Time Capsule
Privacy Policy
Last updated: July 31, 2026
1. Overview
Time Capsule stores only what is needed to create, schedule, secure, deliver, moderate, and support future-unlocking capsules. CUFF Dev does not sell Discord API data and does not use Discord message content/API data to train AI models.
2. Data Time Capsule may collect
Depending on how a server uses the bot, Time Capsule may store:
- Discord user IDs for capsule senders, recipients, reporters, and relevant moderators.
- Discord server, channel, message, and role IDs needed for delivery and configuration.
- Capsule content, including messages, titles, attachments, media metadata, and unlock dates.
- Delivery settings, privacy settings, schedule metadata, and recurrence settings.
- Moderation records, abuse reports, deletion requests, audit events, and support context.
- Operational logs needed for reliability, abuse prevention, security, and troubleshooting.
- Billing or entitlement status for paid features when applicable.
- Discord OAuth identity, allowed-server metadata, and time-limited portal session records.
- Random app-install, browser-visitor, and session identifiers used to keep feature rollouts stable.
- First-party product events such as page views, feature presentations, and purchase or install starts, together with the page path and allowlisted campaign labels.
- Security and reliability context such as a shortened user-agent value and a one-way hash of the requesting network address.
3. Why data is stored
Time Capsule stores data to create capsules, enforce limits, schedule unlocks, deliver content to the correct user or channel, support deletion and reporting workflows, prevent abuse, maintain service reliability, provide paid features when enabled, measure whether product changes work as intended, and compare stable and canary feature behavior. Random rollout identifiers are not advertising identifiers and are not sold or shared for cross-service advertising.
4. Data Time Capsule does not collect
Time Capsule does not ask for Discord passwords, account tokens, bot tokens, API keys, or credentials. Time Capsule does not collect Discord API data for advertising, data broker services, scraping, mining, user profiling, eligibility decisions, or AI model training.
5. Sharing and disclosure
CUFF Dev may share limited data with service providers that help host, store, secure, process payments for, or support Time Capsule. CUFF Dev may also disclose data when required by law, needed to protect users or the service, or necessary to investigate abuse and policy violations. CUFF Dev does not sell Discord API data.
5A. Hosted storage locations
The hosted service is designed to persist structured application records, including portal sessions and product events, in PostgreSQL. A controlled migration or emergency rollback may temporarily use the service's SQLite fallback. Capsule attachments and uploaded server branding use the storage provider configured for that deployment and are kept outside disposable application containers. Self-hosted deployments may use storage providers selected by their operator.
6. Retention
Capsule content is retained long enough to deliver the capsule and support the selected retention settings for the server or plan. Operational logs, moderation records, support records, and billing/entitlement records may be retained longer when needed for security, abuse prevention, legal compliance, accounting, or dispute handling.
7. Deletion requests
Users and server administrators may request deletion of capsule data through Time Capsule's in-product support controls or the official CUFF Dev Discord support server. Include relevant server IDs, user IDs, capsule IDs, and context when available. CUFF Dev may need to retain limited records where required for security, abuse prevention, billing, legal compliance, or dispute resolution.
8. Abuse and policy reports
Users can report abuse or policy violations through in-product report controls when available or by contacting CUFF Dev. Reports may be reviewed by server moderators and/or CUFF Dev depending on server configuration, severity, and support needs.
9. Security
CUFF Dev uses reasonable technical and organizational measures to protect Time Capsule data. Hosted product and portal traffic use HTTPS, and moderator portal sign-in is delegated to Discord OAuth with server-scoped authorization. No hosted service can guarantee perfect security, so users should avoid sealing highly sensitive personal, financial, medical, or credential information in capsules.
10. Children and age restrictions
Time Capsule is intended for Discord users who meet Discord's minimum age requirements and any local minimum age required by law. Time Capsule is not directed to children under 13.
11. Changes to this policy
CUFF Dev may update this Privacy Policy as Time Capsule changes or as legal/platform requirements evolve. Material updates should be reflected on this page with a new date.
12. Contact
For privacy questions, deletion requests, or abuse reports, use Time Capsule's in-product support controls or the official CUFF Dev Discord support server.