This Privacy Policy explains what data Iridex ("we", "us", "the bot") collects when you use the Iridex Discord bot, the Iridex dashboard, or the Iridex homepage, and how that data is used.
1. Data we collect
Depending on how you use Iridex, we may collect and store:
- Discord identifiers: your Discord user ID, username, and avatar, and the IDs of servers, channels, and roles Iridex interacts with.
- Server configuration: settings you or a server admin configure (welcome messages, ticket categories, autoroles, timezone, etc.).
- Activity stats: voice-channel time and message counts per member, used to power features like
/playtimeand the leaderboard. - Moderation records: warnings, temp-role grants, and ticket metadata created through Iridex's commands.
- OAuth tokens: if you log into the dashboard with Discord, we store an encrypted access/refresh token so we can show you which servers you can manage.
- Update DM subscription: if you turn on "Notify me on Discord" on the Updates page, we store your Discord user ID so the bot can DM you when a new update ships.
We do not read or store the content of your regular messages beyond what's needed to count activity (a counter, not the message text) — message text is never stored.
2. How we use this data
Solely to operate Iridex's features: running commands, rendering welcome/leave messages, enforcing temp roles and timeouts, showing your manageable servers on the dashboard, and DMing changelog updates to subscribers who opted in. We do not sell your data.
3. Data retention
Server configuration and activity stats are retained for as long as Iridex remains in your server. If Iridex is removed from a server, its configuration and stats are retained for a reasonable period in case it's re-added, then may be purged. OAuth tokens are deleted when you log out or revoke Iridex's access in your Discord settings.
4. Third parties
Iridex is hosted on Cloudflare (Workers, D1, and Pages) and authenticates via Discord's OAuth2 service. No message or command content is sent to any other third party.
5. Your rights
You can request deletion of your data by contacting the server admin who added Iridex, or by reaching out to us directly. Server admins can remove Iridex at any time to stop data collection for their server.
6. Changes to this policy
We may update this policy as Iridex's features change. Material changes will be announced on the Updates page.