Privacy Policy
Last updated: June 24, 2026
1. Overview
This Privacy Policy describes how Arcade ("we", "us", or "our") collects, uses, stores, and discloses your information when you log in via Discord OAuth and use our services. By using Arcade, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
To operate and configure feed notifications for your Discord servers, we collect and store specific metadata. We limit collection to only what is technically necessary:
- Discord Account Data: When you authenticate via Discord OAuth, we access your Discord username, user ID, avatar hash, and your list of guilds (servers). We use this list to determine which servers you have administrative access to configure.
- Server Configuration Metadata: We store server subscription selections, designated Discord channel IDs, Discord role IDs (for pings), and webhook configuration details.
- Payment & Billing Data: If you purchase a premium subscription, billing is handled securely by our third-party processor, Dodo Payments. We do not store or process your credit card numbers, bank details, or checkout information directly. Dodo Payments provides us with transaction confirmation, subscriber status, and metadata (guild ID, renewal/expiration dates).
3. How We Use Your Information
We use the collected information for the following purposes:
- To authenticate you and verify your permissions to manage server configurations.
- To operate, maintain, and deliver feed notifications to your designated Discord channels.
- To process billing transactions and manage premium tiers.
- To provide support and respond to user queries via email or Discord.
- To diagnose technical issues, analyze usage statistics, and optimize our scraping intervals.
4. Cookies & Session Storage
We use a secure, encrypted cookie (`session`) stored in your browser to maintain your login session.
- This cookie contains encrypted authentication details (Discord access tokens).
- The session cookie uses security flags: `httpOnly` (prevents client-side scripts from reading it), `secure` (enforced on HTTPS connections in production), and `sameSite: "lax"` (mitigates CSRF attacks).
- You can disable cookies in your browser settings, but doing so will prevent you from logging in and accessing the dashboard.
5. Data Storage & Third-Party Services
We host our data in Supabase (managed cloud storage) and communicate with the following third-party APIs to deliver the service:
- Discord API: Used for OAuth authentication, guild validation, list of channels, list of roles, and message dispatch.
- Dodo Payments: Used to handle subscription checkouts, upgrades, cancellations, and billing webhooks.
We do not sell, rent, or trade your personal data to advertisers or third parties.
6. Data Security & Retention
We take data security very seriously. All communications are encrypted in transit over HTTPS. We use authenticated session cookies (`aes-256-gcm`) to protect against tampering.
We retain your server configurations, webhook settings, and metadata as long as your server remains active. If you delete your server configurations or request account deletion, we remove all associated data from our database.
7. User Rights & Account Deletion
You have full control over your data:
- Opt-out / Channel Change: You can disable feed subscriptions or remove channel configurations at any time directly through the dashboard.
- Account & Guild Deletion: You can trigger a full deletion of your server configuration details at any time using the "Delete Server Data" action in settings.
- Access & Corrections: If you need to request manual removal of any remaining logs or database entries, you can contact us directly.
8. Children's Privacy
Our Service is not directed to anyone under the age of 13. We do not knowingly collect personal information from children. If you become aware that a child has provided us with personal data, please contact us so we can delete it immediately.
9. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date at the top. We encourage you to review this policy periodically.
10. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy, please contact us at: support@unbrn.tech.