🤖
CurlioBot
Privacy Policy
Back to docs

Last updated: September 2026

The short version: CurlioBot only stores what it needs to make features work. It does not read your messages, does not sell your data, and does not share anything with third parties. Everything collected is tied to your Discord user ID and the servers you share with the bot.
📥 What data we collect

CurlioBot collects the minimum data required to run each feature. Here is what is stored and why:

  • Discord user IDs and guild IDs - used as primary keys to associate all other data with the correct user and server. These are public Discord identifiers, not personal information.
  • Display names and nicknames - read at the time of XP events to update nickname suffixes. The current nickname is not stored long-term.
  • XP and level data - text and voice XP totals, current level, and rank. Collected to power the leveling system and scorecard.
  • Voice activity timestamps - join and leave times, used to calculate voice XP. The channels you join are noted but message content is never involved.
  • Server join and leave dates - recorded when a member joins or leaves, used by /about member to show tenure and former member status.
  • Who invited them - when a member joins, the bot identifies which invite link they used and records the Discord user ID of the person who created that link. Used by /about member and the top-inviters list in /about server. If two people join at the same moment this cannot be determined reliably and nothing is stored.
  • Birthday (optional) - only if you register it with /birthday set. Day and month only. Never shared outside your server.
  • Steam friend code (optional) - only if you register it with /steam set. Used to generate the Steam friend code overview image for your server.
  • Event attendance records - sign-ups, attendance, and whether you were present during an active event. Used for event recaps and XP bonuses.
  • Kudos history - who gave and received kudos, and when. Used to enforce the once-per-day limit.
  • Member count snapshots - a daily count of server members. Used to generate the member count graph in /about server. No user-level data is involved.
  • Voice room state - active temporary rooms, host assignments, block lists, and mute lists. Cleared automatically when the room is deleted.
  • Bridge relay messages - messages posted in Bridge-subscribed channels are relayed to partner servers via webhook. A reference is stored temporarily to support edit and delete sync, then purged automatically after 30 days. The relayed copies posted in other servers' channels are not under the bot's control and will remain there after that window closes.
🚫 What we do not collect
  • Message content - the bot does not read, log, or store the content of your messages, except for Bridge relay where the content is forwarded as-is and then purged.
  • Direct messages - the bot does not have access to DMs and does not interact with them.
  • Passwords or credentials - never collected under any circumstance.
  • IP addresses or device information - not accessible through Discord's API and not collected.
  • Data from servers the bot is not in - the bot only operates within servers it has been invited to.
🎯 How data is used

All collected data is used exclusively to power bot features within your Discord server. Nothing is sold, rented, or shared with any third party for any purpose. Data is not used for advertising, profiling, or any purpose beyond running the features you see in the documentation.

🕐 Data retention
  • XP, level, and event data is kept for the lifetime of the bot's presence in your server.
  • When the bot leaves or is removed from a server, that server's data is scheduled for deletion.
  • Birthday and Steam data is removed when you use the corresponding clear command, or when the bot leaves the server.
  • Voice room state (rooms, blocks, mutes) is cleared automatically when a room is deleted.
  • Bridge message references are purged after 30 days.
🗑️ Data deletion requests

If you want your personal data removed, reach out via botty@curlio.net or join the support Discord. We will process your request within a reasonable timeframe.

Personal identifiers such as your user ID, display name, and any optional data you registered (birthday, Steam code, inviter record) are fully deleted. Certain aggregated records - such as historical member count snapshots and anonymized XP history entries - may be retained without any link to your identity so that server statistics remain accurate for the rest of the community.

Server administrators can also remove all data for their server by removing the bot. Server data is purged automatically 90 days after removal, unless the bot is re-added before that window closes.

🔗 Third parties

CurlioBot runs on a private server and does not use any third-party analytics, tracking, or data processing services. The only external service involved is Discord itself, whose own Privacy Policy governs your use of the Discord platform.

👶 Children

CurlioBot does not knowingly collect data from anyone under the age of 13. Use of Discord itself requires users to meet Discord's minimum age requirements.

📝 Changes to this policy

If this policy changes in a meaningful way, notice will be posted in the support Discord and pushed to the read-only Botty bridge topic. Continued use of the bot after changes are posted means you accept the updated policy.

✉️ Contact

Questions? Email botty@curlio.net or find us on Discord.

Buy me a coffee