We collect only minimal public Discord profile details and game identifiers. We never access passwords, private DMs, or sell your data to third parties.
01Information we collect
BiOs Play collects only the minimum necessary data to authenticate your identity, provision game panels, synchronize in-game access, provide customer support, and safeguard server security.
- Discord identity: When logging in via Discord OAuth2, we receive your Discord User ID, username, display name, avatar hash, and shared guild membership status.
- Game identifiers: We store your linked Minecraft username, Mojang UUID, FiveM license, and Steam ID to execute automatic whitelist and role provisioning.
- Game panel configurations & data: For customers purchasing Minecraft game panels, we store your server settings, allocated ports, server.properties configurations, automated cron schedules, console audit logs, and collaborator permission assignments solely to deliver your game panel service.
- Server connection logs: Game servers automatically record player IP addresses, connection timestamps, ping metrics, and in-game chat messages for anti-cheat, grief prevention, and DDoS mitigation.
- Store and transaction data: We retain transaction references, selected hosting packages, billing dates, and order status. We do not store sensitive payment card details on our servers.
02Minecraft game panel data protection & confidentiality
Your game server files, worlds, player data, and custom configurations stored within your BiOs Play Minecraft Game Panel remain strictly your intellectual and private property:
- Isolated containers: Each game panel operates within an isolated runtime environment with dedicated port allocations and sandboxed storage.
- SFTP and file privacy: Our staff does not inspect, modify, or download your game server files or player databases unless explicitly requested by you for technical troubleshooting in a support ticket.
- Automated backups: Backups generated via your panel are encrypted and stored in secure, separated backup volumes.
- Sub-user credential protection: Sub-user credentials and permissions granted on your panel are strictly partitioned to ensure authorized access only.
03Discord OAuth2 scope & authentication security
BiOs Play uses the official Discord OAuth2 authorization flow requesting only the standard 'identify' and 'guilds.members.read' scopes.
- We never receive, request, or store your Discord password.
- We cannot read your private direct messages (DMs) or access other Discord servers you participate in.
- We do not access your linked email address unless explicitly submitted in a support ticket.
- You can revoke BiOs Play authorization at any time in your Discord User Settings under Authorized Apps.
04Analytics and usage telemetry
To ensure optimal platform reliability, load performance, and error detection, BiOs Play utilizes privacy-respecting website analytics:
- Aggregate traffic telemetry: We collect aggregated, non-personally identifiable metrics such as page navigation latency, device type, browser platform, and geographic region.
- IP Anonymization: IP addresses processed by analytics telemetry are truncated and anonymized prior to storage.
- No cross-site tracking: Analytics data is used solely to optimize BiOs Play platform usability and is never merged with advertising networks.
- Opt-out options: Users can disable analytics tracking using standard browser privacy extensions or by enabling Global Privacy Control (GPC) headers.
05Cookies, session security & local storage
We employ industry-standard, privacy-respecting browser storage mechanisms:
- HTTP-only session cookies: Secure, signed authentication tokens that keep you logged in and protect against Cross-Site Scripting (XSS).
- Local preferences: We store lightweight UI preferences (such as dark or light theme selection) in your browser's local storage.
- Shopping cart state: Selected hosting packages and membership plans are cached locally in your browser session for seamless checkout review.
- No third-party ad cookies: We do not serve third-party marketing or tracking cookies on our platform.
06How we use your data
Your data is processed strictly for platform operations:
- Authenticating your account and verifying administrator permissions.
- Automatically delivering Minecraft ranks, FiveM permissions, and provisioning Minecraft Game Panels.
- Managing support tickets, order tracking, and notification preferences.
- Preventing ban evasion, unauthorized account access, and malicious network traffic.
- We do not sell, rent, monetize, or broker your personal data to third-party advertisers.
07Data retention schedule and automatic purging
Operational records and telemetry logs are subject to defined retention schedules:
- Server connection logs: Retained for up to 30 days for anti-cheat verification and DDoS mitigation, after which they are automatically rotated and purged.
- Support ticket transcripts: Retained for 180 days to maintain dispute history and support continuity.
- Expired game panel data: Files from cancelled hosting subscriptions are retained for a 7-day grace period to allow final world export, after which storage volumes are wiped.
- Transaction invoices: Maintained permanently in compliance with applicable commercial and financial record-keeping standards.
08Your rights, data export & deletion requests
You maintain full control over your personal data:
- One-click account export: You may download a complete JSON export of your profile, linked gaming IDs, panel configurations, and purchase history via our private account export API.
- Account unlinking and erasure: You may request complete unlinking and erasure of stored gaming records by opening an account ticket in the Support center.
- Deletion impact: Erasure of records will permanently revoke active automated whitelists, virtual rank synchronization, and active game panel instances.
09Children's privacy & age requirements
In accordance with Discord's Terms of Service and international COPPA regulations, BiOs Play is intended solely for individuals aged 13 and older (or the applicable minimum age in your jurisdiction). Accounts identified as belonging to underage users will be suspended and associated records removed.
10External links and third-party services
Our platform integrates with official third-party APIs to deliver core gameplay services:
- Discord API: Account authentication and community role synchronization.
- Mojang & Microsoft APIs: Verification of Minecraft Java Edition usernames and skins.
- Rockstar Games & Cfx.re: Verification of FiveM client licenses.
- External websites: We are not responsible for the privacy practices of external websites linked from community forums or user profiles.
11Policy modifications and contact
We may update this Privacy Policy periodically to reflect infrastructure improvements or regulatory changes. Any material changes will be announced on our official Discord and website announcements. For privacy inquiries, please contact support@biosplay.fun or open a support ticket.