Clovis
Privacy Policy
Clovis is a Discord bot that schedules Destiny 2 raids and dungeons. It is run by an individual developer ("I", "me"). This policy explains what Clovis stores, why, and how to have it deleted. The short version: Clovis only keeps what it needs to run its scheduling features, never sells anything, and you can delete your data at any time with /clovis forget-me.
What Clovis stores
From Discord, when you use Clovis in a server:
- Your Discord user ID, and the IDs of the servers, channels, roles and messages Clovis works with.
- Your poll answers: the days, times and activities you pick, and any per-day time changes.
- Your answers on pickup posts (
/clovis lfg): in, dungeon only or maybe. - Your timezone preference and whether you want reminders by DM, if you set them.
- Your roster sign-ups (joined, tentative or waitlisted) and whether you joined for mechanics or ad clear.
- Server settings chosen by that server's organizers, such as the timezone, default start time and roles to ping.
- Callout maps organizers save: the map's name and the ID of the Discord message that holds the image. The image itself stays in Discord, and deleting that message removes it.
Clovis does not read or store the content of messages people send in your server.
From Bungie, only if a Bungie account is linked with /clovis link:
- The Bungie name and Destiny membership ID of the linked account.
- Whether that account owns each raid and dungeon exotic Clovis tracks, and when this was last checked.
- How many times that account has cleared each raid and dungeon, and its fastest time for each (from Bungie's activity stats), refreshed about twice a day and after runs.
Sign in with Bungie (optional): if you link by signing in on bungie.net, Bungie tells Clovis your Bungie.net account ID, which Clovis uses once to look up your Destiny accounts. Clovis doesn't keep the sign-in token, can't act on your account, and only asks Bungie for basic read access. Your link is marked as verified.
The website (optional): the dashboard at clovisbot.app/app lets you sign in with Discord. Discord tells Clovis your user ID, name, avatar and the list of servers you're in. Clovis uses that once to show the servers you share with it, then revokes the sign-in token: it can't read your messages or act on your account. Your browser keeps a signed cookie with your Discord ID, name, avatar and those shared server IDs for up to 7 days so you stay signed in; signing out deletes it. The site stores nothing new about you. It shows what Clovis already has (clears, fastest times, exotics, titles and run history) to members of the same server, and checks with Discord that you're still a member each time you open a server's page.
Clans: if a server connects its Destiny clan, Clovis stores that clan's ID and name for the server and reads Bungie's public member list to show who's in it.
This information is public on Bungie.net for accounts whose privacy settings allow it. Server organizers can link a member's account on their behalf. Around each scheduled run, and about every 20 minutes in servers that turn on run reports (/clovis reports), Clovis also reads the linked players' recent activity history and post-game reports from Bungie to post recaps of raid and dungeon runs. Recaps are posted in Discord. The raw activity data is not stored; Clovis only keeps the IDs of runs it has already posted, so it doesn't post them twice.
How it's used
Only to provide Clovis's features: tallying polls, suggesting start times, managing rosters, sending reminders, showing who still needs an exotic, announcing exotic drops, and posting recaps. Much of this is shown to other members of the server where you use Clovis, for example your name on a roster or poll, in Discord and on the website. If you turn your titles off (/clovis titles or the website), they're hidden from everyone in both places.
Sharing
- I don't sell, rent or trade your data, and don't use it for advertising.
- Clovis runs on Railway (hosting, United States). The website at clovisbot.app is served through Cloudflare, which handles the connection to your browser. It talks to Discord and Bungie through their APIs, and their own privacy policies apply to data held on their platforms.
- Daily backups of Clovis's database are stored in a private Discord channel that only I can access.
How long it's kept, and deleting it
- Data is kept while Clovis is in use. Old polls and runs stay so that features like "same as last time" and exotic tracking keep working.
/clovis forget-meimmediately deletes your linked Bungie account, timezone, poll answers and roster sign-ups from every server that uses Clovis./clovis unlinkremoves just the Bungie link.- Backups are deleted after 30 days, so deleted data is fully gone within 30 days.
- If a server removes Clovis, its weekly posts stop. A server owner can email me to delete that server's settings and history.
- You can also email [email protected] to ask what's stored about you or to have it deleted.
Security
Data is stored on a private hosted volume and in private backups. No system is perfectly secure, but access is limited to me.
Children
Clovis is meant for people who meet Discord's minimum age requirement. It does not knowingly collect data from anyone younger.
Changes
If this policy changes, the updated version will be posted here with a new effective date.
Contact
Ask in the Clovis support server, or email [email protected].