ZEvent Bot
← Back to home
FR EN

Unofficial Discord bot

Privacy Policy

Last updated: 23 August 2026

1. Controller and contact

ZEvent Bot is an independent community project. For any question or request about your data, email contact@zevent.app.

2. Data processed by the Bot

When an administrator configures the Bot, we may retain:

  • the Discord server ID, notification channel ID, and server language;
  • subscriptions configured for the server: alert type, the relevant streamer’s public ID, and notification preferences for title or game changes;
  • the Discord ID of the administrator who created the subscription, for configuration traceability;
  • technical delivery information: server, channel, and message IDs, status, number of attempts, any error, and timestamps;
  • the selected calendar source, concert option, and IDs of Discord events created so that they can be synchronised or removed.

2.1 Discord commands

Discord sends the data required to execute a command: command, options, permissions, language, and interaction token. The token is used only to respond to Discord and is not stored in our database.

2.2 Message content

The Bot does not request privileged access to message content and does not retain message content.

2.3 Administration panel

The internal panel uses Discord OAuth. We receive the account ID, display name, and avatar, together with its membership and roles on the official server. We retain the access level granted, a session for which only the cryptographic digest is stored, and, for sensitive actions, an audit log containing the administrator ID, action, target, result, timestamp, and Cloudflare Ray technical ID. Roles are used only to authorise access and are not retained in the session.

The operational inventory also contains names, icons, and approximate member and presence counts supplied by Discord for servers where the Bot is installed. This information is available only to authorised people and is not published through the statistics API.

3. Discord user installations

When you add the Bot to your Discord account, Discord sends the service your ID, username, display name, avatar, and authorisation date. We also retain whether the installation is active or removed, its first and latest installation dates, its last-use date, the last command used, and a command counter to operate and diagnose the user application. Permissions granted by Discord are not retained in our database. If you configure private alerts, we also retain the direct-message channel ID, selected streamers, chosen alert types, whether delivery is active or paused, and technical delivery data required for attempts and error handling.

Commands compatible with a user installation can be run in contexts allowed by Discord, including private messages or a server where the application is not installed. Replies are provided for consultation and are visible only to the person running the command. After installation, the Bot may send one welcome DM offering this configuration. No alert is enabled without an explicit selection. You can list, change, pause, or resume private notifications with the /notifications command.

Discord notifies the service when you remove the application. Data directly associated with your account is then deleted no later than thirty days after removal. Aggregated anonymous statistics cannot be used to reconstruct your profile.

4. Public ZEvent data

The service collects and temporarily caches public information from the official ZEvent website, Team G-Doc, and the Twitch API: participants, live status, audience, channel titles and categories, donation amounts, goals, and calendars. This information is used only to display commands, synchronise Discord events, and send requested alerts.

5. Website, analytics, and fonts

5.1 Cloudflare Web Analytics

The website may use Cloudflare Web Analytics. It measures information including pages viewed, referring website, approximate country, device type, browser, and operating system. Cloudflare describes this service as privacy friendly: it uses no client-side cookies, local storage, or fingerprinting to track visitors across websites.

Query parameters do not appear in Web Analytics dashboards. Cloudflare states that raw, unsampled data is retained for seven days and aggregated statistics are available for the previous six months. See the Cloudflare Web Analytics FAQ.

5.2 Bot statistics

The service uses Workers Analytics Engine to measure executed commands, delivered notifications, technical errors, and public ZEvent audience data in aggregate. The Discord ID of a person using a command is transformed with a cryptographic function and a secret key before being recorded, allowing unique users to be counted. No username, server name, or message content is published through the statistics API.

The home and statistics pages query the public ZEvent Bot API directly from your browser. They receive only aggregate totals and time series: donations, audience, server and user counts, command volumes, and notification volumes. The API is a Worker separate from the Cloudflare Pages website and receives no Discord ID from the browser.

5.3 Google Fonts

The website loads Space Grotesk and Roboto from Google Fonts to reproduce its visual identity. During this request, Google may receive technical information such as your IP address and browser. See Google’s Privacy Policy.

6. Purposes and legal bases

  • provide commands, remember configuration, and send notifications: performance of the service requested by server administrators;
  • secure, diagnose, and improve the reliability of the service: legitimate interest in operating a stable service and preventing abuse;
  • measure overall use and present the website with its visual identity: legitimate interest in improving and presenting the project.

7. Recipients and transfers

Data is processed only to operate the service. It may be sent to Discord to answer commands and publish notifications, to Cloudflare for hosting, security, technical logs, and analytics, and to Google when fonts are loaded. These companies may process data outside the European Economic Area under their own safeguards and policies. We do not sell or rent your data.

8. Retention periods

  • server configuration and subscriptions are retained while the service is in use or until they are deleted;
  • user-installation data is retained while the installation is active, then deleted no later than 30 days after it is removed from Discord;
  • completed or failed deliveries and their technical errors are deleted after 30 days;
  • public source data is refreshed and replaced as collection continues;
  • Analytics Engine events are retained for three months; pseudonymised identifiers required for the unique-user counter are retained while the service operates;
  • statistical series aggregated by minute or hour may be retained after the event to publish its history; they contain no Discord ID;
  • an unused OAuth state expires after ten minutes and an administration session after eight hours; audit-log entries are deleted after 180 days;
  • retention periods specific to Web Analytics are described in section 5.

9. Your rights

Depending on your circumstances and applicable law, you may request access, correction, deletion, restriction of or objection to processing, and portability where applicable. Contact contact@zevent.app, stating your Discord ID and, for a server-related request, its ID. Proof of identity or authority over the server may be requested. You may also complain to your local data protection authority.

10. Security, children, and changes

We apply proportionate technical measures, including cryptographic verification of Discord requests, single-use OAuth state, secure session cookies, CSRF protection, allowlists for test channels, and limited permissions. No online service is completely risk free. The service is not intended for people below the age required to use Discord in their country. This policy may change; its update date will then be revised on this page.

Developed with ♡ by norfair00 · zevent.app
Terms of Service