← Trust Center
🗓️

Data Retention

What we keep, why, and for how long.

NexusForgeBot is built on the principle of storage limitation — we only keep data as long as necessary for the specific purpose it was collected for.

Retention Period Summary

Data categoryRetention period
Account dataWhile account is active
Server settingsWhile server is connected
NSN confirmed incidents5 years after last incident
NSN unconfirmed reports90 days
NSN dismissed reports30 days
Security event logs365 days
Admin audit logs3 years
NSN risk assessments5 years after last incident
Appeal records3 years
👤

Account data

Your Discord user ID, username, and avatar are stored while your account is active. If you request account deletion, this data is removed.

⚙️

Server settings

Server configuration data is kept while your server is connected to NexusForgeBot. You can disconnect your server at any time, which removes access to configuration data.

🛡️

NSN confirmed incidents

Confirmed NSN risk assessments are retained for up to 5 years after the last confirmed incident. If a new incident is confirmed, the retention period restarts. After expiry, data is deleted or anonymized.

📋

NSN unconfirmed reports

Reports that are dismissed or remain unconfirmed are retained for a maximum of 90 days and then deleted.

📊

Security event logs

Security event logs are kept for up to 1 year and then automatically deleted.

📈

Anonymized statistics

Aggregated, anonymized statistics (with no link to individual users) may be kept longer for platform improvement purposes.

🤖

Retention automation

NexusForgeBot runs automated retention jobs that expire and delete or anonymize data according to the periods above. These jobs are logged in our internal privacy audit trail.

Data Retention — Trust Center | NexusForgeBot