Privacy Policy

Effective Date: June 13, 2026  ·  Last Updated: June 13, 2026

Table of Contents

  1. Overview
  2. Information We Collect
  3. How We Use Your Information
  4. Information Sharing
  5. Discord Data
  6. Payment and Billing Data
  7. Radio and Listening Data
  8. User-Generated Content
  9. Data Retention
  10. Security
  11. Your Rights and Choices
  12. Children's Privacy
  13. International Transfers
  14. California Privacy Rights (CCPA)
  15. European Privacy Rights (GDPR)
  16. Discord Bot Privacy
  17. Policy Updates
  18. Contact Us
Short version: AuraCast uses your Discord login to create an account. We store the minimum necessary information to provide the service. We do not sell your personal data. You can request deletion of your data at any time.

1. Overview

AuraCast ("we," "us," "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use AuraCast services, including the website, desktop application, Android application, Discord bot, and API.

By using AuraCast, you consent to the data practices described in this policy. If you do not agree, please discontinue use of AuraCast.

2. Information We Collect

2.1 Information You Provide

DataSourcePurpose
Discord user IDDiscord OAuthAccount identification
Discord usernameDiscord OAuthDisplay name
Discord avatarDiscord OAuthProfile display
Playlist dataYouPlaylist feature
Soundboard contentYouSoundboard feature
Favorite stationsYouPersonalization
Station ratings/reportsYouStation quality
Radio station submissionsYouDatabase expansion

2.2 Information Collected Automatically

DataPurposeRetention
IP addressSecurity, fraud prevention, session management90 days in logs
User agent (browser/app version)Device identification, security alertsStored per session
Session tokens (hashed)Authentication30 days or until revoked
Radio listening historyFeature functionality90 days
API request logsSecurity, debugging30 days
Audit logsSecurity, compliance1 year (append-only)

2.3 Information We Do NOT Collect

3. How We Use Your Information

We use collected information to:

We do not use your data for targeted advertising. We do not sell your personal data to third parties.

4. Information Sharing

We share your information only in these limited circumstances:

4.1 Service Providers

ProviderPurposeData Shared
StripePayment processingName, email (if provided), billing details
DiscordAuthenticationOAuth access token (for API calls)
VPS hosting providerInfrastructureAll data stored on servers

4.2 Legal Requirements

We may disclose information if required by law, regulation, legal process, or governmental request. We will notify you of such requests to the extent permitted by law.

4.3 Business Transfers

If AuraCast is involved in a merger, acquisition, or sale of assets, your information may be transferred. We will notify you before your information is subject to a different privacy policy.

4.4 Safety

We may share information to protect the safety or rights of AuraCast, our users, or the public when we believe disclosure is necessary.

5. Discord Data

When you authenticate with Discord:

Discord's own Privacy Policy governs how Discord handles your data. AuraCast is not responsible for Discord's data practices.

6. Payment and Billing Data

All payment processing is handled by Stripe, Inc. AuraCast does not store payment card numbers, CVV codes, or bank account details.

We store:

For questions about payment data, refer to Stripe's Privacy Policy.

7. Radio and Listening Data

When you use radio features, we collect:

Radio stream URLs are delivered directly to your device. AuraCast does not record or store your audio listening sessions.

8. User-Generated Content

Content you create on AuraCast (playlists, soundboards, community messages) is stored on our servers. This content:

9. Data Retention

Data TypeRetention Period
Account data (user profile)Until account deletion + 30 days
Session tokens30 days or until revoked
Listening history90 days rolling
Favorites, playlists, soundboardsUntil deleted or account deletion
Audit logs1 year (legally required for security)
Access logs (IP addresses)30–90 days
Billing records7 years (tax and legal compliance)
DMCA records3 years minimum
Database backups14 days (encrypted, then deleted)
Community chat messagesUntil deleted or account deletion

After account deletion, personal data is purged within 30 days except where retention is required by law (billing records, audit logs). Anonymized aggregate data may be retained indefinitely.

10. Security

We implement industry-standard security measures to protect your data:

No security system is infallible. If you discover a security vulnerability, please contact security@jsglow.name before public disclosure.

In the event of a data breach affecting your personal information, we will notify you and relevant authorities as required by applicable law within legally mandated timeframes.

11. Your Rights and Choices

11.1 Access

You can access your account information through the AuraCast app at any time.

11.2 Correction

To correct inaccurate data, update your Discord profile (which syncs to AuraCast on next login) or contact support.

11.3 Deletion

You can delete your account through AuraCast settings. We will delete your personal data within 30 days, subject to legal retention requirements. To request deletion, you may also email support@jsglow.name.

11.4 Data Export

You may request a copy of your data by contacting support@jsglow.name. We will respond within 30 days.

11.5 Opt-Out of Communications

Security-related Discord DM notifications for the account owner cannot be disabled as they are essential for account security. Other communications may be managed in account settings.

11.6 Session Management

You can view and revoke active sessions through the AuraCast security settings in the desktop app.

12. Children's Privacy

AuraCast is not directed at children under 13. We do not knowingly collect personal information from children under 13. If we learn we have collected information from a child under 13, we will promptly delete it.

If you are a parent or guardian and believe your child under 13 has provided us with personal information, please contact support@jsglow.name.

Users between 13 and 18 must have parental consent to use AuraCast.

13. International Data Transfers

AuraCast is operated from servers in the United States. If you access AuraCast from outside the United States, your information may be transferred to and processed in the United States, which may have different data protection laws than your country.

By using AuraCast, you consent to this transfer. We take steps to ensure that transferred data is protected under appropriate safeguards.

14. California Privacy Rights (CCPA)

California residents have specific rights under the California Consumer Privacy Act (CCPA):

To exercise these rights, contact support@jsglow.name with the subject "California Privacy Request." We will verify your identity before processing requests.

15. European Privacy Rights (GDPR)

If you are located in the European Economic Area, United Kingdom, or Switzerland, you have rights under the General Data Protection Regulation (GDPR) or equivalent laws:

Legal Basis for Processing:

To exercise GDPR rights, contact support@jsglow.name. You also have the right to lodge a complaint with your local data protection authority.

16. Discord Bot Privacy

When the AuraCast Discord bot is added to a server:

For users interacting with the bot, your Discord user ID is used to check your AuraCast account and premium status. No additional personal data is collected through bot interactions beyond what you provide through account creation.

17. Policy Updates

We may update this Privacy Policy periodically. We will notify you of material changes by posting a notice on the AuraCast website or through the application. The "Last Updated" date at the top of this policy indicates when it was last revised.

Continued use of AuraCast after updates constitutes acceptance of the revised policy.

18. Contact Us

For privacy-related questions, requests, or concerns:

Email: support@jsglow.name
General Support: support@jsglow.name
Security: security@jsglow.name

We will respond to privacy requests within 30 days. For GDPR requests, we aim to respond within the legally required 30-day window, with the possibility of a 60-day extension for complex requests.