Privacy Policy

Effective date: August 28, 2026

What PulseGuard is

PulseGuard is a Discord security and moderation bot: anti-raid/anti-nuke protection, member verification, scam and phishing-link detection, impersonation detection, attachment scanning, keyword/blocklist enforcement, and a global scam-report database shared, on an opt-in basis, across servers running PulseGuard.

Information we collect

Discord sign-in stores your Discord ID, username, avatar, and session data for staff who access the dashboard. For any server PulseGuard is added to, we store the server ID, name, icon, owner ID, member count, and the security configuration staff set (thresholds, exempt channels, trusted admins, trusted domains, protected brands, and similar settings).

To do its job, PulseGuard processes: join events and device/network fingerprints used to detect raid and bot-account patterns; verification challenge state for new members; message content scanned for spam, scam links, and phishing patterns (kept only as long as your server's configured raw-content retention window, 7 days by default); attachment hashes scanned for known-malicious files; avatar and username similarity checks used to catch impersonation of staff or verified members; and an audit log of moderation actions PulseGuard or your staff take.

If a server enables sharing to the global scam database, confirmed scam indicators (such as a malicious domain or a matched scam-account pattern) may be shared, without the original message content, across other servers running PulseGuard so they can block the same threat.

Child-safety scanning

PulseGuard includes a hash-based scanner that checks image attachments against lists of known child-sexual-abuse-material (CSAM) hashes. This check never stores or transmits the image itself - only a cryptographic hash of the file is computed and compared. A match is queued as hash-and-metadata only (server ID, matched hash, and timestamp) for manual review and, where applicable, reporting to the National Center for Missing & Exploited Children (NCMEC). This protection cannot be disabled.

How we use information

We use this information to authenticate dashboard staff, detect and stop raids/spam/scams/impersonation in real time, let server staff configure and review PulseGuard's protections, maintain an audit trail of moderation actions, and improve detection accuracy across the network of servers that opt in to shared threat data.

Retention

Raw message content scanned for threats is retained only for your server's configured retention window (7 days by default, staff-adjustable). Join/device fingerprints are retained for your server's configured fingerprint-retention window (30 days by default). Configuration, audit logs, and confirmed threat indicators are retained while your server uses PulseGuard, for security and abuse prevention.

Sharing

We share data with Discord as needed to operate the bot and dashboard, and with hosting, database, and security providers needed to run the service. Confirmed scam indicators are shared across the opt-in global database as described above. We may disclose information to law enforcement where required by law, including CSAM reports made through the process described above.

Security

We use access controls, scoped permissions, and operational safeguards to protect this data, but no service is perfectly secure.

Children

PulseGuard is intended for Discord communities and is not directed to children under 13, matching Discord's own minimum age requirement.

Contact

Email [email protected] for privacy questions or data requests. For a specific server's moderation records, contact that server's owner or administrators first, since they control who can view and delete that server's configuration and logs.