Legal
Privacy Policy
How Flaux handles data for Discord automation, Chat Rewards, dashboard access and related services.
Effective date: August 2, 2026
Last updated: August 2, 2026
Introduction
Flaux is a Discord bot and web dashboard for server automation, Chat Rewards, analytics and server management. This Privacy Policy covers flauxbot.com, dashboard.flauxbot.com, dev.flauxbot.com where applicable, the Flaux Discord bot and related API routes.
This policy is based on the current repository and the implementation facts available on August 2, 2026. It does not claim that Flaux has completed a formal legal certification or accessibility certification.
Controller And Contact
The repository does not contain a registered company name, postal address, data protection officer or dedicated privacy email. Flaux is referred to here as the Flaux team.
For privacy questions, deletion requests or accessibility issues, use the official Flaux support channel linked in the website footer. Flaux may need your Discord user ID or server ID to locate the relevant records and may need to verify that you are the account holder or an authorized server manager.
Data Provided Through Discord
When you log in, Flaux uses Discord OAuth with the identify and guilds scopes. Flaux receives your Discord user ID, username, display name where Discord provides it, avatar identifier and the list of servers you can manage.
The dashboard stores this login information in a signed first party session cookie so access checks can be performed without storing Discord OAuth access tokens in the browser.
Server Configuration And Automation Data
Flaux stores the configuration a server manager creates, including server IDs and names, selected channel and role IDs, server timezone, dashboard settings, sticky messages, auto replies, auto reactions, scheduled messages, embed fields, selected emojis, webhook configuration and plan status.
Automation execution data is used to operate the bot, show recent activity, diagnose failures, enforce limits and provide server analytics to authorized server managers.
Chat Rewards Information
Chat Rewards may process Discord member IDs, display names or username snapshots, role and channel eligibility, entry totals, entry sources, vote entries, streak state, manual adjustments, exclusions, draw snapshots, winners, claim records, delivery status, rerolls and staff audit actions.
The Chat Rewards message reference model stores message ID, channel ID, timestamp, outcome, rejection reason, entry count and a content hash for repeated message detection. The schema comments state that Flaux does not permanently store the full content of every qualifying Discord message for Chat Rewards.
Technical, Security And Logs
Flaux and its hosting providers may process IP address, user agent, URLs, request timing, cookies sent to hosted routes, error details and operational logs for routing, debugging, abuse prevention and security.
The repository includes console logging in middleware, API routes and bot workers. Logs should not include Discord OAuth access tokens, bot tokens or webhook tokens in normal operation. Hosting log retention is not configured in this repository and requires owner confirmation.
Website Analytics
Flaux runs its own first party website analytics for flauxbot.com, dashboard.flauxbot.com and dev.flauxbot.com. No third party analytics or advertising company is used, and no analytics event is sent anywhere outside Flaux's own MongoDB database.
Analytics is optional and starts only after you allow it in Cookie settings. Before that choice, nothing is initialized, no analytics cookie exists and no page view or event is recorded.
When allowed, an anonymous identifier (the flaux_aid cookie) groups events for internal reporting. Flaux records the page or section viewed, a short list of product events such as Chat Reward created, Automation paused or Premium upgrade clicked, a coarse device category, the referring site's hostname, and broad event labels such as feature or plan. Flaux does not use this identifier, or any other value in website analytics, to look up a Discord user ID, guild ID or channel ID, and does not send Discord message content, embed content, reward descriptions, server names, usernames, access tokens, session cookies, email addresses or full IP addresses to website analytics.
Website analytics records are kept for 180 days and then deleted automatically. Only Flaux staff can view aggregated website analytics, on an internal dev.flauxbot.com page that never shows individual visitor identities, full IP addresses, Discord IDs, emails or usernames, and only ever includes visits and events from users who allowed analytics.
Top.gg Voting Data
If vote rewards are enabled, Top.gg may send Flaux a webhook containing vote information such as the Discord user ID of the voter. Flaux uses that data to grant configured vote entries, prevent duplicate vote grants and keep an audit trail.
Purposes And Legal Bases
Flaux processes data to provide requested bot and dashboard services, authenticate users, enforce Discord server permissions, run configured automations, run Chat Rewards, prevent abuse, protect the service, show analytics to authorized managers and sync Premium status.
Likely legal bases include contract or steps requested by the user for core bot and dashboard functions, legitimate interests for security, fraud prevention, diagnostics and service improvement, legal obligation where applicable, and consent for optional website analytics.
International Transfers
Discord, MongoDB, Vercel, Top.gg and GitHub may process data outside the country where you live. The repository does not verify project hosting region, database region or transfer mechanisms.
Flaux does not claim that all data stays in the European Union. Region and data transfer details require owner confirmation.
Retention
Dashboard sessions last 7 days. OAuth state and post login redirect cookies last 10 minutes. Consent preferences last 6 months. Website analytics events, and the anonymous analytics cookie, last 180 days and are then deleted automatically.
Recent automation activity expires after 60 days. Chat Rewards detailed message references, entry ledger and detailed audit records use plan based retention: Free keeps detailed records for 7 days and Premium keeps them for 365 days. Free draw and winner history is configured as 30 days and Premium as 365 days where the retention helper is used.
Unresolved and undelivered Chat Rewards claims are not automatically deleted by retention cleanup. Some aggregate configuration and analytics records have no TTL in the current schema. Backup and hosting log retention are not configured in the repository and require owner confirmation.
Your Rights And Requests
Depending on where you live, you may have rights to access, correct, delete, restrict, object to processing, request portability and withdraw consent for optional processing. You may also have the right to complain to a supervisory authority.
Discord server members may first contact the server owner because some information is controlled through that server's use of Flaux. Members may also contact Flaux for data handled directly by Flaux. A Discord user ID may be required to locate records.
Data Deletion Process
Removing Flaux from a server stops future processing for that server. Stored configuration can be removed by request from a verified server owner or authorized manager. Chat Reward deletion removes the selected Chat Reward according to the current product deletion workflow.
Flaux does not promise immediate deletion from backups or hosting logs where those systems are controlled by the provider. Backup retention needs owner confirmation.
Security
Flaux uses signed server side session handling, HttpOnly session cookies, Discord permission checks, server side API authorization checks and production Secure cookie settings for necessary auth cookies.
You are responsible for keeping your Discord account secure and reviewing who has Manage Server permissions in your Discord servers.
Children
Flaux relies on Discord accounts and Discord server access. You must meet Discord's requirements and any age or consent rules that apply to you before using Discord or Flaux.
Changes
Flaux may update this policy as the product, providers or legal requirements change. Material changes should be communicated through the website, dashboard or support channel where practical.

