Privacy Policy
What is stored, why, who can see it, and how to have it removed.
The short version
Verifying shares your Roblox username and user ID, and nothing else. Your password is typed on Roblox’s own site and never reaches this service. Nothing is sold, and nothing goes to advertisers.
What is received when you verify
Pressing Verify sends you to Roblox’s own sign-in page. Roblox returns only your user ID and username, using the openid and profile scopes. Not your email address, date of birth, friends, inventory, or account balance.
With Legacy Verification you never sign in at all: you place a one-time code in your Roblox profile description, and the bot reads your public profile to confirm it.
What is stored
- Account link
- Your Discord user ID, your Roblox user ID and username, how you verified, and when.
- Support tickets
- What you write in a ticket, and a transcript kept after it closes.
- Staff records — staff only
- Shift times, leave of absence requests and reasons, promotions and disciplinary records.
- Server activity
- Suggestions and votes, giveaway entries, purchase claims you submit including any screenshot attached, and a count of removed messages in a counting channel.
Why
To confirm you own the Roblox account you claim, to assign roles and set nicknames, to run in-game sessions and staff shifts, and to keep a record of moderation decisions. That is the whole purpose. No advertising profiles are built and no data is sold.
Who else sees it
- Discord
- The bot runs on Discord, so messages and roles necessarily pass through it.
- Roblox
- Only during sign-in, to confirm your account.
- Anthropic — only if that server has enabled it
- Support tickets can have an AI assistant. Where a server has switched it on and supplied its own API key, the text you write in a ticket is sent to Anthropic to generate a reply. Most servers instead use the built-in answer matching, which sends nothing anywhere. Either way, do not put passwords or personal details in a ticket — and if you would rather a human handled it, say so and staff will take over.
- That server’s staff
- Staff can read tickets and staff records for the server they run, as part of moderating it. Staff of one server cannot see another server’s data.
Keeping servers separate
Each Discord server’s configuration and records are stored against that server alone. Any API keys a server provides — for its Roblox game server, or for the AI assistant — are encrypted before being stored, so a copy of the database is not a copy of anyone’s credentials.
Where it is kept
On a private server rented from Hetzner in Germany. Access is limited to the bot’s operator. Traffic to this site is encrypted with HTTPS.
How long
Account links are kept while the link is in use. Ticket transcripts and staff records are kept as a moderation history unless removal is requested. Verification codes and in-progress sign-in states expire within minutes and are deleted once used.
Removing your data
Open a ticket in the Discord server that sent you here and ask. Your account link can be deleted on request. Leaving a server does not delete records by itself.