Legal

Privacy Policy

Last updated: 6 July 2026

We only collect what Boostify needs to run. No selling your data, no ad profiling, and self-hosted instances stay entirely under your control.

New additions

The following sections were added on 6 July 2026:

  • Legal basis for processing (GDPR)
  • Cookies
  • Server logs
  • Data minimisation
  • Third-party processors (subprocessors)
  • International data transfers
  • Open Source
  • Discord permissions
  • API usage
  • Analytics
  • Third-party websites
  • Children's privacy
  • Security incidents

Overview

This Privacy Policy explains how Boostify ("Boostify", "we", "our", or "us") collects, uses, stores, and protects information when you use our hosted services, website, Discord bot, dashboard, APIs, and other related services.

Note

Boostify is operated by Tiago Santos.

By accessing or using Boostify, you acknowledge that you have read and understood this Privacy Policy.

Information we collect

We only collect information that is reasonably necessary to provide and improve our services. Depending on how you use Boostify, this may include:

  • Discord user IDs.
  • Discord server (guild) IDs.
  • Discord role IDs and channel IDs.
  • Configuration settings created within Boostify.
  • Authentication information provided through our authentication provider.
  • Session identifiers and authentication tokens.
  • Basic account information supplied by your authentication provider.
  • Suggestions, feedback, bug reports, and other content voluntarily submitted by users.
  • Diagnostic information required to investigate bugs, abuse, or service issues.

Tip

We do not intentionally collect passwords, payment information, private Discord messages, or sensitive personal information unless explicitly required by law.

How we use your information

Information collected through Boostify is used exclusively to operate and improve the service. This includes:

  • Providing Discord bot functionality.
  • Managing authenticated user sessions.
  • Storing server configuration.
  • Delivering requested features.
  • Improving reliability and performance.
  • Responding to bug reports and support requests.
  • Reviewing user suggestions and feature requests.
  • Detecting abuse, fraud, and malicious activity.
  • Complying with applicable legal obligations.

Note

We do not sell your personal information, and we do not use it for advertising or behavioural profiling.

Access to data

Access to internal data is strictly limited.

  • Only authorised personnel may access operational data where required to maintain the service.
  • This may include the service owner and any trusted administrators responsible for operating Boostify.

Tip

Access is granted using the principle of least privilege, meaning individuals are only given access to the information necessary to perform their responsibilities. Internal access is periodically reviewed to minimise unnecessary access.

Cookies

New

Cookies are used where necessary to authenticate users and maintain dashboard sessions.

Note

We do not use cookies for behavioural advertising, cross-site tracking, or third-party marketing.

Server logs

New

When you access Boostify, certain technical information may be processed automatically to help operate and secure the service.

Our infrastructure providers may temporarily process technical information such as:

  • IP addresses.
  • Browser and device information.
  • Operating system.
  • Request timestamps.
  • HTTP request metadata.
  • Error and diagnostic logs.

Tip

This information is used solely for security, monitoring, debugging, abuse prevention, and maintaining service availability. Boostify itself does not directly store this information beyond what is required for these purposes.

Data minimisation

New

Boostify is designed with data minimisation in mind. We only collect and process the information reasonably necessary to provide the functionality requested by users and continuously review our practices to minimise unnecessary data collection.

Data storage & security

Boostify stores data using secure infrastructure designed to protect user information. Authentication sessions are securely managed through our authentication provider.

Reasonable administrative, organisational, and technical safeguards are implemented to protect stored information from unauthorised access, disclosure, alteration, or destruction. These measures include, but are not limited to:

  • HTTPS encryption.
  • Secure authentication sessions.
  • Role-based administrative access.
  • Principle of least privilege.
  • Routine security updates.
  • Monitoring for abuse, malicious activity, and unauthorised access.

Warning

No method of electronic storage or transmission can guarantee absolute security. Users should also take appropriate steps to secure their own accounts and credentials.

Third-party processors (subprocessors)

New

Boostify relies on trusted third-party providers to operate its services. These providers process information only as necessary to provide their respective services, and are subject to their own privacy policies.

ProviderPurpose
DiscordBot functionality
SupabaseDatabase & authentication
Better AuthUser sessions
VercelWebsite hosting

Tip

Boostify does not store user passwords; authentication is handled by these providers.

International data transfers

New

Some of our infrastructure providers may process information outside your country or region. Where required, appropriate safeguards are implemented to comply with applicable privacy legislation, including the GDPR.

Self-hosted deployments

Boostify may be available as self-hosted software. If you choose to self-host Boostify:

  • You are solely responsible for your infrastructure.
  • You are solely responsible for your database.
  • You are solely responsible for backups.
  • You are solely responsible for security.
  • You are solely responsible for compliance with applicable laws.

Danger

Boostify does not have access to self-hosted instances unless explicitly authorised by the instance owner.

Open Source

New

The Boostify source code is publicly available. Public access to the source code does not provide access to user data, production infrastructure, or hosted databases.

Discord permissions

New

Boostify only requests Discord permissions necessary to provide requested functionality.

Data sharing

Boostify does not sell, rent, or trade personal information.

Information may only be processed by trusted infrastructure providers where necessary to operate the service. Examples include:

  • Hosting providers.
  • Database providers.
  • Authentication providers.
  • Content delivery networks.

Tip

These providers only process information necessary to deliver their services.

API usage

New

When applications communicate with Boostify using official APIs, we may process request metadata necessary to:

  • Authenticate requests.
  • Enforce rate limits.
  • Detect abuse.
  • Monitor performance.
  • Maintain platform security.

Note

We may temporarily store request metadata to enforce rate limits and protect the platform against abuse. Only the information necessary to provide the API service is processed.

Analytics

New

Boostify does not use third-party analytics or behavioural tracking.

Third-party websites

New

Boostify may contain links to third-party websites, documentation, repositories, or services. We are not responsible for the privacy practices, security, or content of third-party websites.

Warning

Users should review the privacy policies of any third-party services they choose to access.

Data retention

We retain information only for as long as necessary to:

  • Provide the service.
  • Maintain platform functionality.
  • Resolve disputes.
  • Enforce our agreements.
  • Comply with legal obligations.

Note

Information that is no longer required may be securely deleted or anonymised.

Tip

Backups may temporarily retain deleted information until backup rotation occurs.

Your rights (GDPR)

If you are located within the European Economic Area, United Kingdom, or another jurisdiction providing similar rights, you may have the right to:

  • Request access to your personal data.
  • Correct inaccurate information.
  • Request deletion of your data.
  • Restrict certain processing activities.
  • Object to processing.
  • Request a copy of your data where applicable.

Tip

These rights may be subject to applicable legal limitations. Requests can be made by emailing hello@breaddevv.cc or boostify@breaddevv.cc.

Data deletion requests

You may request deletion of your personal data where applicable.

Certain information may be retained where legally required or where necessary to:

  • Prevent fraud.
  • Resolve disputes.
  • Enforce legal obligations.
  • Protect the integrity and security of the service.

Note

Server owners may also remove Boostify from their Discord server at any time, which may result in associated configuration data being deleted.

Children's privacy

New

Boostify is not intended for individuals below the minimum digital age required by applicable law. We do not knowingly collect personal information from children where prohibited by law.

Warning

If we become aware that such information has been collected, reasonable steps will be taken to remove it.

Security incidents

New

If Boostify becomes aware of a security incident affecting personal information, we will investigate the incident and, where required by applicable law, notify affected users and relevant supervisory authorities.

Changes to this Privacy Policy

We may update this Privacy Policy from time to time. When material changes are made, the "Last updated" date will be revised.

Note

Continued use of Boostify following any changes constitutes acceptance of the updated Privacy Policy.

Contact

For questions regarding this Privacy Policy, GDPR requests, data deletion, or other privacy-related enquiries, please contact:

hello@breaddevv.cc

boostify@breaddevv.cc

We aim to respond to all legitimate enquiries within a reasonable timeframe.

© 2026 Boostify.

Terms of service →