Back to home

Privacy Policy

Last Updated: March 15, 2026

1. Information We Collect

We collect only the minimum data necessary to operate PopDeck:

Discord OAuth2 Data (when you authorize the bot or log in to the Dashboard):

  • Discord User ID (unique identifier)
  • Username and Global/Display Name
  • Avatar Hash (for displaying your profile picture)
  • Guild Membership & Roles (to determine server-specific features, leaderboards and premium status)

Bot Usage Data (automatically collected):

  • Commands used, timestamps, server IDs (for analytics and anti-abuse)
  • Virtual Asset balances and transaction history (stored in our database)
  • Last channel used (for cooldown expiry notifications, if enabled)

Payment Confirmation Data (from third-party processors):

  • Transaction ID and amount (no card details, emails or addresses are stored by us)

We do not collect: emails, passwords, IP addresses (beyond basic server logs), real names, phone numbers, or any sensitive personal information.

2. How We Use Your Information

  • To authenticate and operate your account in the Bot and Dashboard.
  • To provide leaderboards, profiles, inventories, and server-specific features.
  • To detect and prevent abuse, exploits, spam or ban evasion.
  • To process purchases and grant Virtual Assets/subscriptions.
  • For internal analytics to improve drop rates, economy balance and user experience.

3. Data Sharing & Third Parties

We do not sell, rent or share your personal data with third parties for marketing purposes. We may share limited data only when:
  • Required by law, court order or valid legal process.
  • Necessary to protect the rights, property or safety of PopDeck, its users or the public.
  • With payment processors solely to confirm successful transactions.

4. Data Storage & Security

  • Data is stored in encrypted PostgreSQL databases hosted on secure providers.
  • Connections use TLS/SSL encryption.
  • Access is restricted to authorized developers only (via secure keys).
  • We implement rate-limiting, anomaly detection and logging to prevent unauthorized access.

5. Data Retention

We retain your data for as long as your account is active or needed to provide the Service. Inactive accounts (no activity for >12 months) may be subject to data pruning (cards and balances preserved unless requested otherwise).

6. Your Rights & Data Deletion

You have the right to access the personal data we hold about you and request deletion of your account and all associated data.

To request deletion:

  • Use the /transferdata command to migrate to a new Discord ID (if desired), or
  • Contact support in the official PopDeck server with your Discord ID.

Deletion is permanent and irreversible. All cards, currencies, subscriptions and purchases will be lost. We will process deletion requests within 30 days (or sooner where required by law).

7. Children's Privacy

PopDeck is not directed to children under 13. We do not knowingly collect data from children under 13. If we become aware of such data, we will delete it immediately.

8. Changes to this Privacy Policy

We may update this Privacy Policy from time to time. Changes will be posted here and significant updates will be announced in the official support server.

9. Contact

For questions about these Terms or Privacy Policy, contact us via the official PopDeck support server or directly to @jexel.m or @darik921 on Discord.