Privacy Policy
Last updated: June 16, 2026
This policy explains what RoSync collects, why, and your choices. RoSync is a self-hosted service; the operator of this instance is the data controller.
1. What we collect
- Discord account data β your user ID, username, and the servers you
manage (via Discord OAuth, scopes
identifyandguilds). - Roblox account data β your Roblox user ID, username, and group
memberships/ranks (via Roblox OAuth, scopes
openid profile). - Server configuration β role bindings, locks, bans, messages, and settings that server admins create.
- Operational logs β minimal technical logs needed to run the service.
2. Why we use it
Solely to provide verification: linking your accounts, assigning Discord roles based on your Roblox ranks, syncing nicknames, and enforcing the settings configured by server admins. We do not sell your data or use it for advertising.
3. What we don't collect
We never receive your Discord or Roblox password. OAuth access tokens are used transiently to read your profile and are not stored long-term. We don't read your messages.
4. Sharing
We don't share personal data with third parties except the APIs required to function (Discord and Roblox). Your linked identifiers are visible to administrators of servers you verify in (e.g. via lookup commands), which is inherent to how verification works.
5. Retention & deletion
Verification links and settings are kept until removed. You can unlink your Roblox account at any time, and server admins can delete a server's configuration from the dashboard, which removes its associated data. To request full deletion of your records, contact the instance operator.
6. Security
Session cookies are signed, OAuth flows are CSRF-protected with one-time state tokens, and data is stored on the operator's own infrastructure. No method of storage or transmission is 100% secure.
7. Children
RoSync follows the age requirements of Discord and Roblox. It is not intended for anyone below those platforms' minimum ages.
8. Changes & contact
We may update this policy; material changes will be reflected by the βlast updatedβ date. Questions or deletion requests can be sent to the operator of this RoSync instance.