Deletion
Server data is retained only for as long as the bot remains in your Discord server.
Automatic deletion on removal: When Arken Bot is removed from a server, all data associated with that server is deleted automatically within 72 hours — configuration and settings, moderation records and warnings, XP and leveling data, birthdays, alert and feed configurations, integration settings, starboard and suggestion history, and analytics. No request is needed. The 72-hour window exists solely as an accidental-removal safety net: re-adding the bot within that window restores the server exactly as it was; after the window, deletion is permanent and the server starts with a clean slate if re-added.
To request deletion of data associated with your individual user account (for example, your data in servers you no longer share with the bot), contact us at support@arkenbot.app. We will process deletion requests within 30 days.
YouTube-related data (last notified video IDs) is cleared within minutes of a stream ending, deleted when the associated alert is removed by a server administrator, and automatically purged after 30 days as a safeguard. See Section 3 for details.
11. Security
We use industry-standard security measures including encrypted connections (HTTPS/TLS), access-controlled databases, and server-side API key storage to protect your data. No internet transmission is 100% secure, and we cannot guarantee absolute security.
12. Children's Privacy
Arken Bot is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe we have inadvertently collected such information, please contact us immediately.
13. Changes to This Policy
We may update this Privacy Policy from time to time. The “Last updated” date at the top of this page reflects when the most recent changes were made. Continued use of Arken Bot after changes are posted constitutes acceptance of the updated policy.
14. Contact
If you have questions about this Privacy Policy or want to request data deletion, contact us at support@arkenbot.app or join our support server.