Privacy Policy
Last updated: July 2026
This Privacy Policy explains what data Kiddyna ("the Bot") collects, why, and how it is protected.
1. What We Collect
| Data | Why |
|---|---|
| Discord User ID | Identifies your account for credit tracking |
| Discord Username (display only) | Shown in bot responses — not stored |
| Credit balance and plan | Required to operate the credit system |
| Scrape history (hashtag, timestamp, email count) | Used for your dashboard activity feed and deduplication |
| Stripe payment events (event ID, product ID) | Required for idempotent credit grants; no card data is stored by us |
Web accounts (email sign-up). If you create a web account with an email address instead of Discord, we additionally collect and store:
| Data | Why |
|---|---|
| Email address | Your account identifier for web sign-in |
| Password (salted scrypt hash only) | Web sign-in — we never store or can recover the plaintext |
| Consent flag and timestamp | Records your signup agreement (below) |
Email reuse consent. Creating a web account requires ticking a consent box agreeing that the email address you provide may be stored and reused by Konnect, including its Discord bot and contact features. This consent is recorded with a timestamp. If you do not agree, you can use Discord sign-in instead, which involves no email collection. To withdraw consent and have your email removed, contact us (Section 10).
Beyond the above, we do not collect phone numbers or any sensitive personal data.
2. How We Use Your Data
- To credit your account when a payment is completed
- To deduct credits when you run a scrape
- To deduplicate emails so you never see the same result twice
- To display your activity history in the web dashboard
We do not use your data for advertising or sell it to any third party.
3. Data Storage
All data is stored in an SQLite database on our server (PebbleHost). The database is not publicly accessible. Stripe events are stored only by their event ID to prevent double-processing — no card numbers or bank details are ever stored by us.
4. Data Retention
Your account data (credits, scrape logs) is retained for as long as your account is active. If you request deletion, we will remove your record within 30 days. To request deletion, contact us in the Discord support server.
5. Third-Party Services
We use the following third parties:
- Stripe — payment processing. Stripe's Privacy Policy governs how your payment data is handled.
- Discord — bot platform. Discord's Privacy Policy applies to your Discord account and messages.
- PebbleHost — server hosting. PebbleHost's privacy policy applies to infrastructure-level data.
- Google / YouTube — optional Beat Tools integration (Section 5a below).
We do not share your Discord User ID or credit data with any other third party.
5a. Google User Data (Beat Tools / YouTube)
If you choose to connect your YouTube channel to Konnect's Beat Tools, we access Google user data via Google OAuth. Konnect's use and transfer of information received from Google APIs adheres to the Google API Services User Data Policy, including its Limited Use requirements.
What we access and why:
| Data | Scope | Why |
|---|---|---|
| Permission to upload videos to your channel | youtube.upload | To publish the beat videos you ask us to publish — and nothing else |
| Your channel title | youtube.readonly | Shown in the dashboard so you can confirm which channel is connected |
What we store: your OAuth token (stored in our database and used only to perform the actions above) and your channel title. We never see or store your Google password.
What we never do with Google user data: we do not sell it, do not use it for advertising, do not transfer it to third parties (except as required by law), and no human reads it except for security/abuse investigation or with your explicit consent.
Revoking access: disconnect your channel on the Beat Tools page (this deletes the stored token), or revoke Konnect at Google security settings at any time.
Beat Tools uses YouTube API Services. By connecting a channel you also agree to the YouTube Terms of Service; the Google Privacy Policy applies to Google's handling of your data.
6. Scraped Data
The Bot retrieves publicly available information (email addresses) from third-party platforms. We do not store scraped emails in association with your Discord ID beyond what appears in your own activity log. You are responsible for how you use any contact information you obtain.
7. Your Rights
Depending on where you live, you may have rights to access, correct, or delete your data. To exercise these rights, contact us via our Discord support server.
8. Children's Privacy
The Bot is not directed at children under 13. We do not knowingly collect data from anyone under 13. If you believe a minor has used the Bot, contact us immediately.
9. Changes to This Policy
We may update this policy from time to time. We will post the updated version with a new "Last updated" date.
10. Contact
Questions? Reach us in our Discord support server.