Privacy Policy
Last updated: September 26, 2026
This policy explains what the Vaqun Discord bot and its web dashboard (together, "Vaqun", "we") collect, why, how long we keep it, and what you can ask us to do with it. It describes what Vaqun actually does today; if that changes, this page changes with it.
What Vaqun collects
From Discord, in servers where Vaqun is installed
- Discord IDs. The numeric IDs Discord assigns to users, servers, roles and channels. Vaqun uses them to tell who and what it is acting on.
- Basic server information. Each server's name, icon, owner's ID, member count and preferred language, so the bot and dashboard can list and configure it.
- Server settings you choose, such as the bot's language, command prefix, Vaqun's nickname, avatar, banner and bio in that server, autoroles and reaction-role messages (which roles members can get, and who set each one up).
- Messages, only in memory. Vaqun reads messages as they arrive to recognise commands and to handle AFK mentions and replies, and
/purgescans recent messages to find the ones to delete. Message content is not stored in Vaqun's database. The one exception is short-lived and in memory only: when a message is deleted, Vaqun keeps its text, attachment links and author's name and avatar in memory for up to 1 hour (at most 20 per channel) so members of that channel can see it with/snipe. It's never written to disk, is lost whenever the bot restarts, and server moderators can wipe it with/clearsnipes. - Media channels. If a server restricts a channel to certain content, Vaqun checks each new message there only for what kind of content it has (files, links, text) and deletes it if it isn't allowed; nothing about the message is stored. To slow down repeat offenders, it counts each member's deleted messages in that channel in memory only for the server's chosen time window (at most 1 hour), and forgets them on restart.
- Server logs. If a server turns them on, Vaqun posts what happens there (for example a deleted or edited message's text, member joins and leaves, moderation actions) to the log channels that server chose. Those entries live in that server's Discord channels; Vaqun doesn't keep a copy. To notice changes, Vaqun keeps some things in memory only for servers with logging on: members' last seen name, avatar and boost status, and invite use counts. These are lost on restart.
- Levels. In servers where leveling is on: your XP, level and how many of your messages earned XP, per server (plus XP for time in voice, if that server turns it on; Vaqun only notes that you were in a channel with others, nothing you said). Never the messages themselves.
- Your profile. What you add on the dashboard: a bio, a link, card settings, a banner image you upload (Premium) and the free items you collect from the shop. Kept until you remove them (or ask us to).
- Command access. If a server blocks specific users from specific commands, their user IDs are stored with that rule until it's changed or removed. Cooldowns and usage limits are counted in memory only and reset on restart.
- Sticky roles. If a server turns this on: the role IDs you had when you left that server, so they can be given back if you rejoin. Used once on rejoin and then deleted; all of a server's are deleted when it turns the feature off.
- AFK status. When you use
/afk: your user ID, the server, the reason you gave and when you went AFK. It is deleted as soon as you send your next message in that server. - Name and avatar history. From the moment Vaqun first sees them: your username, your display name, your avatar (as the image identifier Discord provides) and your nickname in each server Vaqun shares with you. Only changes are recorded, at most 25 entries per kind (per server for nicknames); older entries are deleted automatically. Bots are not tracked. Anyone who can use Vaqun can view this history with
/namesand/avatars. - Last.fm. If you link it with
/lastfm login(you log in on Last.fm's own site and allow access): your Last.fm username and the session key Last.fm gives Vaqun, which proves you own the account, plus the color and/nowplayinglayout you choose. While you're linking, a one-time code tying the request to your Discord account is kept for up to 10 minutes. Vaqun reads only what your Last.fm profile already makes public (what you listen to), through Last.fm's API, and briefly caches those answers in memory. It never asks for your Last.fm password./lastfm logoutremoves the link and the session key; you can also revoke Vaqun's access in your Last.fm settings. While you're linked, Vaqun also keeps a copy of your top tracks and their play counts (refreshed every few hours) for "who knows" rankings, where you appear by your Last.fm username; logging out deletes it. In servers,/nowplayingmessages are recorded (whose, which track) with the 👍/👎 votes people give them, for/lastfm globalboard. - Moderation and configuration records. An audit log of actions taken through Vaqun: settings changes, AutoMod changes, and moderation actions (ban, kick, timeout, purge…) with the moderator's ID, the target's ID, the reason given and details such as durations or how many messages were deleted.
- Plan (Premium) records. Which users or servers have Premium, until when, and which Vaqun staff member granted it.
- Bot-wide bans and staff. If a user or server is banned from using Vaqun: its ID, the reason and who banned it. The IDs of Vaqun's own staff team.
AutoMod rules you create through Vaqun are stored by Discord as part of your server, not in Vaqun's database.
From the dashboard
- Discord login. When you log in, Discord shares your user ID, username and avatar, and the list of servers you're in with your permissions there (the
identifyandguildsscopes only: no email address, no messages). Vaqun keeps this in your login session, together with the access and refresh tokens Discord issues, so it can check which servers you may configure. Your server list is re-fetched from Discord at most every 60 seconds. - Cookies. Three, all necessary for the site to work: your login session (7 days), a short-lived login security check (10 minutes) and your chosen language (1 year). No advertising or analytics cookies.
Why
To run the features you use: answering commands in the right language, moderation, AutoMod, AFK notices, name and avatar history, Premium limits, the dashboard, and keeping a record of who changed what so server staff and Vaqun's team can review actions and deal with abuse.
We don't sell your data, use it for advertising, or share it with anyone other than the service providers below.
How long we keep it
| Data | Kept |
|---|---|
| Dashboard login session and Discord tokens | Until you log out, or up to 7 days; expired sessions are cleaned up periodically |
Deleted messages (for /snipe) |
In memory only, up to 1 hour |
| Media-channel violation counts | In memory only, up to 1 hour |
| AFK status | Until your next message in that server |
| Sticky-role snapshot | Until you rejoin that server, or it turns the feature off |
| Name and avatar history | The latest 25 entries per kind (per server for nicknames); older ones are deleted |
| Last.fm link | Until you run /lastfm logout (your color and layout stay until you ask us to delete them) |
| Audit log | Indefinitely, as an operational record |
| Bot-wide bans, Premium and staff records | Until removed by Vaqun staff |
| Server settings and basic server information | See below |
When Vaqun leaves a server (it's removed, or the server is banned from Vaqun), that server is only marked as inactive: its settings, audit log entries, AFK entries and the nickname history recorded there are not deleted automatically, so they are still there if Vaqun is added back. If you want them deleted, ask us (see "Your choices").
Who processes it for us
Vaqun runs on these providers. They process data on our behalf to provide their service; they are not partners and don't get to use it for their own purposes under our arrangement:
- Discord: the platform Vaqun is built on. Your use of Discord is covered by Discord's own privacy policy.
- Supabase: hosts Vaqun's database.
- Railway: runs the bot.
- Vercel: runs this website.
- Google Fonts: serves the font this website uses; your browser fetches it from Google, which receives your IP address when it does.
Servers may be located outside your country.
Your choices
- You can stop Vaqun from recording new name and avatar history by not sharing a server with it (history is only recorded in servers where Vaqun is installed).
- With Personal Premium you can delete your own name history (
/clearnames) or avatar history (/clearavatars) yourself, straight away. You don't need Premium to have it deleted: asking us (below) works for everyone. - Log out of the dashboard at any time to delete your session and the Discord tokens stored with it.
- To get a copy of, or delete, the data Vaqun holds about you, including your name and avatar history, or a server's data after removing Vaqun, contact us at contact details coming soon. We may need to confirm the request comes from you (or from the server's owner). We may keep records we need to prevent abuse, such as bot-wide bans and the audit log of moderation actions, where that's necessary to protect other users.
Children
Discord requires users to meet a minimum age (at least 13, higher in some countries). Vaqun is meant for Discord users and relies on Discord's age requirements.
Changes
We'll update this page when Vaqun's data practices change, and change the date at the top. Material changes will also be announced where Vaqun's users can see them.
Contact
Questions or requests: contact details coming soon.