Privacy Policy
This Privacy Policy explains how Sinux Consulting (SSM Registration No. 202503207573), based in Malaysia ("we", "us", "our"), collects, uses, and protects information when you use SinuxMod (the "Service") — an AI-powered Discord bot and admin dashboard for paid communities. By using the Service, you agree to this Policy.
1. Information we collect
When you sign into the admin dashboard with Discord, we receive from Discord (via OAuth) and store:
- your Discord user ID, username, and display name;
- your email address as registered with Discord;
- the Discord servers and roles relevant to the Service — used solely to determine your access permissions.
We do not collect your Discord password, your phone number, payment details, or your private messages.
We also process the following data generated by your use of the Service:
- Discord user IDs, guild (server) IDs, channel IDs, and member display names attached to messages we process.
- The text of messages posted in channels we are explicitly configured to watch — namely, channels under a configured "ticket category", channels added to the trade-signal tracking configuration, and direct messages sent to the bot by configured lead moderators (teaching mode) or by the bot operator (owner DM chat).
- Knowledge base entries, server settings, moderator lists, follow-up timers, promo codes, and other per-server configuration created by you or your moderators.
- An audit log of every dashboard mutation (who changed what, when, before/after values), kept for at least twelve (12) months.
- (Optional) Structured trade records (ticker, action, strike, expiry, price) parsed from configured analyst channels and surfaced on the Sinux Signals analytics dashboard.
- A strictly-necessary session cookie to keep you signed in.
- Basic technical and log data (such as request metadata) as part of normal operation and security.
We do not read messages in channels we are not explicitly configured to watch, even in servers where SinuxMod is installed. We do not collect Discord presence, activity, or voice data, and we do not maintain IP address logs beyond standard hosting telemetry.
2. How we use information
We use information to: authenticate you and manage access; operate, maintain, and secure the Service (including replying to tickets, routing escalations, parsing trade signals, and rendering the admin dashboard); diagnose and improve the Service through aggregated and anonymous logs; respond to your requests; and comply with legal obligations. We do not sell, rent, trade, or share your data with third parties for advertising or marketing purposes.
3. Cookies
We use a strictly-necessary, httpOnly session cookie to keep you signed in. We do not use advertising or cross-site tracking cookies.
4. How information is stored and shared
We do not sell your personal information. We use the following providers to run the Service:
- Discord Inc. — authentication and message delivery (discord.com/privacy).
- Supabase — database and authentication hosting (supabase.com/privacy).
- Vercel — application hosting (vercel.com/legal/privacy-policy).
- Anthropic — AI inference used to classify support messages and generate replies. Per Anthropic's commercial terms, customer data sent through their API is not used to train Anthropic models (anthropic.com/legal/privacy).
- We may disclose information if required by law or to protect our rights, our users, or the public.
5. Data retention
- Knowledge base entries and server configuration are kept until you delete them or until the bot is removed from your server.
- Ticket message state, follow-up timers, and pending teaching questions are kept until the ticket is closed, auto-deleted, or resolved (typically within days).
- Trade events captured by Sinux Signals are kept indefinitely as a structured archive of analyst calls, unless deletion is requested.
- Dashboard audit log entries are kept for at least twelve (12) months for security and compliance.
Removing SinuxMod from your Discord server stops new data collection from that server immediately. Existing data is purged on request (see section 6).
6. Your rights
Depending on your location, you may have rights to access, correct, export, delete, restrict, or object to the processing of your personal data, and to data portability. Because we sign you in through Discord, some information (such as your profile) is controlled by Discord and managed in your Discord account. To exercise your rights with us, contact support@sinuxconsulting.com. You may also revoke the Service's access at any time from your Discord account's "Authorized Apps" settings.
7. Security
We use technical and organisational measures designed to protect personal information, including access controls, encryption in transit, row-level security policies at the database layer, a privileged service-role key that is never exposed to a browser, and an audit log of every mutation. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
8. Children
The Service is not directed to children. You must meet Discord's minimum age requirement (and be at least 13) to use it. We do not knowingly collect personal data from children below that age. If we learn we have, we will delete it.
9. Third-party links and content
The Service may link to or display content from third parties (including Discord). We are not responsible for the privacy practices of those third parties. Your use of Discord is governed by Discord's own Privacy Policy.
10. International users
Sinux Consulting is based in Malaysia. Your information may be processed in Malaysia and in other countries (including where our service providers operate), which may have different data-protection laws than your own. By using the Service, you consent to such processing.
11. Changes to this Policy
We may update this Policy from time to time. We will indicate changes by updating the "Last updated" date above.
12. Contact
Questions about this Policy or our data practices? Contact us at support@sinuxconsulting.com.