Skip to content
Journo

Privacy policy

Draft for review. This draft was written from how Journo's code actually works. It isn't legal advice. Have it checked before you publish, fill in the dashed placeholders, and check the notes marked Review.

Last updated: 30/09/2026

This policy explains what data the Journo Discord bot and this website (https://journo.top) use, why, and for how long.

Who we are

Journo is run by Journo, Tel Aviv, Israel. Contact: support@journo.top.

Review: when a server owner adds Journo to their server, they decide which features run and which channels Journo reads. For that data the server owner may be the controller and we the processor, or we may be joint controllers. Decide which applies and say so here.

This website

This website is a set of static pages. It sets no cookies and runs no analytics or advertising. It stores one thing in your browser: whether you chose dark or light mode. That stays on your device.

Our hosting provider, Hostinger, keeps standard server logs (such as IP addresses and the pages requested) to run and protect the site.

What the bot uses

Journo uses Discord IDs (numbers that identify servers, channels, roles, messages and members) to work. Beyond that, it only uses data for the features a server has switched on.

FeatureWhat is storedSent to an AI service?
SettingsThe server's settings and choicesNo
Help deskWhat admins teach it (text, files, web pages, messages added with Teach the assistant) and who added itQuestions and relevant parts of the knowledge base, to Anthropic
TicketsSubject, status and who opened it. The conversation stays in Discord; a transcript is posted to the server's log channel when the ticket closesTicket messages, to Anthropic, for the AI first reply and the check for complex tickets
Application formsThe applicant's answers, the result and who reviewed itNo
AI watchMessages in watched channels are checked. For each strike: the rule, the reason, a short excerpt of the message and the action takenMessages in watched channels, to Anthropic
ModerationWarnings and their reasons. Edit and delete logs are posted in the server's own log channelNo
Sealed lettersThe letter's text, who wrote it, who it's for and who opened itOnly if the writer asks the AI to rewrite it (Anthropic), and the safety filter (OpenAI)
AI picturesHow many pictures each member madeThe member's request, to Anthropic (to write the art brief) and OpenAI (to paint it and check it's safe)
Points, coins, raffles, questsBalances (including how many points came from donating), message counts, daily streaks, entries and rewardsNo
Shop, donations, membershipsAmounts, currency, the PayPal order or subscription ID, an optional donation message, and whether it was anonymousNo
Payouts (server owners)The PayPal email the server owner gives for payouts, and payout recordsNo
PollsQuestions, answers and resultsNo
StatsDaily message counts per member and counts of joins and leavesNo
Member insights (Plus and up)See belowMessages in chosen channels, to Anthropic

Journo never sees card or bank details. Payments happen on PayPal's own site.

Member insights

Member insights are switched on by a server's admins, on the Plus and Premium plans, for the channels and forums they choose.

  • Journo reads the messages in the chosen channels (and their threads and forum posts) to find requests, ideas, complaints, questions and praise.
  • The message text is deleted as soon as the AI has read it. Messages waiting to be read are deleted after 7 days at most.
  • What is kept is a one-line neutral summary, its topic and mood, the author's Discord ID (to count how many different members raised something), and a link to the message.
  • Summaries are deleted after 30 days on Plus and 180 days on Premium.
  • Staff messages are skipped unless the server turns that on. Very short messages are ignored.

Server owners must tell their members when insights are on. Journo can post a notice for them that lists the channels it reads and how long summaries are kept.

Services we use

  • Discord, to run the bot.
  • Anthropic (Claude), for AI answers, ticket replies, letter rewrites, art briefs, the AI watch and member insights.
  • OpenAI, for AI pictures and the safety filter.
  • PayPal, for payments, subscriptions and payouts.
  • Hostinger, where the bot and its database run.

Some of these are in the United States. Review: list the safeguards for these transfers (such as standard contractual clauses).

Review: confirm these with your adviser.

  • To provide the features a server has switched on (contract, or legitimate interests of the server and its members).
  • To keep servers safe: moderation and the AI watch (legitimate interests).
  • To take and record payments and pay server owners (contract, and legal duties such as keeping accounting records).

How long we keep it

  • Member insights: as described above.
  • Payment and payout records: as long as the law requires for accounting, up to 10 years.
  • Everything else: while Journo is in the server. Server admins can remove most data with Journo's own commands, such as removing knowledge sources, clearing warnings or pardoning strikes.
  • When Journo is removed from a server, its data isn't deleted automatically yet. We delete it on request within 60 days.

Your rights

Depending on where you live, you can ask to see, correct or delete your data, to restrict or object to how it's used, or to get a copy. Contact support@journo.top. Include your Discord ID and the server. You can also complain to your data protection authority.

Children

Discord's own minimum age applies (13 in most countries, older in some). Journo isn't meant for anyone below it.

Changes

We'll update the date at the top when this policy changes, and announce big changes on our support server.