1. Data We Collect
Afooqgle collects the following data when you use the bot or its website:
- Discord User ID — your unique Discord identifier.
- Username, Global Name & Avatar — your current Discord display name(s) and profile picture.
- IP Address — your public IP address at the time of verification, together with general locational and network-operator metadata.
- Device Fingerprint — hardware and browser characteristics used for security analysis (such as display, rendering, installed-font, timezone, and other device attribute information), stored as hashes or fingerprints wherever feasible.
- Connected Accounts — we store only a one-way cryptographic hash of any connected account (e.g. Steam, Spotify, YouTube) type and identifier. The raw account identifiers are never stored or exposed, and are used exclusively to help protect member safety.
- Verification Timestamp — when you verified through the bot.
- Session Identifier — an access token used to keep you logged in to the site and dashboard.
- Email Address — Afooqgle does not store or retain your email address. It is used only transiently, when available, to determine whether the address uses a disposable/temporary email domain for risk scoring.
2. How We Use Your Data
Your data is used exclusively for the following purposes:
- Providing Discord verification services (assigning roles, tracking verified members).
- Security analysis and fraud prevention.
- Server moderation tools (kicking, banning, warning members via the dashboard).
- Audit logging for server administrators.
3. Data Sharing
We do not sell your data to third parties. Data is shared only as follows:
- Server Administrators — can view member verification data and security-related information for their own server through the dashboard. Administrators do not see raw IP addresses or device fingerprint details; access to those sensitive fields is limited to the service operator.
- Discord — verification data is processed through Discord's API to assign roles and manage membership.
- Third-Party Security Services — IP addresses and device signals may be checked against external threat and reputation databases (for example IP reputation, proxy/VPN, and abuse databases) for security purposes.
- Payment Processor — if you purchase a paid plan, payment details are handled by the payment processor (PayPal). We do not receive or store your full payment card or account details.
4. Data Retention & Deletion
This section explains what we delete on our own, what we delete when you ask, and what we keep — and the law that allows us to keep it. Nothing in this policy discloses the internal signals, techniques, or methods used in our security analysis.
4.1 What We Delete Automatically
- Message-log content — message content logged for moderation is retained for no more than 7 days, then permanently deleted.
- Login sessions — website and dashboard login sessions expire 24 hours after sign-in.
- One-time confirmation codes — short-lived codes used to link accounts expire within minutes and are then deleted.
- Records for removed members — when a member leaves a server, is kicked or banned, or when the bot leaves a server, that server's verification records for the member are removed from the active record.
- Temporary restriction settings — time-limited settings are automatically cleared when their duration ends.
4.2 What We Delete on Request
You may ask us to delete your data at any time (see Section 8). We honor deletion requests for everyone — not just residents of states with specific privacy laws. Unless we have a reasonable reason to keep it (Section 4.3), we will delete:
- Your verification records and IP history.
- Your device and browser attribute records.
- Alt-tracking and relationship data tied to your account.
- Your enrichment data (nicknames, roles, and membership history).
Deletion is performed without unreasonable delay, and we confirm when it is complete. We may decline or delay a deletion request only when we have a reasonable reason to do so, as described below.
4.3 When We May Keep Data — Reasonable Reasons to Decline
Deletion is the default for everyone. United States federal law and Ohio law do not generally require us to delete adult users' account or security data, and Ohio currently has no comprehensive consumer privacy law imposing such a duty. That does not change our commitment — we still honor deletion requests for all users. We keep data after a deletion request only when we have a reasonable, good-faith reason to do so:
- Known fraud or harm to the community — if an account has a known history of fraud or behavior harmful to the community or the service, or there is an ongoing investigation, we may keep the relevant records for a reasonable period to protect other users and servers. Where a privacy law grants a deletion right, retention for these purposes is expressly permitted — for example Cal. Civ. Code § 1798.145(a) (security and fraud-prevention) and Va. Code Ann. § 59.1-577(B) (detecting security incidents and resisting fraudulent or illegal activity).
- Security logs and audit records — operator audit logs and backups are retained to keep the service safe and recoverable.
- Financial and billing records — purchase, referral, and payment records are kept to maintain accurate financial records and prevent fraud. The payment processor handles card details directly; we do not store them.
- Data we are required to keep — if a law, regulation, or legal process requires retention of a specific record (for example, a response to a lawful request), we keep only the portion required and only for as long as required.
- Aggregated statistics — counts and totals that do not identify any individual may be kept and published.
Breach notification: if a security incident exposes personal information and is reportable under Ohio law, we notify affected individuals without unreasonable delay and, where required, the Ohio Attorney General, as provided by O.R.C. § 1349.19.
Minors: the service is for users 13 and older. We do not knowingly collect data from children under 13. If we learn that we have collected personal information from a child under 13, we will delete it promptly in line with the Children's Online Privacy Protection Act (COPPA), 15 U.S.C. § 6501 et seq., and its implementing rule, 16 C.F.R. § 312.10.
5. Data Security
We take reasonable measures to protect your data, including encrypted at-rest storage of sensitive fields such as IP address histories, and restricted access to the bot owner only. Device and network data is stored as truncated or one-way-hashed values wherever possible. However, no method of electronic storage or transmission is 100% secure.
6. Cookies & Local Storage
The Afooqgle website uses browser localStorage to store your session identifier. This is required for authentication and does not serve any tracking or advertising purpose. No third-party cookies are used.
7. Third-Party Services
The bot uses the following third-party services:
- Discord API — for user authentication, role management, and server interaction.
- External Security Databases — for IP reputation, proxy/VPN, geo-geolocation, and threat analysis (such as IP reputation, IPQualityScore, and AbuseIPDB-type services).
- PayPal — to process payments for paid plans. Payment details are handled by PayPal directly.
Some of the above services are paid/recurring suppliers the platform relies on to provide threat intelligence; they do not receive your account data beyond what is necessary for the security checks described above.
8. Your Rights
You have the right to:
- Request access to the data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your data.
- Withdraw consent for data processing (note: this may prevent you from using verification services).
These rights are available to everyone, regardless of where you live. Residents of states that provide additional statutory privacy rights may also exercise those rights — for example, California residents under the California Consumer Privacy Act and California Privacy Rights Act, Cal. Civ. Code § 1798.100 et seq., and Virginia residents under the Virginia Consumer Data Protection Act, Va. Code Ann. § 59.1-575 et seq., each subject to the exceptions in those statutes (including the security and fraud-prevention exceptions described in Section 4.3).
9. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated revision date. Continued use after changes constitutes acceptance of the updated policy.
10. Contact
For privacy-related inquiries or to request data access, correction, or deletion, please join our Discord server and open a support ticket.