Privacy Policy
Last updated: June 18, 2026
1.Introduction
This Privacy Policy describes how SkinAPI ("we", "us", "our") collects, uses, and protects your personal information when you use our website, API, and Discord bot.
By using our services, you agree to the collection and use of information in accordance with this policy.
2.Data We Collect
Website Data
- Account information (email, name, password)
- Steam profile data (when connected)
- API usage logs and request data
- Payment information (processed securely via Stripe)
- Browser and device information
Discord Bot Data
- Discord user ID and username
- Discord messages in AI training channels
- Connection codes (temporary, 5-minute TTL)
- User links between Discord and SkinAPI accounts
- Command usage and interaction data
3.How We Collect Data
- Direct user input during account creation and usage
- Automatic collection through cookies and server logs
- Discord API for bot integration
- Steam API for profile data
- Third-party services (Stripe for payments, MongoDB for storage)
4.How We Use Your Data
Service Provision
- API authentication and authorization
- Profile management and personalization
- Rate limiting and abuse prevention
Discord Bot
- User verification and account linking
- Command processing and response delivery
- AI training from community messages
Analytics
- Usage statistics and performance monitoring
- Service improvement and feature development
Security
- Fraud detection and prevention
- Account security and protection
5.Data Sharing
We DO NOT sell your personal data.
Shared with Service Providers
- MongoDB: Data storage and database management
- Stripe: Payment processing (card data never stored)
- Discord: Bot integration and user verification
- Steam: Profile data retrieval
Legal Requirements
- Court orders or legal requests
- Law enforcement investigations
- Protection of our rights and property
Business Transfers
In the event of merger, acquisition, or sale of assets, your data may be transferred to the new owner.
6.Data Security
We implement appropriate security measures to protect your personal information:
- Encryption in transit (HTTPS/TLS)
- Encryption at rest (MongoDB encryption)
- Access controls and authentication
- Regular security updates and monitoring
- Breach notification procedures
7.Data Retention
Website Data
- Account data: Until account deletion
- Usage logs: 90 days
- Payment data: Per Stripe policy (not stored by us)
Discord Bot Data
- Connection codes: 5 minutes (TTL)
- User links: Until disconnection
- Training messages: Until manual deletion
- AI training sets: Indefinite (unless rejected)
8.Your Rights
Right to Access:
Request a copy of your personal data and view your account information.
Right to Correction:
Update or correct inaccurate personal data.
Right to Deletion:
Delete your account, Discord connection, and request data removal.
Right to Portability:
Export your personal data in a machine-readable format.
Right to Object:
Opt out of certain data processing activities.
Right to Restrict:
Limit how we process your personal data.
9.Cookies and Tracking
We use cookies and similar technologies to improve your experience:
- Essential cookies for authentication and security
- Analytics cookies for usage monitoring
- Preference cookies for user settings
You can manage cookie preferences through your browser settings.
10.Third-Party Services
Our services integrate with third-party platforms:
- Discord: Bot integration and community features
- Steam: Profile data and inventory information
- Stripe: Secure payment processing
- MongoDB: Cloud database storage
Each third-party service has its own privacy policy. We encourage you to review their policies.
11.Children's Privacy
Our services are not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13.
If we discover that we have collected personal information from a child under 13, we will take steps to delete such information immediately.
12.International Data Transfers
Your data may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place to protect your data.
13.Changes to Privacy Policy
We may update this Privacy Policy from time to time. We will notify users of significant changes via email or Discord announcements.
Continued use of our services after changes constitutes acceptance of the updated policy.
14.Contact Information
If you have questions about this Privacy Policy or your personal data, please contact us:
- Email: skinapi@skinvaults.online
- Discord: Join our Discord server
- Website: https://skinapi.skinvaults.online