Legal

Privacy Policy

This policy explains exactly what we collect on redtrust.up.railway.app, why, how long we keep it and how you stay in control.

Last updated:

1. Who is responsible

REDTRUST (“we”) runs this website and the Discord community at discord.gg/redtrust. For any privacy question or request, open a ticket on our Discord or use the tools on your dashboard.

2. Data we collect

a) When you log in with Discord (account data)

Logging in is optional. It uses Discord OAuth2 with the identify scope, which gives us your Discord profile. We store:

  • Discord user ID, username, display name and avatar.
  • Account language (locale), whether two-factor authentication is enabled, Nitro type and public account badges.
  • First login, last login and number of logins.
  • The browser, operating system and device type of your last login, and a keyed hash of your IP address (we never store the IP itself).
  • Only if you tick “Also share my email address” on the login card: your email address and whether Discord verified it (Discord's email scope). We use it for order updates and announcements; you can withdraw this at any time with “Stop updates & remove email” on your dashboard.

To show your dashboard we also read data the REDTRUST Discord bot already has about you: your server roles, 7-day activity (message count and voice time), your tickets, the vouches you wrote and the giveaways you entered.

b) When you accept analytics cookies (usage data)

Only after you click “Accept all” or enable Analytics in Cookie settings, we collect:

  • Pages you visit, buttons and links you click (for example “Buy on Discord” or “Join Discord”), time spent on each page and how far you scroll.
  • The website you came from (referrer domain) and campaign tags (utm_source, utm_medium, utm_campaign).
  • Browser, operating system, device type, screen and window size, language and time zone.
  • A random visitor ID stored in the rt_vid cookie so repeat visits can be counted. If you are logged in, this usage data is linked to your Discord account.

If you choose “Necessary only”, none of this usage data is collected.

c) Consent records

When you make a cookie choice we record the choice, the time, a hash of your IP address and your browser's user agent, so we can prove what you agreed to.

d) Data we never collect

We never collect payment details, passwords, your Discord messages, the list of your servers or your friends. Purchases happen in Discord tickets, not on this website.

3. Why we use it (legal bases)

  • Running your account (contract): logging you in, showing your dashboard, preventing abuse and keeping the site secure.
  • Analytics and improving the store (your consent): understanding which pages and products people use and where they come from.
  • Email updates (your consent): only when you chose to share your email.
  • Legal and security obligations (legitimate interest): consent records and abuse prevention.

4. Public information

The vouch wall shows the display name and avatar of people who left a vouch on Discord, together with their review. User IDs are never shown publicly. Staff can hide a vouch from the website on request.

5. Who can see it

Only REDTRUST administrators, through the admin panel, and our hosting provider (Railway), which stores the database. We do not sell, rent or share your data with advertisers or data brokers.

6. How long we keep it

  • Usage analytics: automatically deleted after 13 months.
  • Account data and consent records: until you delete them or ask us to.
  • Login session: 7 days, or until you log out.

7. Your rights and controls

  • Download your data: Dashboard → “Your data & privacy” → Download my data (JSON).
  • Delete your data: Dashboard → Delete my data. This removes your account record, linked analytics and consent records, and logs you out.
  • Change cookie choices: “Cookie settings” in the footer, at any time.
  • Revoke Discord access: Discord → User Settings → Authorized Apps → REDTRUST.
  • You can also ask us for access, correction, deletion, restriction or objection through a Discord ticket. Depending on where you live (for example under the GDPR or KVKK) you may also complain to your data-protection authority.

8. Children

The website is not intended for children under 13 (or the minimum age in your country). Discord's own age rules apply.

9. Changes

We may update this policy; the date above shows the latest version. If we start collecting new kinds of data that need consent, we will ask you again.

See also the Cookie Policy and Terms of Service.