Privacy Policy
1. Introduction
This Privacy Policy explains how Hubdustry ("we", "us", or "our"), operated by Capy, collects, uses, stores, and protects your personal data when you use the Hubdustry Discord bot ("Bot") and web dashboard ("Dashboard") at hubdustry.com.
By using our services, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use our services.
Data Controller: Capy Contact: [email protected]
2. Data We Collect
We collect the following categories of information:
| Category | Data Points | Source |
|---|---|---|
| Account Data | Discord user ID, username, avatar, email | Discord OAuth2 login |
| Server Data | Server ID, name, icon, channels, roles | Discord API (when bot is added) |
| Member Data | Member IDs, roles, join dates | Discord API (bot membership) |
| Activity Data | Message counts (not content), command usage | Bot event processing |
| Leveling Data | XP points, level, rank per server | Bot leveling system |
| Moderation Data | Mod actions (warns, bans, mutes), moderator ID, reason | Bot moderation commands |
| Usage Data | Pages visited, features used, timestamps | Dashboard analytics |
| Payment Data | Subscription status, plan type | Stripe (third-party processor) |
We do not collect:
- Message content (except temporarily for translation features, immediately discarded)
- Voice/audio data (music streams are transient and never stored)
- IP addresses for tracking purposes
- Sensitive personal information (race, religion, health, etc.)
3. How We Use Your Data
We use collected data for the following purposes:
- Service Operation — Authenticating users, displaying server dashboards, executing bot commands
- Bot Functionality — Processing commands, managing moderation actions, tracking leveling/XP
- Service Improvement — Understanding usage patterns to improve features and fix bugs
- Communication — Sending important service updates or responding to support requests
- Legal Compliance — Meeting legal obligations and resolving disputes
We do not use your data for:
- Targeted advertising
- Selling to third parties
- AI model training
- Profiling or automated decision-making
4. Legal Basis for Processing
Under the General Data Protection Regulation (GDPR), we process your data on the following legal bases:
| Basis | Applies To |
|---|---|
| Consent | Discord OAuth2 login, optional features |
| Contract Performance | Providing bot and dashboard services you requested |
| Legitimate Interest | Service improvements, security, fraud prevention |
| Legal Obligation | Compliance with applicable laws |
You may withdraw consent at any time by removing the bot from your server or disconnecting your account.
5. Data Sharing and Third Parties
We share data with the following third parties, strictly for service operation:
| Third Party | Purpose | Data Shared |
|---|---|---|
| Discord | Platform API (required for bot operation) | Server/member data via Discord API |
| Stripe | Payment processing | Payment details (managed entirely by Stripe) |
| Hosting Provider | Infrastructure | Encrypted data at rest |
We do not:
- Sell your personal data
- Share data with advertising networks
- Provide data to data brokers
We may disclose data if required by law, court order, or to protect the rights, safety, or property of Hubdustry and its users.
6. Data Retention
| Data Type | Retention Period |
|---|---|
| Account data | Until account deletion or service termination |
| Server data | While bot remains in the server |
| Leveling/XP data | While bot remains in the server |
| Moderation logs | Configurable by server admins, default 90 days |
| Translation data | Not stored (transient processing only) |
| Music playback data | Not stored (transient streaming only) |
| Session/cache data | Auto-expires (typically 24 hours) |
When the bot is removed from a server, associated server data is deleted within 30 days.
7. Data Security
We implement appropriate technical and organizational measures to protect your data:
- Encryption in Transit — All communications use HTTPS/TLS
- Encryption at Rest — Database contents are encrypted
- Access Controls — Strict role-based access to production systems
- Regular Updates — Dependencies and infrastructure are kept up to date
- Minimal Data Collection — We only collect data necessary for service operation
While we take reasonable precautions, no method of transmission or storage is 100% secure. We cannot guarantee absolute security.
8. Your Rights
Depending on your location, you may have the following rights regarding your personal data:
| Right | Description |
|---|---|
| Access | Request a copy of your personal data |
| Rectification | Request correction of inaccurate data |
| Erasure | Request deletion of your personal data |
| Restriction | Request limitation of data processing |
| Portability | Receive your data in a machine-readable format |
| Objection | Object to processing based on legitimate interests |
| Withdraw Consent | Withdraw previously given consent at any time |
How to Exercise Your Rights
- Remove the bot from your server to stop data collection for that server
- Contact us at [email protected] with your request
- We will respond within 30 days of receiving your request
For EU/EEA Residents (GDPR)
You have the right to lodge a complaint with your local data protection supervisory authority.
For California Residents (CCPA/CPRA)
You have the right to know what data we collect, request deletion, and opt out of data sale (we do not sell data).
9. International Data Transfers
Your data may be processed in servers located outside your country of residence. When transferring data internationally, we ensure appropriate safeguards are in place, including Standard Contractual Clauses (SCCs) where applicable.
10. Children's Privacy
Our services are not directed to individuals under 13 years of age (or the minimum age required by local laws). This aligns with Discord's own age requirements. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us immediately.
11. Cookies
Our website uses the following cookies:
| Cookie | Purpose | Duration |
|---|---|---|
| Session cookie | Authentication state | Browser session |
| Preference cookie | Language, theme settings | 1 year |
We do not use third-party tracking cookies or advertising cookies.
12. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes:
- We will update the "Last Updated" date at the top of this page
- For significant changes, we may notify users via our Discord server or dashboard
We encourage you to review this policy periodically.
13. Contact Us
If you have questions about this Privacy Policy or wish to exercise your data rights:
- Email: [email protected]
- Discord: Hubdustry Support Server
This Privacy Policy is governed by the laws of Japan.