Privacy Policy

Last updated: 2026-08-25Eric is a Discord bot operated from boteric.fr. This policy explains which data the bot and its web dashboard collect, why they are collected, how long they are kept and how you can have them deleted.By adding Eric to a Discord server, the administrator of that server accepts this policy on behalf of the server. Individual members may exercise their rights over their own data at any time using the contact details at the end of this page.

Data we collect :

We only store what is required for the modules enabled by the server administrators to work:
  • Discord identifiers: user ID, server ID, channel ID, role ID and message ID. These are public identifiers provided by the Discord API.
  • Levelling data: experience points, level and the date the entry was created, per user and per server.
  • Moderation data: warnings, with the moderator who issued them, the reason and the date.
  • Server configuration: prefix, language, enabled modules, welcome and verification channels, level roles, the list of words filtered by the auto-moderation module, and Twitch channels being followed.
  • Profile customisation: the background images chosen for level cards, stored on Google Cloud Storage.
  • Dashboard session: an authentication token issued through Discord OAuth2, used to let you manage your servers.

Data we do not collect :

We never store:
  • the content of your messages,
  • your email address or your password,
  • the full member list of your servers,
  • your voice conversations,
  • any payment details.

How message content is handled :

Eric reads message content in memory, at the moment a message is received, and then discards it. It is never written to our database. This reading is required for:
  • recognising prefix commands and their arguments,
  • comparing the message against the list of forbidden words configured by the server, when auto-moderation is enabled,
  • answering a question when a member explicitly mentions the bot, when the AI module is enabled,
  • reading the options of a poll.
When the auto-moderation module triggers a warning, only the forbidden word that matched, which comes from the list configured by the server itself, is kept as the reason of the warning. The original message is not kept.

Third party services :

Some features rely on external providers. Data is only sent to them when the corresponding module is enabled by a server administrator:
  • OpenAI: when a member mentions the bot, the text of that message is sent to generate an answer. When the explicit image detection module is enabled, the image is sent to be analysed. These calls are configured with retention disabled: the request is not kept by the provider, and data sent through the API is not used to train its models. We do not keep a copy.
  • Twitch: the identifier of the channels followed by a server is sent to check whether they are streaming.
  • Google Cloud Storage: the images used for level cards are stored there.
  • Discord: authentication of the web dashboard goes through Discord OAuth2.
We never sell, rent or share your data with advertisers, and we do not use it to train or fine tune any machine learning model.

How long we keep your data :

Data is kept for as long as the bot is used on a server.We do not automatically delete a server's data when the bot is removed from it, and this is a deliberate choice. A removal is very often temporary: server maintenance, an accidental removal by an administrator, a migration, or a change of moderation team. An automatic deletion would, in those cases, destroy the progression and levels accumulated by every member over sometimes several years, along with the whole configuration of the server, with no way to restore them. Keeping the data allows a server that adds the bot again to immediately recover its settings and its members' progression.The data kept in that situation is strictly the data listed above: identifiers and counters. No message content is involved.Data is deleted at any time on request, as described below.

Your rights :

You may ask us at any time to:
  • access the data we hold about you or about your server,
  • correct it,
  • delete it,
  • export it in a readable format.
A server administrator may request deletion of the data of the server they administer. Any member may request deletion of their own personal data. Requests are answered within 30 days, and in practice much sooner.

Security :

Data is stored in a MongoDB database hosted on our own private server. Access is restricted by authentication and limited to the people operating the bot. An automatic backup runs every day. Traffic between the dashboard and our API goes through HTTPS.No system is perfectly secure. Should a breach affect your data, we will inform the administrators of the affected servers as quickly as possible.

Children :

Eric follows the Discord Terms of Service, which require users to be at least 13 years old, or older where local law requires it. We do not knowingly collect data from anyone below that age. If you believe a child has provided us with data, contact us and we will delete it.

Changes to this policy :

This policy may be updated to reflect new features or legal requirements. The date at the top of this page always indicates the last update. Significant changes are announced on our support server.

Contact :

For any question or any request regarding your data:
  • Email: contact@trenderapp.com
  • Support server: https://discord.gg/p3Sj432