Who controls your data
The independent service operated under the YouKero name by Youssef and Kereto controls the personal data described here. Privacy requests can be submitted through authenticated support. This channel helps us verify the requester without asking for passwords or bot tokens.
Data we collect
- Account data: username, email address, password hash, role, account status and security settings.
- Authentication data: Google or Discord account identifiers when you choose OAuth, two-factor settings, recovery events and login history.
- Service data: Discord server, channel, role and bot identifiers; encrypted bot tokens; selected bot settings; runtime status; support messages; reviews and notifications.
- Commerce data: orders, wallet transactions, selected billing cycle, crypto invoice identifiers, payment status and fulfilment records. We do not ask for private wallet keys.
- Technical data: security logs, browser information, approximate network information and hashed or minimised visit identifiers used for abuse prevention and aggregate analytics.
- Hosted-site data: domain settings, page configuration and aggregate visit or conversion events for managed landing pages.
Why we use it
We process data to create and secure accounts, provide purchased products, run hosted bots, complete payments, prevent duplicate or fraudulent actions, answer support requests, maintain service reliability and meet legal obligations.
Depending on the context, the legal basis is performance of our contract, legitimate interests in security and service improvement, your consent for optional communications, or compliance with law. You may withdraw consent for optional processing without affecting earlier lawful processing.
Bot credentials and Discord data
Submitted Discord bot tokens are encrypted at rest and are not returned through the customer API. A keyed fingerprint may be used to detect accidental duplicate use. Tokens are made available only to the server-side process that needs to operate the selected bot.
Bot functionality can process Discord API data available under the permissions and intents granted by the server owner. Customers must choose appropriate permissions, tell their community how their bot is used and comply with Discord's terms and applicable privacy law.
Processors and disclosures
We disclose only the data needed to providers that help operate the service, such as database and authentication infrastructure, hosting, transactional email, anti-abuse services, Discord integrations and the crypto payment provider shown at checkout. These providers process data under their own terms and/or service agreements.
We may also disclose information when required by law, to protect users or infrastructure, to investigate fraud, or as part of a business transfer subject to appropriate safeguards. We do not sell personal data.
International processing
Service providers and infrastructure may process information in different countries. Where data-protection law requires a transfer mechanism, we use the safeguards made available by the relevant provider or another lawful transfer basis.
Retention
We keep account and service data while your account is active and for the period reasonably needed to provide support, prevent abuse, resolve disputes and meet accounting or legal duties. Security logs and reset codes are retained for shorter operational periods. Encrypted bot credentials are removed or made unusable when no longer required for the service, subject to backup rotation.
Your rights
Depending on your location, you may have rights to access, correct, delete, restrict or object to processing, receive portable data, withdraw consent and complain to a data-protection authority. Use authenticated support to make a request. We may request proportionate verification and may retain information where law or security requires it.
Cookies and local storage
YouKero uses browser storage and essential cookies or equivalent technologies for login state, security, preferences and core checkout flows. Optional third-party protections may set their own security data. We do not use this policy to authorise unrelated behavioural advertising.
Security, children and updates
We use access controls, encryption for sensitive credentials, rate limiting, monitoring and backups. No system is perfectly secure, so report suspected incidents through support without including secrets.
YouKero is not directed to children below the minimum age permitted by Discord or local law. We may update this policy as the service changes and will post the new effective date here.
Applicable law takes priority over any conflicting limit in these policies.