This Privacy Policy explains how NDev Studios handles personal information when you use Modulr, the Modulr website, NDev Premium with Modulr, connected social integrations and Modulr support.
NDev Studios does not sell Modulr user data to advertisers or data brokers.
1. Who is responsible for Modulr data
Modulr is operated by NDev Studios in England, United Kingdom.
Privacy enquiries and data-rights requests can be sent to [email protected]. Security concerns can be sent to [email protected].
Depending on the context, NDev Studios may determine why and how information is processed for account administration, security, billing, support, service operation and enforcement. Discord server owners and administrators may also determine why certain server/module records are created through their use of Modulr and are responsible for using Modulr lawfully in their communities.
2. Information Modulr may process
The exact information depends on which features are used. Modulr may process:
Discord account and server information
- Discord user IDs, usernames, display names and avatars where needed;
- Discord server/guild IDs, names, icons and descriptions where available;
- server owner IDs and authorised administrator information;
- channel IDs/names, role IDs/names and permission information;
- member IDs and related Discord metadata required by enabled features.
Server configuration
- module settings configured through
/configand other Modulr interactions; - selected channels, roles, categories, permissions and feature preferences;
- configured messages, embeds, forms, ticket panels, notification templates and other content supplied by authorised server users.
Module records
Depending on configuration, this may include:
- ticket metadata, ticket history and transcripts;
- moderation cases, warnings, notes, evidence references and action history;
- logging records where a server enables the relevant log features;
- welcome, verification and onboarding records;
- forms, applications, responses, review decisions and workflow history;
- levels, XP, activity records, reward history and leaderboard information;
- social feed connection metadata, delivery history and notification records;
- other records required by future Modulr modules.
Modulr does not store the content of every Discord message simply because it is present in a server. Message or content data is processed or stored where a configured feature requires it, such as ticket transcripts, forms, moderation/AutoMod, or configured logging.
Website and account information
When account features are enabled, Modulr may process:
- Discord OAuth identity and authorisation information;
- website session/security information;
- account preferences;
- server ownership/eligibility information needed for Premium server assignment;
- IP address and technical request information where reasonably necessary for security, fraud prevention and service operation.
NDev Premium and billing information
When NDev Premium is used with Modulr, NDev Studios may process:
- NDev Premium plan and entitlement status;
- assigned server-slot information and the Modulr servers using that coverage;
- central NDev billing identifiers and billing status needed to operate Premium;
- purchase, cancellation, refund, dispute and chargeback records where relevant to the entitlement; and
- limited billing details supplied by Stripe where needed for support, accounting or fraud prevention.
The Modulr website does not store full payment-card numbers or card security codes. NDev Premium checkout and payment management are handled through NDev Studios and Stripe. Do not send full card details to support.
Support, safety and enforcement information
Modulr/NDev Studios may process support conversations, user/server IDs, relevant evidence, timestamps, staff notes, restriction/blacklist status, appeal information, payment-abuse information and security records where needed to provide support, investigate misuse or protect the service.
3. Internal server directory
NDev Studios may maintain a restricted internal directory of servers using Modulr. It may include server name/ID, icon, owner information where available, member count, Premium status, module/configuration health, restriction/watchlist information and last-seen/service information.
This directory is for authorised internal service administration, support, safety and product operation. It is not a public directory of Modulr servers.
4. Why information is used
NDev Studios may use information to:
- provide and maintain Modulr features requested by servers and users;
- save and load server configuration;
- authenticate website users through Discord;
- determine server ownership and account permissions;
- provide moderation, ticketing, forms, logging, onboarding, levels, social notifications and other enabled modules;
- recognise NDev Premium, manage Modulr server assignments and support relevant billing/refund/dispute administration;
- prevent abuse, fraud, security incidents and unauthorised access;
- troubleshoot faults and provide customer-requested support;
- investigate serious Terms/Acceptable Use violations;
- comply with legal, regulatory or platform obligations;
- maintain service reliability and operational records.
Where UK data-protection law applies, the lawful basis depends on the purpose and may include performance of a contract or steps requested by the user, NDev Studios' legitimate interests in operating and securing the service, compliance with legal obligations, and consent where a specific activity requires it.
5. Human access to private server data
Private server/user data is not intended to be casually browsed by NDev Studios staff or the Modulr owner.
Human access is limited to:
- support or investigation requested by the relevant customer/server/user; or
- exceptional situations where access is reasonably necessary to investigate a serious security incident, investigate abuse or a Terms violation, comply with a legal or platform obligation, or protect Modulr/NDev Studios from an active threat.
Access should be limited to what is reasonably necessary for the relevant purpose.
6. Use of AI-assisted tools
NDev Studios may use AI-assisted tools as part of the development workflow for research, guidance, troubleshooting and development assistance.
NDev Studios does not submit identifiable live Modulr user/server data to third-party AI providers as part of normal development or troubleshooting. This includes private ticket transcripts, form responses, moderation records, applications and similar identifiable customer/server content.
Where AI tools are useful during development, synthetic, redacted or appropriately sanitised examples should be used instead.
8. Sharing and service providers
NDev Studios does not sell Modulr personal data.
Information may be shared only where reasonably necessary with:
- Discord, to operate the Discord application and OAuth features;
- hosting, infrastructure, DNS, security and technical service providers used to operate Modulr;
- Stripe, where NDev Studios uses it to process NDev Premium payments and billing;
- connected social providers such as Google/YouTube, Twitch, Kick and TikTok where a user enables the relevant integration;
- professional advisers or authorities where reasonably necessary for legal, accounting, security or compliance purposes; or
- another party where the affected user expressly directs NDev Studios to share the information and that sharing is permitted by applicable platform rules and law.
Service providers are expected to process information only for the relevant service and under appropriate contractual/security arrangements where required.
9. International processing
Some providers used by Modulr operate outside the United Kingdom. Where personal information is transferred internationally, NDev Studios will rely on an applicable lawful transfer mechanism or safeguard where required.
10. Data retention and deletion
NDev Studios aims to keep personal information only for as long as it is reasonably needed for the relevant purpose.
Functional server/module records
While a server actively uses Modulr, functional records such as tickets, moderation cases, applications and similar module records may remain stored until they are deleted through available server controls, are no longer needed for the feature, or another retention rule requires removal.
Server removal recovery period
When Modulr is removed from a Discord server, ordinary server configuration and module data may be retained for up to 30 days to allow recovery from accidental removal, malicious removal or a compromised administrator account.
After that period, normal deletion begins unless specific information must be retained longer for legal, security, billing, dispute, abuse-prevention or enforcement reasons.
Diagnostic/application logs
Ordinary diagnostic and application logs are normally retained for up to 30 days.
Security/audit records
Routine security and audit logs are normally retained for up to 90 days. Relevant security-incident, enforcement, fraud, blacklist, dispute or legal records may be retained longer where reasonably necessary to investigate, document or defend the matter.
OAuth/social credentials
Usable OAuth credentials are deleted and/or revoked promptly after a deliberate disconnection where supported by the provider.
Billing/business records
Billing, tax, accounting and transaction records may be retained for the period required by applicable legal, tax and accounting obligations.
Backups
Deleted data may remain temporarily in protected backups until those backups expire through the normal backup cycle. Backups are not intended to be used to restore deleted personal data except where necessary for disaster recovery, security or legal reasons.
11. Data requests, correction and deletion
You may contact NDev Studios to request access to, correction of, export of or deletion of personal information where the relevant right applies.
For Discord API Data, NDev Studios will delete or anonymise information when required by Discord's Developer Terms and applicable law. Where possible, if a server record must remain for a legitimate non-API purpose, identifiers may be removed or anonymised rather than preserving unnecessary identifying information.
Some information may need to be retained where required by law or where a narrow retention exception is necessary to establish, exercise or defend legal claims, investigate serious security/fraud matters, or comply with binding platform obligations. Any such retention should be limited to what is necessary.
NDev Studios may need to verify identity or account ownership before fulfilling a request.
12. Your UK data-protection rights
Where UK data-protection law applies, you may have rights including access, correction, erasure, restriction, objection and data portability, depending on the circumstances and lawful basis used.
Where processing is based on consent, you may withdraw that consent for future processing.
You may also complain to the UK Information Commissioner's Office (ICO) if you believe your data-protection rights have been infringed.
13. Security
NDev Studios uses technical and organisational measures intended to protect Modulr information from unauthorised access, alteration, loss or disclosure. No online system can be guaranteed completely secure.
Security reports should be sent to [email protected]. Do not publicly disclose sensitive exploit details while an issue is being investigated where doing so could put users or the service at risk.
14. Automated safety scanning
Modulr does not currently rely on a general automated content-safety scanning programme as a standard feature of the service.
NDev Studios may introduce proportionate safety checks in the future if they become necessary to protect Modulr and its users. If such processing materially changes the personal information handled by Modulr, this Privacy Policy will be updated before or when the feature is introduced as required.
15. Internal alerts and audit notifications
Modulr may create restricted internal alerts or audit records for security, billing, policy, Premium, server restriction, abuse and service-integrity events. These may be shown through internal NDev Studios tools or private Discord notifications available only to authorised staff.
16. Changes to this Privacy Policy
This policy will be reviewed as Modulr develops. Material changes may be announced through the website, Modulr HQ, account notices or another reasonable method.
The current version published on the Modulr website is the official public version.
17. Data protection complaints
If you wish to make a complaint about how NDev Studios has handled personal information, contact [email protected]. NDev Studios will provide a clear route for the complaint, acknowledge it within 30 days of receipt, take appropriate steps to investigate without undue delay, keep the complainant informed where appropriate, and communicate the outcome.
You may also complain to the UK Information Commissioner's Office (ICO) if you believe your data-protection rights have been infringed.
18. Contact
Privacy and data requests: [email protected] Security reports: [email protected]

7. Social-provider information and OAuth credentials
Social Feeds & Notifications may process public creator/channel identifiers and public content/event metadata from providers such as YouTube, Twitch, Kick and TikTok.
Where a provider requires user authorisation, Modulr may securely store access and refresh credentials required to maintain the authorised connection. These credentials are used only for the authorised Modulr functionality and are not stored in ordinary public guild configuration.
When an authorised social connection is deliberately disconnected, Modulr will delete and/or revoke usable OAuth credentials promptly where the provider supports revocation. A limited non-sensitive audit record may remain under the normal retention rules.