Privacy

What Aurora stores, why it stores it, and what you can do about it. This page summarizes Aurora's published data policy; the full per-table list is in the repository's PRIVACY.md.

Who runs Aurora

Aurora is a Discord bot and web dashboard operated by its maintainers. This page does not name a company or legal entity because none is published here, and it is not a legal contract.

What is stored

Aurora stores data per server (a Discord “guild”) so that its features work. Member data is mostly Discord ids with the numbers a feature needs:

  • Moderation and security: cases, warnings, notes, AutoMod strikes, security incidents and quarantine records, with the staff member who acted.
  • Leveling and economy (opt-in): XP, levels, achievements, Aurora Points, ledger entries, purchases and inventory. Numbers and ids, not message text.
  • Support (opt-in): tickets, reports, participants, notes, ratings and transcripts.
  • Community features: verification attempts, suggestions and votes, poll votes, birthdays, giveaway entries, reputation, quotes, AFK status, game statistics and reminders.
  • Server configuration: settings, channels, roles, scheduled and sticky messages, custom commands and the audit log of changes.
  • Dashboard sessions: when you sign in, your id, display name, avatar hash and a snapshot of your server list, for at most 7 days (8 hours idle). Deleted when you sign out.

Message text is not written to the database by the logging feature. Log embeds can show text only when the server has enabled Discord's Message Content intent and the message was still in memory.

Why it is stored

Only to run the features a server switches on: to apply moderation, keep levels and balances, run tickets and giveaways, enforce permissions and keep an accountable history of staff actions.

Export and deletion

  • Export: /data export (or the dashboard's privacy page) gives you your own records as a JSON file only you can see: up to 1,000 newest rows per category and at most 6 MB, with secrets redacted.
  • Delete: /data delete removes your own member data from the tables Aurora lists as deletable and anonymises records that belong to a server (for example the author of a suggestion becomes “deleted”). An open game blocks deletion until it ends.
  • Administrators: /data lookup shows counts only and /data erase removes a member's data on request.

Server-owned records

Some records belong to the server rather than to one member and are retained for accountability: moderation cases, AutoMod and security records, the audit log and support tickets. They are not removed by /data delete; the server's own retention settings, for example for ticket transcripts, apply.

Retention at a high level

  • Finished background jobs are kept for 7 days by default.
  • Bot Control action records are removed by a 180-day maintenance pass.
  • Dashboard sessions last at most 7 days.
  • Ticket transcripts follow the server's ticket retention settings.

Third parties

Aurora runs on Discord and uses Discord's API; Discord's own privacy policy applies to what Discord processes. This website sets no cookies and loads no third-party scripts, fonts or analytics.

Questions and requests

Use the data commands above first. For anything else, ask the administrators of the server you are in, or see how to report a security problem.