Bastion emblemBASTIONBY BVNGER

Bastion Privacy Policy

Effective date: September 29, 2026
Operator: William Kurtz, operating as BVNGER ("BVNGER," "we," or "us")
Privacy contact: legal@bvnger.dev

This policy explains how the current Bastion Discord bot, Windows control panel, and locally run Owner Edition licensing API handle information. Bastion is installed and run by a Discord server owner on their own Windows computer. The owner chooses the server settings, who may use staff features, and how long to keep records within their control. BVNGER does not currently operate a hosted Bastion dashboard, subscription service, or customer server backup service.

This policy covers Bastion's handling of information. Discord's own services and data practices are governed by Discord's Privacy Policy. A server owner may have a separate privacy notice for their community.

Information Bastion accesses and creates

Depending on enabled features and Discord permissions, Bastion may access:

Bastion does not currently use advertising trackers or sell Discord data. The Windows app may fetch an image from a URL selected for an announcement preview; that request goes to the host of the selected image.

Why Bastion uses this information

Bastion uses the information above to operate the features the owner enables: tickets, moderation, member reports, onboarding, role selection, announcements, access checks, audit history, diagnostics, and server structure comparison. It exchanges data with Discord to read permitted server activity and carry out requested actions. It does not use Discord message content to train AI models.

For people in regions where a legal basis is required, the basis depends on the activity and the role of the server owner. The owner is responsible for choosing an appropriate basis and providing any required community notice for the features they enable. Contact the server owner about a specific server's use of Bastion. BVNGER can be contacted about this policy at the address above.

Where information is stored and who can see it

The bot token, configuration, moderation, onboarding, audit, backup, snapshot, and crash-report files are stored on the owner's computer, generally under the current Windows user's %LOCALAPPDATA%\BVNG3R folder. The owner controls access to that computer and any copies or exports they make. The current Windows control panel is for the owner; authorized staff may see records in Discord channels that the owner permits them to access. Ticket transcripts are posted to Discord's ticket log channel, with access controlled by the server's Discord permissions. Discord processes data sent through its platform.

The current Bastion software does not automatically upload local Discord server records to BVNGER. The licensing API currently runs locally on BVNGER's computer. If BVNGER later hosts it for customer activation, an updated policy will describe the resulting transfer and retention before that service launches. If an owner sends BVNGER a support request or diagnostic file, BVNGER receives the information they choose to provide and uses it to respond and troubleshoot. Owners should remove tokens and unnecessary personal information before sending files.

We may disclose information we actually receive when required by law or when necessary to address security or abuse. We do not sell Discord API data or share it with advertising networks or data brokers.

Retention and deletion

We expect owners to keep records only while needed for the enabled features or legal obligations and to honor valid deletion requests. A record may also exist in an owner's separate backups or exports, which they must address separately.

Your choices and requests

If Bastion is used in a Discord server you belong to, contact that server's owner or moderators to ask about its settings, obtain a copy of information they control, correct a record, or request deletion. They operate the installation and control its local files and Discord log channels. You may also email legal@bvnger.dev with a privacy question or request; include the server name or ID and enough information for us to identify the relevant operator, but do not send your password or bot token. BVNGER may need to direct you to the server owner because it does not hold the local records.

Where applicable law grants additional rights, such as access, correction, deletion, objection, or complaint to a regulator, those rights remain available. We and the server owner will assess requests under applicable law and Discord's platform rules.

Security and international use

Bastion encrypts the bot token for the current Windows user and uses Discord permissions for access to ticket and log channels. The owner is responsible for protecting their computer, Windows account, Discord credentials, staff permissions, and backups. Other Bastion local records are not encrypted by Bastion. No system is completely secure.

Discord may process information in locations described in its own policy. Local Bastion files remain wherever the owner stores or backs them up. BVNGER's support communications may be processed in the places where BVNGER and its communications provider operate; request details at legal@bvnger.dev.

Children and changes

Bastion is intended for use on Discord by people who meet Discord's minimum age requirements. Server owners should not configure it to collect information from people who are too young to use Discord or to solicit sensitive personal information in tickets or reports.

We may update this policy as Bastion changes. We will revise the effective date and make the current version available where Bastion is distributed. We will also link it in Bastion's Discord Developer Portal entry when the policy is published. Material changes will be communicated through those channels before they take effect when required by law.

Contact

William Kurtz, operating as BVNGER
legal@bvnger.dev