Privacy Policy
Last updated: August 18, 2026
INTERIM POLICY

This policy is a good-faith description of how Nightmare Nexus RP ("we", "us", "the service") actually handles data today. It was drafted internally while formal legal review is pending, and will be updated once that review is complete. If anything here conflicts with applicable law, the law controls.

Nightmare Nexus RP is a Discord bot and companion website that provides AI-assisted collaborative roleplay. This policy explains what data we collect through the bot and the website, how we use it, who we share it with, and how you can ask us to delete it.

What We Collect
Discord account data

When you log into the website via Discord, or interact with the bot in a server it's in, we receive and store your Discord user ID, username, and avatar. We check your server roles and membership live (e.g. to confirm subscriber status or moderator access) — we don't keep a separate permanent copy of your role list. We do not request or receive your email address or payment details from Discord.

Roleplay content

To run the bot's core feature, we process and store: messages you post in channels where the bot is active, the characters/personas you create, scene summaries, pinned facts, and "player facts" the AI extracts from your posts to remember your character's ongoing story (so replies stay consistent instead of forgetting things you've established). This is the main purpose of the service — without it, the bot can't do continuity-aware roleplay.

Profile & community content

Bios, comments, follows, favorites, uploaded character-page images, and applications you submit are stored so those features work and so your content displays correctly to others.

Safety & abuse-prevention logs

When our hardcoded content-safety filter blocks something (e.g. sexualized content referencing a minor), we log the channel, user, rating tier, and a short snippet of the flagged text — this is an enforcement record, not a general chat archive. We also log which AI backend handled a request and rough token counts, for cost tracking, and we maintain a shadow-ban list for users who abuse AI features.

Website technical data

The website sets one cookie — a signed session token (not a tracking cookie) that keeps you logged in for up to 7 days. We also use your browser's local storage to remember small preferences (which notifications you've read, whether you enabled the accessibility mode) — this stays on your device and isn't sent to us. We do not use analytics, advertising, or third-party tracking scripts.

How We Use It
  • To generate AI roleplay replies and keep scenes/characters consistent over time.
  • To display your profile, characters, and comments to other users as intended by the feature.
  • To enforce our rules — age requirements, the minor-safety filter, shadow-bans, and rate limits.
  • To respond to support tickets and content reports (including reports made via !report_ai).
  • To keep the service running and track basic AI usage/cost.

We do not sell your data, and we do not use your roleplay content to advertise to you or anyone else.

Who We Share It With
WhoWhat they getWhy
DiscordWhatever you post through Discord itselfThe bot and website both run on top of Discord's platform — see Discord's own Privacy Policy for how they handle that.
Anthropic (Claude AI)The message/scene content needed to generate a replyAnthropic's API powers the bot's AI replies. Anthropic processes this content under its own API terms; we don't control Anthropic's internal data practices — see Anthropic's own privacy policy for details.
Railway (hosting provider)All stored data, since it lives on Railway's infrastructureRailway hosts our bot, website, and database as our infrastructure provider.

We don't share your data with advertisers, data brokers, or anyone else outside of running the service.

How Long We Keep It

We keep data for as long as it's needed to run the service. A few specific cases:

  • If you leave our Discord server, your characters and personas are automatically deleted.
  • Active RP session data (scene summaries, pinned facts, player facts) is kept for as long as that session/channel is in use, so the story stays consistent.
  • Safety-filter logs and usage logs are kept as an enforcement/cost record and are not routinely deleted.
  • Backups (including version-control history used to deploy the bot) may retain a copy of some data for a period after it's deleted from the live service.
Your Rights & Requesting Deletion

You can ask us to tell you what data we have about you, correct it, or delete it (subject to the backup/enforcement-log limits above) by opening a support ticket in our Discord or using !report_ai/contacting a server owner directly. We don't yet have a self-serve "delete my account" button — for now, deletion requests are handled manually by staff. If you're in the EU/UK, California, or another jurisdiction with specific data rights (GDPR, CCPA/CPRA, etc.), those rights apply to you and we'll do our best to honor them through this same manual process until a formal request tool exists.

Children's Privacy

Nightmare Nexus RP is strictly for users 18 and older and is not directed at children. We do not knowingly collect data from anyone under 18. If we become aware that we have, we will delete it and remove the associated account/content.

Security

We take reasonable steps to protect stored data, but no online service can guarantee perfect security. Use the service at your own discretion, and don't share information in roleplay content that you wouldn't want stored.

Changes to This Policy

We may update this policy as the service changes or as our legal review progresses. We'll update the "Last updated" date above when we do. Continued use of the bot or website after a change means you accept the updated policy.

Contact

Questions about this policy or a data request? Open a ticket in our Discord server, or reach out to a server owner directly. See our Rules page for reporting content issues.