YAGPDB data processing annex
The Art. 28(3) specifics for our YAGPDB instance: what it processes for your server, who else touches it, and when it is deleted.
This applies alongside the general terms of service and privacy policy. Where they differ on a point about YAGPDB specifically, this page wins.
What this annex is
The Art. 28(3) specifics for our YAGPDB instance. It is part of the data processing agreement, which carries the obligations, and it applies to every server that adds the bot.
Nature and purpose of the processing
Running a moderation and utility bot for your Discord server: carrying out the features you switch on, keeping the records they need, and showing them to your moderators in Discord and in the dashboard.
Categories of data subjects
- Members of your server, and anybody who writes in it.
- Your moderators and administrators, including who changed which setting in the dashboard.
Categories of personal data
Discord ids, usernames, nicknames and avatars; message logs your moderators save; warnings, mutes and their reasons; automod hits; executed commands with their text; nickname history; reputation and its log; verification sessions and verified members; role menu choices, reminders, event sign-ups and tickets; data your custom commands store; and aggregate server statistics.
Special categories
Not sought. Message logs and moderation reasons are free text and can contain anything.
Processing operations
Collection from Discord, storage, display to your moderators, the features' own actions (for example removing a message or assigning a role), and deletion.
Sub-processors
- IONOS SE, Elgendorfer Straße 57, 56410 Montabaur, Germany: the server in Germany on which the bot, its database and the dashboard run.
- Google: reCAPTCHA on the verification page, only where your server uses verification; it receives the member's IP address and browser data. Transfers to the United States rest on the EU-US Data Privacy Framework.
No others: no analytics, no error reporting service and no AI provider. Discord is the source of the data rather than a sub-processor.
Retention
Message logs are deleted 30 days after they were saved. Everything else your server holds in the bot is kept while your server uses it and deleted 30 days after the bot leaves your server, together with the server's configuration. If the bot rejoins within those 30 days, nothing is deleted. These periods are part of your instructions to us. Copies in backups expire within 90 days.
On termination
Removing the bot from your server ends the processing; the 30 days above then run. As set out in the general agreement, you can ask for an export within them.
Versions of this document
- 2026-10-03 in force since 3 October 2026