Privacy Policy
Effective Date: September 9, 2026
Argus ("the Bot") provides automated moderation and security services for Discord servers, plus an optional web dashboard. This policy explains what data we collect, how we use it, how long we keep it, and your choices.
1. Data We Collect
To function, Argus stores the following in its database:
- Configuration Data: Guild IDs, channel IDs, and role IDs, plus the filter rules, custom word lists, allowed-word lists, and feature settings you configure.
- Moderation Records & Evidence: For each moderation action (warn, timeout, kick, ban, message deletion) we record the involved user IDs, the responsible moderator (or the bot, for automated actions), the reason, the filter that matched, timestamps, and the actions taken. A case may also retain a snapshot of the triggering message and attachment URLs so moderators can review evidence after the original message is deleted. This powers warning thresholds, cases, appeals, and the Analytics dashboard. The username at the time of the action is stored so dashboards render without re-querying Discord.
- Moderator Queue & Reports: If a server uses reports, the join gate, or AI-filter dry run, we store the reported or flagged member IDs and the message snapshot, report statement, score, or gate evidence needed for moderators to review it.
- Scheduled Actions & Restrictions: Temporary bans, verification deadlines, and quarantine roles are stored until they complete, are cancelled, or expire. Restrictive role records may survive a member leaving so the restriction can be restored if they rejoin before it expires.
- Configuration Audit: We record which administrator changed a setting, when, and which fields changed. Configuration values may be included as before/after values in this audit trail.
- Moderator Notes: Free-text notes your staff voluntarily attach to a user via
/note.
- Ban Appeals: If appeals are enabled, the appeal statement a banned user submits, along with their user ID, the ban reason, and the moderator's review decision.
- Server Backups: If you create a backup, a snapshot of your server's structure — roles, channels and their permissions, server settings, emojis/stickers, the ban list, and (optionally) the member list, including member user IDs, nicknames, and role assignments. Backups exist solely to restore your own server.
- Web Dashboard Accounts: If you sign in to the dashboard, we use Discord OAuth2 (
identify and guilds scopes). Your Discord profile (user ID, username, avatar) and server list are kept in a server-side session so you stay logged in.
- Operational & Diagnostic Data: Data about Argus itself rather than about you — which of our servers is currently running the bot, its uptime and memory use, and rotating server-side log files recording startups, shutdowns, errors and gateway disconnections. These logs can incidentally contain identifiers (such as a guild ID) that appear in an error message; they never contain message content, and they are used only to diagnose outages and crashes.
Note on Message Content:
Most message content is processed in memory and discarded. When a message becomes case evidence, a member report, or an AI dry-run queue item, Argus stores a limited text snapshot and attachment URLs so server moderators can review it later. Images themselves are not stored (see Section 4).
2. How We Use Data
We use this data only to operate Argus: enforcing the moderation rules you configure, counting warnings against your thresholds, rendering your dashboard and analytics, processing ban appeals, restoring backups you request, and keeping the service online and diagnosable. We never sell your data or use it for advertising, and we do not use your data to train machine-learning models.
3. Data Retention
- Analytics records auto-expire 180 days after the action.
- Moderator queue items auto-expire after 90 days, and configuration audit records after 365 days.
- Cases and their evidence, warnings, moderator notes, ban appeals, and configuration persist until you delete them, apply a shorter server retention setting where available, or remove the bot. If you enable warning decay, expired warnings stop counting toward your punishment thresholds but the records themselves are not deleted — they remain visible in
/history until removed.
- Scheduled actions and persisted restrictions are removed when they complete, are cancelled, or expire.
- Backups are kept until you delete them or they are pruned beyond the maximum you set (default 10).
- When Argus is removed from a server, that server's database records are deleted after a 30-day grace period unless the bot is re-added first.
- Dashboard sessions last for the life of the login session.
- Node uptime history (used to draw the 90-day bars on the status page) expires automatically after 120 days.
- Diagnostic log files rotate on a fixed size limit — a small number of recent files is kept on the host and older files are overwritten as new ones are written.
- The malicious-link cache lives in memory for one hour and is never persisted.
4. Message Content & Media
Argus scans messages and image attachments in real time to detect profanity, NSFW material, hate speech, and hostile behaviour.
- Text is checked in memory against local word lists and pattern matchers. It is discarded unless it is retained as case evidence, a member report, or an AI dry-run queue item.
- Images are classified by a machine-learning model running locally on our servers — they are never uploaded to a third party and are not stored.
- The Context-Aware (AI) filter — which scores how hostile a message is, and in which of 28 languages — is likewise entirely local. It performs no network calls, downloads no model, and sends nothing to any AI provider. The scoring engine is deterministic; when dry run is enabled, its result and a limited message snapshot are stored in the moderator queue.
- To catch abuse split across several messages, Argus may hold a user's recent messages in memory for a short buffer window (about 15 seconds, capped at 10 messages). The buffer is discarded when the window elapses and is never written to disk.
- If you enable the Message Audit Log, edited or deleted message content is posted to a log channel inside your own server (only when the message is still in Discord's cache). It is not written to our database.
- When a filter opens a case, a limited snapshot of the triggering message and attachment URLs may be retained as evidence as described in Section 1.
5. Automated Decision-Making
Argus is an automation tool: deletions, warnings, timeouts, kicks and bans can be applied automatically, without a human reviewing them first, according to the rules you configure. Server staff choose which filters are on, how sensitive they are, and what each one does; they can review every action in the log channel and the Analytics dashboard, and undo it. Users who believe an action was wrong can raise it with their server's staff, or — where the server has enabled ban appeals — submit an appeal, which a human moderator reviews.
6. Third-Party Services
- Discord: Argus operates on Discord; your use is also governed by Discord's Privacy Policy.
- Google Safe Browsing: To catch scam and malicious links, URLs found in messages are sent to Google's Safe Browsing API to check against its database of unsafe sites. Only the URL is sent — no user identity or message context.
- Top.gg: We periodically send Top.gg our total server count for listing statistics. No user or server data is included.
- Google Fonts: Our public website loads web fonts from Google's font CDN, which receives your IP address as part of that request. The dashboard and the bot itself do not depend on it.
No other third party receives your data. In particular, no message content is sent to any external AI or moderation API.
7. Cookies
The web dashboard sets a single essential session cookie to keep you signed in. It is Secure, HttpOnly, and SameSite=Lax, and is used only for authentication — never tracking or advertising.
8. Data Storage and Security
All data is stored in a secured MongoDB database. Connections are encrypted in transit, dashboard write actions are protected against cross-site request forgery and rate-limited, dashboard writes are restricted to an explicit list of settings fields, and access is restricted to the bot's core systems.
Argus may run on more than one server for redundancy (an active node and a standby that takes over if the active one fails). All nodes read from the same database, so your data is not duplicated into separate stores; only one node drives your server's moderation at any moment. Diagnostic log files are stored on the host running that node.
No system is perfectly secure, and we cannot guarantee absolute security. Argus limits persisted message content to moderation evidence and review workflows and applies the retention controls described above.
9. Your Rights and Choices
| Entity |
Rights & Actions |
| Server Owners |
Remove all data for a guild by removing the bot or requesting a manual wipe. Control which features (analytics, appeals, backups, message log, AI filter) are enabled. |
| Individual Users |
Ask server staff to review or delete moderation records, notes, or appeals about you, or contact us for a copy or deletion of data we hold directly. |
| Dashboard Users |
Log out to end your session, and revoke Argus's access anytime from Discord's Authorized Apps settings. |
Depending on where you live, you may have additional rights over your personal data — access, correction, deletion, and objection among them. Contact us (Section 11) to exercise them; we aim to respond within 30 days. Because Argus identifies people only by their Discord user ID, we may ask you to verify that ID through Discord before acting on a request.
10. Children's Privacy
Argus is not directed to anyone under 13 (or the minimum age of digital consent in your country). We do not knowingly collect data from children below that age. If you believe a child has provided us data, contact us and we will delete it.
11. Changes and Contact
We may update this policy; material changes are reflected by a new effective date at the top of this page. Continued use of Argus after an update constitutes acceptance of the revised policy. For privacy inquiries or data-deletion requests, contact us at contact@superbot.click, or reach the bot owner on Discord (1121394601333370981).