Last updated: July 2026
This Privacy Policy describes how DabbleBot ("the bot", "we", "us") collects, uses, stores, and processes data when added to a Discord server. By adding DabbleBot to your server, you acknowledge and consent to the practices described below.
When a member joins, leaves, or is updated in a server where DabbleBot is present, the bot may read:
This data powers automated verification (CAPTCHA), welcome/leave messages, alt account detection, automatic role assignment, time-based roles, server statistics, moderation logging, and server backup features.
DabbleBot may read member presence states (online, idle, DND, offline) and activities (including streaming status) for:
Presence data is read transiently and is not stored off-platform.
DabbleBot may read message content for the following purposes:
All data is stored on the server hosting DabbleBot (a dedicated Virtual Private Server). Data is persisted as JSON files under a restricted data directory. Some features additionally use SQLite databases for larger datasets.
Encryption: All user data is encrypted at rest using filesystem-level encryption (fscrypt with AES-256-XTS). The encryption keys are managed by the operating system kernel's keystore.
| Data Type | Retention Period |
|---|---|
| Server configuration | Until manually changed by server admin |
| Warning records | Until manually deleted by admin or via data deletion request |
| Economy balances and game stats | Until manually reset or via data deletion request |
| XP/leveling data | Until manually reset or via data deletion request |
| Reminder content | Until reminder fires (then deleted) |
| Suggestion text | Until suggestion is resolved or removed by admin |
| Report text | Until manually deleted by admin or via data deletion request |
| Sticky role assignments | Until manually cleared or via data deletion request |
| CAPTCHA verification state | In-memory only, cleared on completion/timeout |
| Anti-spam message cache | In-memory only, maximum 48 hours or 3,000 messages |
| Game session state (games in progress) | In-memory only, lost on bot restart |
| Presence/activity data | Not stored — read transiently only |
DabbleBot sends data to the following third-party services:
| Service | Data Sent | Purpose |
|---|---|---|
| Sightengine API | Message text and images | Automated content moderation (NSFW/profanity detection) |
| Sentry.io | Error metadata and command tracebacks (no message content) | Error tracking and debugging |
| Open Trivia Database | No user data sent (IP address visible to API) | Trivia question sourcing |
| Mojang API | Minecraft playername (user-provided, not Discord data) | Minecraft rank lookup |
No user data is sold, shared with advertisers, or used for commercial purposes.
DabbleBot does not train any machine learning or AI models on user data. Third-party content moderation APIs (Sightengine) are used for inference only — analyzing messages for safety purposes. Message content sent to these services is not used to train models owned or operated by DabbleBot.
Each server owner needs to provide their own Sightengine API key to use the content moderation feature.
Users may request a copy of all data DabbleBot stores about them by contacting the bot owner. The bot supports data export for features that implement the data retrieval interface.
Users may request deletion of their data by:
/db mydata command to initiate the bot's automated data deletion process/db contact command or through the
support channels provided in the bot's help commandThe bot's data deletion process removes user data from most features, including: warning records, economy balances, game statistics, casino stats, heist data, reminders, timezone preferences, server statistics entries, leveling XP/bio/cosmetics (Leveler), captcha verification records (CaptchaGate), Minecraft rank data (NBZHCRank), and quote game data (QuoteGame).
Known limitations: Some features do not fully implement automated data deletion. If you request data deletion, the following data may require manual removal by the bot owner:
If you request data deletion, please mention these specific areas if you want them purged.
Users cannot individually opt out of data collection features. Server administrators can disable any cog to stop all data collection for that feature. Users may leave the server to stop all data collection by DabbleBot.
Server administrators who add DabbleBot to their server are responsible for:
DabbleBot is hosted on a VPS with:
All user data is encrypted at rest using filesystem-level encryption as detailed in Section 2.
We may update this Privacy Policy as features are added, modified, or removed. Server administrators will be notified of material changes through the bot's update notification system.
For data requests, privacy concerns, or questions about this policy, please contact the bot owner through the support channels provided in the bot's help command or server.
DabbleBot is not affiliated with, endorsed by, or sponsored by Discord. Discord is a trademark of Discord Inc.