Neui is a Discord security and moderation bot. This policy covers the Neui bot, dashboard, and website, and explains how the project owner handles information connected with those services.
Privacy at a glance
- Neui does not sell personal information or use advertising profiles.
- Ordinary message content is not intentionally stored in Neui’s database.
- Enabled moderation features may send message text and image URLs to OpenAI for classification.
- Files submitted for scanning are sent to VirusTotal and may be shared with its security partners. Do not submit confidential or sensitive files.
1. Scope
This policy applies when you interact with Neui in Discord, sign in to the Neui dashboard, or use the Neui website. Discord and other providers process information under their own policies.
2. Information Neui processes
- Discord identifiers and settings
- Server, user, channel, role, target, and moderator IDs; server names where recorded; command prefixes; enabled protection settings; and verification status.
- Moderation and security records
- Warning reasons and timestamps, anti-raid event types, actors and targets, risk scores, containment state, and summarized raid records.
- Message and image inputs
- Message text and image URLs when an administrator-enabled moderation feature needs to classify content. Neui does not intentionally save the full text of ordinary messages to its database.
- Security scan submissions
- Files, file names, hashes, URLs, or domains that a user intentionally submits to a Neui antivirus command, together with scan results and the requesting user and server identifiers.
- Dashboard sessions
- A Discord OAuth access token and basic Discord profile and server-permission data. The token is kept in a server-side session; the browser cookie contains an opaque session identifier rather than the token itself.
- Operations
- Service-health information, command counts, and focused error or security logs needed to operate, protect, and troubleshoot Neui.
3. How information is used
Neui uses information to provide requested commands, apply the settings selected by server administrators, identify spam or raid behavior, support moderation and verification, return scan results, authorize dashboard access, prevent abuse, and maintain service reliability.
Neui does not sell this information or use it to build advertising profiles.
4. Message and scan content
When Anti Cuss or Anti Nudity is enabled, relevant message text and image URLs may be sent to OpenAI’s moderation API. The result is used to decide whether the configured protection should act on the message.
File, URL, and domain scans happen only when a user submits an antivirus command. Neui sends that submission to VirusTotal and may copy the submission and result to a private operator security channel in Discord for security review and troubleshooting.
VirusTotal states that standard file and URL submissions may be shared with antivirus and security partners. Do not submit files containing personal, confidential, proprietary, or commercially sensitive information.
5. Third-party providers
Neui relies on providers that process information for their own defined purposes:
- Discord provides the platform, API, OAuth login, and operator security channels. Review the Discord Terms and Discord Privacy Policy.
- OpenAI receives moderation inputs only when the related protections are enabled. Review the OpenAI Privacy Policy.
- VirusTotal receives items intentionally submitted for antivirus analysis. Its standard service may share submissions and results with security partners. Review how VirusTotal works before submitting a file.
- Website and infrastructure providers may process standard request information needed to deliver and protect the website. Pages that visibly provide support widgets or forms may also load WidgetBot or Pageclip.
6. Storage and retention
- Anti-raid event telemetry is automatically removed after 30 days.
- Dashboard sessions expire after up to 12 hours and can be ended sooner by signing out.
- Server settings, prefixes, verification records, warnings, summarized raid records, and cached domain verdicts are retained while needed to provide the service or until an authorized deletion request is completed.
- Focused security and operational logs are kept only as needed for security review, troubleshooting, and service reliability.
- Copies handled by Discord, OpenAI, VirusTotal, or another provider follow that provider’s retention practices. Neui cannot guarantee deletion from a third-party system.
7. Controls and data requests
Server administrators can disable individual protections, change settings in Discord or the dashboard, remove Neui from a server, and sign out of the dashboard.
You may request access, correction, or deletion of identifiable Neui data. Depending on the request, the project owner may need proof that you control the relevant Discord account or server. Some information may be retained when reasonably necessary for security, fraud prevention, legal compliance, or resolving a dispute.
8. Security
Neui uses restricted service credentials, encrypted network connections, encrypted-at-rest database storage, access-controlled infrastructure, private database access, and limited operational logging. No online service can guarantee absolute security, and users should avoid sending sensitive information unless a feature clearly requires it.
9. Age requirements
Neui is intended for people who are permitted to use Discord under Discord’s age requirements. If you are not eligible to use Discord, you should not use Neui.
10. Changes and contact
This policy may change as Neui’s features, providers, or legal obligations change. Material updates will be reflected on this page by changing the date and document version shown above.
For privacy questions, use the Neui support server, email hexa@duck.com, or contact Discord user ID 710698624891224135.