The short version. PokeFoundry collects what it needs to send you alerts and run checkout tasks, and nothing for advertising. There are no analytics, no tracking pixels and no data sales. Most records are deleted after 30 days, and you can ask for the rest to be deleted at any time.
Who we are
PokeFoundry is a restock-alert service run by an independent operator. It includes this website, the dashboard at dash.pokefoundry.com, and the PokeFoundry Discord bot. Questions about this policy go to the operator in the PokeFoundry Discord server.
What we collect
From Discord, when you sign in or use the bot
- Your Discord user ID, username, display name and avatar.
- The roles you hold in the PokeFoundry Discord server, which decide what you can do on the dashboard.
Sign-in asks Discord for the identify and guilds.members.read permissions only. We never receive your password or your email address, and we can’t read your messages or see your other servers.
What you set up
- Your keywords: the words, the store, and any variant, price and quantity settings, and whether each one is on or off.
- Requests you make to add or remove a store, change a discount code or block a word.
Checkout tasks
If you use automatic checkout, your checkout profile (such as your shipping address, contact details and payment card) is stored in Cybersole, the checkout software we use. Our server keeps a copy of the profile list so it can match a task to your Discord account. For each task we record the store, the product, the variant and the time. For each completed checkout we record the store, the product, the price and the time.
Activity
When you change something from Discord or the dashboard, such as creating or deleting a keyword, starting a task, or staging a store or blocklist change, we record who did it, what changed and when. That record is how our support team answers questions like “who switched my keyword off?”.
Technical data
- Cookies that keep you signed in (listed below).
- Your IP address and request details, processed by Cloudflare, which carries all traffic to this site and the dashboard. Our own server logs record errors and events. They don’t record page views.
Things we don’t collect about you
The service reads public product listings from the stores it monitors. That is information about products, not people.
Cookies
This website sets no cookies of its own. The dashboard sets the cookies below. All three are needed for it to work, none of them is used for tracking or advertising, and each is HttpOnly and SameSite=Lax (plus Secure over HTTPS).
| Cookie | What it does | How long it lasts |
|---|---|---|
og_dashboard | Keeps you signed in. It’s signed, so it can’t be edited. | 12 hours |
og_oauth_state | Protects the Discord sign-in step against forged requests. | 10 minutes |
og_mode | Remembers staff view settings, such as edit mode. | Up to 30 days |
Cloudflare may set its own strictly necessary security cookies to tell people from bots.
How we use it
- To match new products and restocks against your keywords and alert you.
- To create, run and clean up checkout tasks on your profile.
- To decide what you can see and change on the dashboard.
- To keep the service secure, investigate problems, and answer support questions.
We don’t sell your data, share it for advertising, or use it to build profiles for anyone else.
Who else handles it
- Discord delivers alerts. Product alerts are posted in channels other members can see, and a checkout alert mentions you by name. Discord’s own privacy policy covers what it stores.
- Cybersole stores checkout profiles and runs checkout tasks.
- Cloudflare hosts this website and carries traffic to the dashboard.
- GitHub stores the service’s configuration in a private repository. A request to add or remove a store, change a discount code or block a word becomes a change request there, and it includes your Discord username.
- The stores you buy from receive what any checkout sends them, under their own policies.
We may disclose information if the law requires it.
How long we keep it
| Record | Kept for |
|---|---|
| Restock history and the activity log | 30 days, then deleted automatically |
| Temporary checkout tasks from the dashboard | Deleted when they expire |
| Checkout task limits (used to stop runaway tasks) | A few days at most |
| Your keywords | Until you delete them, or ask us to |
| Sign-in sessions | 12 hours |
| Checkout profiles and checkout history | Until the profile is removed from Cybersole |
| Configuration change requests on GitHub | As long as the repository exists |
Your choices and rights
- You can view, pause, edit and delete your keywords at any time, in Discord or on the dashboard.
- You can ask us for a copy of what we hold about you, to correct it, or to delete it, by messaging the operator in the PokeFoundry Discord server. We’ll respond within 30 days. Deleting your data ends automatic checkout for your account.
- Depending on where you live (for example in the EU, the UK or California), you may have further rights under local law, including the right to complain to a data protection authority.
Children
PokeFoundry isn’t intended for anyone under 13, or under the minimum age for a Discord account where you live.
Security
How we protect your account and data is described on the security page.
Changes to this policy
If this policy changes, we’ll update the date at the top. We’ll announce significant changes in the Discord server before they take effect.