Privacy Policy
Last updated October 5, 2026
How Equinox™, a Discord bot, handles information about the people and servers that use it.
What Equinox Keeps
Everything belongs to one server, except dashboard preferences and sign-ins, which belong to the person.
| What | Details | Why | How Long |
|---|---|---|---|
| Server Settings | How each server's staff set Equinox up on the dashboard: features, channels, roles, messages, rules, word lists, and an image or a banner they uploaded for the bot. | To run the features the server turned on. | Until the server changes or erases them. |
| Activity Counts | For each member: how many messages they sent (not the messages), in which channels and at which hours, voice minutes, reactions, active days, first and last seen; and for each channel, how many messages were sent. Emoji use is counted per emoji, not per member. Where a server follows what happens to new members: when each joined, got through verification, first wrote something and left (times only, for 90 days). | Analytics, leaderboards, levels and activity roles. The number of days a member was active also decides how much their time in a server counts in their favor in threat detection's risk score. | Until the server erases it, or the member asks for it to be deleted. A member can also ask for it to stop being counted. |
| Invite Tracking | Which invite each member joined through and who made it, and whether they later left, were kicked or were banned (and by whom). Staff who can see both the Members and Invite Tracking pages see who brought whom into the server; who kicked or banned someone only shows to staff who can see moderation. | So staff know who brought in a raider or scammer, and how people came to the server. It stays within the server. | Until the member asks for it to be deleted, staff delete the invite on the Invite Tracking page, or the server erases it. |
| Levels, Coins and Rewards | XP and level, coins and shop items, reputation and who gave it, achievements. | The engagement features the server turned on. | Until the member asks for it to be deleted or the server erases it. |
| Things Members Set Themselves | Birthday (month and day), reminders, highlight words, AFK note, rank card color, staff name, dashboard preferences (theme and layout, kept once for everywhere). | The personal tools each member chose to use. | Until the member removes them or asks for them to be deleted. |
| Moderation Records | Cases and warnings with their reasons, bans and timeouts, notes staff write, roles remembered for members who leave (when the server turns that on), who sent each confession (so staff can act on abuse), ModMail blocks, staff asks for power roles with their reasons and who approved them, dangerous permission changes undone and who decided on them, and for each staff member a count of the actions they take and the hours they are active (counts only, never messages), to spot a hacked staff account. | So staff can moderate consistently and keep the server safe. | Until staff delete them; remembered roles for 90 days. |
| Safety Records | Risk scores and the signals behind them (for example account age, a flagged message, a report), copies of a member's recent messages kept for review, fingerprints of banned accounts (names, profile picture and how it looks, the invite they used and up to 15 of their last messages) to spot them returning, AI review results (with short quotes from the messages they point to), the watchlist, security events, and incident timelines and drill results. | Threat detection: raids, scams, hacked accounts and banned members coming back. Staff can download what is kept on one account to report it to Discord's Trust & Safety team; Equinox never sends it itself. | Message copies for 30 days; a risk record 120 days after its last signal unless the member is on the watchlist; fingerprints of the latest 500 bans; daily counts for 180 days; the newest 30 incidents and drills. |
| Equinox Threat Network (every server) | Accounts Equinox's own detection catches in any server it is in (posting malware, known scam sites or account-stealing tricks, a hacked account's scam spree, a raid of look-alike accounts): the account's Discord ID, what it was caught for, the kind of evidence (site names, file fingerprints, what the detection saw), in which server and when; for scammers and raid accounts also its profile picture's ID and a fingerprint of how the picture looks, when the account was made and coarse facts about it when it joined (its age band, whether it had a picture, the style of its name, Discord's spam flag). Accounts Equinox staff add by hand, with what they saw. For everyone else who joins a server Equinox is in, only counts of those same facts, never who they belong to. Servers see what an account was caught for and with what kind of evidence: never in which servers, and never names or messages. Every change Equinox staff make (who made it, to which account or server, and why) is recorded so they can check each other's work. | So a threat caught in one server is recognized in every other, and newcomers who look like threat actors are scored. Hacked accounts are kicked from every server Equinox is in unless its staff turn that off, and are told why and how to appeal; each server's staff choose what else happens. Server staff can't add or remove anyone; people appeal in Equinox's Discord server. | Hacked accounts 3 days after they were last caught, raid accounts 180 days, scammers and accounts Equinox staff added a year, and the record of Equinox staff's changes a year. Only Equinox staff can take an account out sooner: contact the operator (below). The counts have no one in them and are kept. |
| Equinox's scam intel (every server) | Fingerprints of what Equinox checked for scams, never the pictures, messages or who posted them: how pictures look (a 256-bit number) that the AI found to be scams or found fine; the wording of messages Equinox was sure were scams, with links, numbers and mentions left out; and filter-dodging spellings the word filter asked the AI about, as a hash (with the slur, for the ones hiding one). | So a scam is recognized the next time it appears in any server: caught at once, without asking the AI again. | Scam pictures a year, scam messages 180 days, pictures found fine a week, spellings 90 days (slurs a year). Equinox staff's corrections (something marked not a scam) 5 years. Only Equinox staff can change or remove any of it; servers can't. |
| Checked Files and Sites (every server) | What VirusTotal answered about a file's fingerprint or a site's name, and when it was asked. Never the file, the link, the message, the server or who posted it. | So a file or a site is looked up once: the answer is used for every server afterward, whoever posts it next, and nothing is asked again. | A week; a day when VirusTotal didn't know the file or site. |
| A Server's Own Key | A VirusTotal API key, when a server's staff choose to give Equinox one of their own, with who added it and when. It is kept encrypted, never shown again on the dashboard, and left out of the server's data export. | So that server's lookups use its own VirusTotal account. The key is only ever sent to VirusTotal. | Until the server's staff remove it, or the server's data is erased. |
| Known Bad Servers (every server) | Servers used for scams, malware, hacking, raids, leaked content or cheats: their ID, name and earlier names, the invite and server tag seen, the type and why. Equinox finds scam servers from invites inside scams its detection caught; it brings in outside lists of servers (phish.gg's list of scam servers, Warden's old list of FiveM leak and cheat servers), which name servers, never people; Equinox staff add others. Accounts tied to them: by Equinox, someone who invited people to one in a caught scam, made an invite to one (an invite names who made it), or shows one's server tag next to their name (only its members can); by their own server list, someone who linked their account and is in one; by Equinox staff, its owners or staff, with the evidence. From invites posted in servers Equinox is in, it also notes servers whose name or description look like scams, hacking, leaks or cheats, for Equinox staff to confirm or turn down: only the server, never who posted it. Equinox never reads other servers' member lists. | So servers are told when someone posts an invite to one, or when someone tied to one joins or is found there, and can act on it. | Servers Equinox found are kept a year after they were last seen, servers from an outside list while the list has them, and servers Equinox staff added until they take them out (ask the operator, below). Ties from a server tag or an invite someone made are kept 180 days after Equinox last saw them; other ties until Equinox staff take them out. Suggested servers go after 90 days without being seen. |
| Linked Accounts (people who choose to link) | When someone links their Discord account (with /link, or when a server checks new members' servers before verifying them), Discord's own consent screen asks them to let Equinox see which servers they are in. Equinox reads that list once, compares it with the known bad servers, and keeps only the matches (as ties to those servers) and when they linked and how many servers were checked. The list itself is never kept, and the access Discord gives is revoked straight after. | To tell a server's staff when someone is in a known scam, malware, raid, leak or cheat server. | When they linked: a year (linking again starts it over). The ties: like the known bad servers. Neither goes with a member's other data when they ask for it to be deleted: they are safety records, and only Equinox staff can take them out (ask the operator, below). |
| Security Ledger | A tamper-evident copy of each security event and moderation case: when, what, who it was about and who did it, chained so changes can be detected. | So records deleted or changed to cover someone's tracks are caught. | 180 days. |
| Server Log | What happens in the server: deleted and edited messages with their text, joins and leaves, role and name changes, voice, bans and timeouts, and changes to channels, roles and settings with who made them. Optionally, pictures from deleted messages. | The server's own record of what happened, searchable on the dashboard. | 7 to 90 days, as the server chooses (30 by default). |
| Tickets, ModMail, Applications and Community Tools | What members send in tickets, ModMail conversations, applications and forms, confessions, suggestions, vouches, polls and giveaway entries, and staff decisions on them; where a server checks applications for answers written by an AI, which long answers were pasted in and how fast; transcripts of closed tickets and ModMail, of the private threads where staff discuss a ticket or an application, and of channels staff choose to keep, with the pictures posted in them (saved again as smaller pictures, without their hidden details such as where a photo was taken) unless the server turns that off. | The support and community features the server set up. | Transcripts for 30 days up to for good, as the server chooses (a year by default); the rest until the server deletes it. |
| Server Backups | The server's roles, channels and permissions, and which members have which role (unless the server turns that off). | To rebuild the server after a nuke or mistake. | The newest 14 by default (up to 30). |
| Dashboard Sign-ins | Your Discord ID, username and avatar from Discord (the identify permission only: no email, no server list), whether your Discord account has two-factor turned on, a random sign-in token stored only as a hash, the device name, and a security log of sign-ins and refused requests with network addresses, and when you last used each server's dashboard (shown to its staff on the Staff Roster). If a server asks for an authenticator app: the key your app uses for that server (encrypted) with when it last gave a right code, and which of your browsers gave a right code (a random token in a cookie, stored only as a hash), so it is not asked for again there for as long as that server lets a code count. | To let staff sign in to the dashboard and to protect it. | A sign-in ends after an hour unused and a day at most, and a browser forgets your code after a day (or the time the server chose instead, 30 days at most) or when you sign out; the security log keeps its latest 2,000 events; two-step keys until they're reset, and when you last used a dashboard until you ask for your data to be deleted. |
What Equinox Doesn't Keep
- Passwords or login details. The dashboard signs in through Discord and only asks who you are.
- Email addresses, phone numbers or payment details.
- Online status and activities: Equinox doesn't use Discord's presence data.
- Messages in general. Only these are kept: deleted and edited messages in the server log, a member's recent messages while threat detection reviews them (and a few of a banned account's last ones), what is sent in tickets, ModMail, applications, forms, confessions and suggestions, and channels staff save as transcripts.
- Anything from one server combined with another server's data to learn about a person, apart from the Equinox Threat Network: accounts Equinox's own detection caught (malware, scam sites, account-stealing tricks, hacked accounts, raids), recognized in every server Equinox is in.
How It Is Used
Only to provide the features each server turns on, as described on the dashboard. Nothing is sold, used for advertising, given to data brokers, or used to build a picture of anyone across servers. Improvements to Equinox only ever use counts that can't be traced to a person. AI features give suggestions to staff; decisions stay with people.
Who Else Receives Anything
- OpenRouter (the AI service for everyday checks): In every server, for the AI checks its staff left on, and only when Equinox's own rules can't decide: names of joining accounts; a member's recent messages and risk signals, for a safety review; messages the word filter can't decide on; a new member's messages beside banned accounts' names and messages, to spot a banned member coming back; and application and vouch answers with the people's names, account age and risk level. OpenRouter passes each question to a company that runs the AI model. Equinox only lets it use companies that don't train AI models on what they are sent (some keep it for a limited time to prevent abuse); a question no such company can take is not sent. Equinox never uses message content to train AI models.
- Anthropic (the AI service for deep research): Only in servers with Equinox Premium, for the features their staff turned on or asked for: for a threat profile, what the member posted in the server at any date (their messages, and up to six of their pictures) with their risk signals; pictures checked for scams; messages summed up by /catchup; and security summaries staff ask for. Where the everyday service above is not in use, the checks listed under it go to Anthropic instead, in servers with Premium. Sent under Equinox's agreement with Anthropic, whose commercial terms don't allow training models on this data. Equinox never uses message content to train AI models.
- Cloudflare (1.1.1.1 for Families, its malware-blocking DNS resolver): The names of sites in links people post, or check with /checklink, that Equinox's own lists don't know: an ordinary DNS lookup, made over HTTPS. Never the link itself, the message or who posted it. Each server's staff can turn this off. Asked whether its resolver blocks the site as malware or phishing. Cloudflare commits not to sell or share its resolver's data or use it for advertising, and to delete its logs within 25 hours.
- Control D (its free malware-blocking DNS resolver): The names of sites in links people post, or check with /checklink, that Equinox's own lists don't know and Cloudflare's resolver doesn't block, unless the site is a widely known one: an ordinary DNS lookup, made over an encrypted connection. Never the link itself, the message or who posted it. Each server's staff can turn this off. Asked whether its resolver blocks the site as malware or phishing. Control D says it doesn't log or keep the lookups its free resolvers answer.
- DNS4EU (its protective DNS resolver, run for the European Union): The same site names, asked the same way and at the same time as Control D. Asked whether its resolver blocks the site. It blocks many kinds of sites, so its answer only decides whether the site is looked up on VirusTotal. DNS4EU says the address a lookup comes from is made anonymous before anything is logged, and that it handles data under EU data protection law.
- VirusTotal: Fingerprints (SHA-256) of posted files that could carry code, and the site names in links (posted, or checked with /checklink). Never the files, the messages or who posted them. Equinox also shows links to VirusTotal's own pages about a file's fingerprint or a site; opening one is that person's own visit to VirusTotal. Looked up to warn about malware and scam sites.
Equinox also downloads public information, sending nothing about anyone, from:
- FishFish and Sinking Yachts: lists of known scam sites
- GitHub: more lists of known scam and malware sites that are kept there (Phishing.Database, MetaMask, Scam Sniffer, HaGeZi, Destroylist, Validin and smaller lists of Discord, Steam, fraud, stalkerware and DDoS-for-hire sites), the names IP loggers use, fingerprints of malware that researchers reported (TweetFeed), and Warden's old list of FiveM leak and cheat servers
- Polkadot and CERT Polska: their lists of known scam sites
- Majestic: the most linked-to sites on the web (the Majestic Million), which the wider lists must never flag
- abuse.ch MalwareBazaar, URLhaus and ThreatFox: fingerprints of known malware, and sites known to serve it
- phish.gg: a list of known scam servers
- GamerPower: free game giveaways, for the Feeds module
- Twitch: whether streamers a server follows are live
- Bluesky: public posts of accounts a server follows
- Google Sheets: a server's own spreadsheet, read only, when it sets one up
- Feeds a server adds itself.
Equinox runs on Discord, so Discord's privacy policy also applies. Data is shared otherwise only when the law requires it.
Your Choices
- See what is kept: use
/privacyin any server with Equinox. - Have your data deleted: ask the operator (below), who checks that the request is yours. That removes your activity counts, which invite you joined through, when you joined and first wrote (where a server follows that), levels and XP, coins and items, reputation and who you gave it to, achievements, birthday, reminders, highlight words, AFK note, rank card color, staff name, dashboard preferences, sign-ins, when you last used a dashboard, two-step sign-in keys and the codes your browsers remember, in every server.
- Stop your activity being counted: ask the operator (below). Equinox then stops counting your messages, voice time and reactions, and the XP and coins chatting earns, in every server.
- What stays with each server: moderation and safety records, the server log, and what you sent in tickets, ModMail, applications, forms, confessions, suggestions and vouches. These are the server's own records; its staff can delete them, most expire as described above, and you can ask the operator (below), who reviews each request.
- What Equinox keeps for every server: the Equinox Threat Network's record, if Equinox's detection caught your account posting malware, scam sites or account-stealing tricks, while hacked, or in a raid, or tied it to a known bad server, and when you linked your account and what it matched. It expires as described above; no server can change it, and only Equinox staff can take an account out sooner: ask the operator (below), who reviews each request.
- Servers: administrators can erase all of their server's data from the dashboard. When Equinox is removed from a server, everything kept for it is erased 30 days later.
- If Equinox stops running, its data is deleted.
Security
Data is kept in a database that can't be reached from the internet. What members write, the records kept about them, transcripts and pictures are encrypted in that database, and so are keys servers add; the IDs and times used to find records are not. The dashboard needs a Discord sign-in and the right permissions in the server, and every change is logged. If data is ever reached by someone who shouldn't have it, the operator will tell the people affected and Discord.
Children
Discord requires everyone to be at least 13 (older in some countries). Equinox isn't meant for anyone younger. In servers that use AI threat analysis, staff are told when a member says they are under 18, so they can check.
Changes
When what Equinox keeps or shares changes, this page changes first and its date moves.
Contact and Reports
The person running this copy of Equinox hasn't added a contact yet. Until then, ask the staff of a server that uses Equinox.
Use it to ask about your data, to have it corrected or deleted, or to report a problem with Equinox or something it posted.