Legal · Discord bot

Nefarious Options Levels Privacy Policy

Effective September 12, 2026 · Last updated September 12, 2026

This Policy explains what Nefarious Digital doing business as Nefarious stores when we run Nefarious Options Levels (Nefarious Options Levels). It is written from bot.ts in the options-levels process, not from a generic “we store nothing” template. The public application id is not in that source.

Options-levels poster and prefix bot. Members with an allowed role type nl (end-of-day) or nli (intraday) plus tickers; the bot fetches gamma / options levels from a third-party API and replies with a compact payload the Nefarious Levels TradingView indicator can decode. It also auto-posts a nightly EOD set (NQ1!, ES1!, QQQ, SPY, DIA) into one configured channel. It does not welcome members, scan ordinary chat, or read presence.

Discord Inc. operates Discord. A third-party options-levels vendor operates the snapshot API. Their privacy policies apply to those platforms. This page covers what we keep on the bot host.

Questions or deletion requests: Business@nefarious.trading.

01Who we are

Controller: Nefarious Digital (Nefarious). Email: Business@nefarious.trading.

The wider site and Discord community are described in the site Privacy Policy. This Policy is only about Nefarious Options Levels.

02What is stored

Operator configuration

  • Discord bot token (secret) on the host or in an operator env file.
  • Auto-post channel id 1467266457246105843 and a hard-coded guild / role allow-list in the process.

Vendor session cache

The process may write a third-party levels-API session cache to disk so it does not re-login on every request. That file is an operator credential store, not a Discord user database.

In-memory rate limits

For about one minute the process maps a Discord user id to recent request counts so it can refuse spam. That map is discarded on restart.

What a command may contain

A command is ticker symbols (for example QQQ, SPY, ES1!). The bot does not archive the raw message body. Discord keeps the public reply in the channel under Discord’s retention and the server’s history.

03What we do not collect

  • DMs, or message content outside nl / nli commands (and the posts we create).
  • Presence, voice state, or who is online.
  • A member roster — Server Members intent is off. Role checks use the message author’s member object.
  • Payment cards, government ids, or health data.
  • Advertising cookies or cross-site tracking tied to this bot.

Privileged intents: Message Content: used; Server Members: not used; Presence: not used. Details: Terms, intents and Nefarious Options Levels intents.

04How we use this information

  • Fetch and post the requested levels payload (or the nightly EOD set).
  • Enforce the role allow-list and per-user rate limits.
  • Keep the vendor session alive and debug failed fetches.
  • Respond to deletion or takedown requests.

We do not use command text to train machine-learning or AI models, and we do not sell it.

05Retention

  • Token and vendor session cache: for as long as the bot is operated, then removed from the host when the process is retired.
  • Rate-limit map: about one minute in RAM, gone on restart.
  • Discord copies: until a moderator deletes them or Discord expires the channel history. We do not control every client cache or screenshot.

06Sharing and no sale

We do not sell tokens, tickers, or command text, and we do not share them with data brokers or advertisers.

We disclose information only:

  • To Discord, as needed to read a command and post a reply.
  • To the third-party levels API as ticker requests (not your Discord identity, unless a token leak occurs).
  • To operators and hosting providers that run the process.
  • If required by law, or to defend a legal claim, or to stop abuse of the bot.

07Third parties

  • Discord. Discord Privacy Policy.
  • Third-party options-levels API (name omitted in public replies by the process). They see our server’s snapshot requests.

08Your rights and how to request deletion

Email Business@nefarious.trading with:

  • Whether you want a specific bot reply deleted, the vendor session retired, or both.
  • The Discord server, channel, and a message link if you have one.
  • Your Discord user id if a rate-limit or permission reply named you.

We will delete what we control (messages we can still reach, and host files we operate) unless we must keep a record of the request or of unlawful content. We cannot erase copies other members already screenshotted.

If you are in the EEA, UK, or a U.S. state with a comprehensive privacy law, you may also ask for access, correction, or a portable copy of any personal data we hold about you in this process — usually none beyond a short-lived rate-limit id. We will not discriminate against you for asking. You may complain to your local supervisory authority.

09Children

Discord requires users to meet its minimum age (generally 13+). Nefarious Options Levels is not directed at children under 13. If you believe we stored data about a child, contact Business@nefarious.trading and we will delete what we can reach.

10Changes

We may update this Policy by posting a new version at this URL. The “Last updated” date will change. Material changes will also be reflected on the Nefarious Options Levels Terms.

Also see our Nefarious Options Levels Terms, Privileged intents, Discord intents matrix, Site Privacy Policy, and Site Terms of Service.