This Privacy Policy explains what data SunBot ("we", "bot") collects and processes, and how we use it. We comply with GDPR requirements and minimize data collection to what is necessary for the Service to function.
1. DATA WE COLLECT
| Data Type | Source | Purpose |
|---|---|---|
| Discord User ID | Discord API | Player identification, balance, statistics, leaderboard |
| Discord Server ID | Discord API | Economy isolation between servers |
| Telegram User ID | Telegram API | Authentication in the Telegram admin panel |
| Game Data | Bot commands | Balance, transactions, bets, inventory, leaderboard |
| Activity Gameplay Data | Discord Activities (Poker, Roulette, Plinko) | Game sessions in voice channels: bets, results, hand history, provably-fair seeds |
| Feedback & Ratings | In-Activity feedback form | Improving the product; text you submit voluntarily plus your Discord User ID |
| Subscription Data | Whop | Verifying active plan and expiry date |
| Whop Membership ID | Whop Checkout | Confirming and linking online payment to a server |
We do not collect: names, emails, phone numbers, message content (except bot commands), or card details. IP addresses are used transiently in server memory for rate limiting only and are never stored.
2. HOW WE USE DATA
- Providing game features: balance, transactions, bets, leaderboards, inventory.
- Verifying the active plan and granting corresponding features.
- Subscription expiry notifications (private message on Discord or Telegram).
- Abuse protection: anti-spam, bet limits, rate limiting.
- Running games inside Discord Activities (voice-channel Poker, Roulette, Plinko): session state, results, and provably-fair seed verification.
- Service usage analytics (aggregated, anonymous product metrics — e.g. games played per hour; no personal identification).
- Processing feedback and ratings you voluntarily submit through the Activity.
3. DATA STORAGE
Data is stored in a secured MySQL database on Sparked Host servers (EU). Only SunBot administrators have access. Server data is not automatically deleted when the bot is removed — this preserves progress if the bot is re-added. You may request deletion at any time (see section 6).
4. PAYMENTS
Payments are processed through Whop:
- Whop — online payment (card and other methods supported by Whop). Whop independently processes the transaction. We only receive: membership ID, plan, and subscription metadata (server and user ID you link the plan to). Card details and credentials are never shared with or stored by us.
We never see or store your bank card details, CVV, or account numbers. All financial data is secured by Whop.
5. DATA SHARING WITH THIRD PARTIES
We do not sell or share personal data with third parties. Technical interactions are limited to:
- Discord API — source of user and server IDs.
- Telegram API — for the Telegram admin panel.
- Whop — online payment processing.
All three services have their own privacy policies and comply with GDPR requirements.
6. DATA DELETION (GDPR)
You have the right to have your data deleted. There are two ways:
- The /deletedata command in Discord — instantly deletes your game profile on the current server.
- Contact via Telegram — for full deletion of all data across all servers.
Requests are fulfilled within 7 business days. Deleted data includes: balance, transactions, game statistics, inventory, and subscription data.
7. CHILDREN
The Service is not intended for persons under 13 years of age (or the minimum Discord age in your region). We do not knowingly collect data from children. If you become aware that a child has provided us with data, please contact us via Telegram for immediate deletion.
8. POLICY CHANGES
For material changes, we will notify users through our Discord support server or Telegram bot. The "Last updated" date at the top of the page is always current. Continued use of the Service after changes take effect constitutes acceptance.