Privacy Policy
Effective Date: Oct. 11 2024
Version: 1.1
1. Introduction
We take your privacy seriously. This document explains what data we collect, how we collect it, how we use it, and how we ensure that your data is handled in accordance with the General Data Protection Regulation (GDPR) and other relevant privacy laws.
2. Data Controller
The data controller responsible for the processing of your personal data is:
Name: Simon Panzitt
Email: hello@treebot.de
3. Processed Data
By interacting with our services, we may process the following types of personal data:
1. Discord User Data
- Your Discord user ID
- Your last Discord username
2. Interaction Data
- Created data when using the bot
We do not process any personal data that is not necessary for our services to function properly.
4. How We Process Data
We only process your data under the following circumstances:
Direct Discord Interactions: When you interact with the bot by sending commands or messages, we process data.
Website Usage: When you use our website with your browser.
5. Legal Basis of Data Processing
Under GDPR, we process your data based on the following legal grounds:
- Consent: By using the bot, you consent to the processing of your personal data for the purposes outlined in this document.
- Contract: Processing is necessary to fulfill the service provided by the bot and provide you with the features.
- Legitimate Interest: Processing is necessary for our legitimate interests, such as maintaining the security and proper operation of the bot and improving its functionality.
6. Data Retention
We will retain your personal data only for as long as necessary to fulfill the purposes for which it was processed. The retention period may depend on the specific type of data:
- User Data: Retained as long as you use the bot or decide to delete your data.
- Interaction Data: Retained as long as you use the bot or decide to delete your data.
Issuing a delete request which can be done as stated below, securely deletes data from all systems.
7. Data Sharing and Third Parties
We do not share your personal data with third parties, except in the following circumstances:
- Legal Obligations: We may share your data if required to comply with a legal obligation (e.g., in response to a court order or lawful request by law enforcement).
- Service Providers: We may use third-party service providers to host or maintain our infrastructure (e.g., hosting platforms, database services), in which case those third parties will process your data only on our instructions and in compliance with the GDPR.
All third-party services we work with are GDPR-compliant and are inside the EU and the EEA.
8. Your Rights Under the GDPR
As a data subject under the GDPR, you have the following rights:
- Right to Access: You have the right to request access to the personal data we hold about you.
- Right to Rectification: You have the right to request correction of inaccurate or incomplete personal data.
- Right to Erasure ("Right to be Forgotten"): You have the right to request the deletion of your personal data, subject to certain legal obligations.
- Right to Restrict Processing: You have the right to request a restriction on the processing of your personal data.
- Right to Data Portability: You have the right to request that your data be transferred to another data controller in a structured, commonly used, and machine-readable format.
- Right to Object: You have the right to object to the processing of your personal data for certain purposes, such as direct marketing.
- Right to Withdraw Consent: Where we rely on your consent to process your data, you can withdraw that consent at any time without affecting the lawfulness of processing based on consent before its withdrawal.
To exercise right 1 and 5, please issue the command /data export. This will provide you with a fully transparent insight into all data we store and export it in a machine-readable format.
To exercise right 3, 4, 6 and 7, please issue the command /data delete. This will remove any data that we have stored about you immediately from our systems.
To exercise right 2, please change the settings in your Discord account. For information on how to do so, please refer to the Discord docs and privacy policy.
10. Data Security
We are committed to ensuring the security of your personal data. We have implemented appropriate technical and organizational measures to protect your data from unauthorized access, use, disclosure, or destruction. These measures include, but are not limited to:
- Data encryption
- Secure access controls
- Regular security audits
However, please note that no system is completely secure, and we cannot guarantee the absolute security of your data.
11. Complaints
If you believe your data has been processed in a way that does not comply with GDPR, you have the right to lodge a complaint with a supervisory authority in your country of residence or the European Data Protection Supervisor (EDPS).
12. Changes to This Privacy Policy
We reserve the right to update this Privacy Policy at any time. Changes to this Privacy Policy will be listed on this page. Your continued use of the Bot after any changes to this Privacy Policy will signify your acceptance of the updated terms.
13. Contact Information
If you have any questions, concerns, or requests regarding this document or your personal data, please contact us at:
- Email: hello@treebot.de
- Discord: https://discord.com/invite/sYeXvtEr9H