<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://edfieldmanual.com/index.php?action=history&amp;feed=atom&amp;title=CMDR_Fima%2FPrivacy_Policy</id>
	<title>CMDR Fima/Privacy Policy - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://edfieldmanual.com/index.php?action=history&amp;feed=atom&amp;title=CMDR_Fima%2FPrivacy_Policy"/>
	<link rel="alternate" type="text/html" href="https://edfieldmanual.com/index.php?title=CMDR_Fima/Privacy_Policy&amp;action=history"/>
	<updated>2026-08-30T03:19:33Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.46.0</generator>
	<entry>
		<id>https://edfieldmanual.com/index.php?title=CMDR_Fima/Privacy_Policy&amp;diff=2632&amp;oldid=prev</id>
		<title>Sythan: Create CMDR Fima Privacy Policy</title>
		<link rel="alternate" type="text/html" href="https://edfieldmanual.com/index.php?title=CMDR_Fima/Privacy_Policy&amp;diff=2632&amp;oldid=prev"/>
		<updated>2026-08-29T23:33:56Z</updated>

		<summary type="html">&lt;p&gt;Create CMDR Fima Privacy Policy&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;{{Article header|section=EDFM|context=Community|deck=Privacy Policy for CMDR Fima, EDFM&amp;#039;s Discord bot.}}&lt;br /&gt;
&lt;br /&gt;
&amp;#039;&amp;#039;&amp;#039;Effective date:&amp;#039;&amp;#039;&amp;#039; 29 August 2026&amp;lt;br /&amp;gt;&lt;br /&gt;
&amp;#039;&amp;#039;&amp;#039;Last updated:&amp;#039;&amp;#039;&amp;#039; 29 August 2026&lt;br /&gt;
&lt;br /&gt;
This Privacy Policy explains how &amp;#039;&amp;#039;&amp;#039;CMDR Fima&amp;#039;&amp;#039;&amp;#039;, the Discord bot operated as part of the &amp;#039;&amp;#039;Elite Dangerous Field Manual&amp;#039;&amp;#039; (EDFM), processes Discord member and server information.&lt;br /&gt;
&lt;br /&gt;
{{EDFM policy commitments}}&lt;br /&gt;
&lt;br /&gt;
== Scope ==&lt;br /&gt;
&lt;br /&gt;
This policy applies to CMDR Fima. CMDR Fima is currently operated primarily for the official EDFM Discord server, but the policy is written so it can also apply if EDFM later uses the bot in additional Discord communities.&lt;br /&gt;
&lt;br /&gt;
This policy is specific to CMDR Fima. The EDFM website and wiki are covered separately by [[Elite Dangerous Field Manual:Privacy Policy]] and [[Elite Dangerous Field Manual:Cookie Policy]]. Discord&amp;#039;s own processing is governed by Discord&amp;#039;s policies.&lt;br /&gt;
&lt;br /&gt;
== Summary ==&lt;br /&gt;
&lt;br /&gt;
* CMDR Fima is used for EDFM information lookup, supported Elite Dangerous data lookups, verification, role management, moderation, logging, and server administration.&lt;br /&gt;
* CMDR Fima stores Discord snowflake IDs and moderation/configuration records in a local SQLite database.&lt;br /&gt;
* CMDR Fima does not sell Discord user data.&lt;br /&gt;
* CMDR Fima is not designed to create a permanent database archive of ordinary Discord conversations.&lt;br /&gt;
* Message edit/delete logging, where enabled, sends available message content to configured Discord log channels; that content is not stored in Fima&amp;#039;s SQLite database by the current implementation.&lt;br /&gt;
* Moderation records may be retained for community administration, abuse prevention, rule enforcement, and dispute resolution.&lt;br /&gt;
* Users may contact EDFM to request access, correction, or deletion of information associated with them, subject to moderation, safety, security, legal, and operational limits.&lt;br /&gt;
&lt;br /&gt;
== Information processed ==&lt;br /&gt;
&lt;br /&gt;
=== Discord account and server information ===&lt;br /&gt;
&lt;br /&gt;
CMDR Fima processes Discord account and server information needed to perform its functions. Depending on the command or event, this may include:&lt;br /&gt;
&lt;br /&gt;
* Discord user IDs;&lt;br /&gt;
* usernames, display names, global names, and mentions as returned by Discord;&lt;br /&gt;
* avatar or profile display data where Discord provides it for embeds or member display;&lt;br /&gt;
* guild/server IDs;&lt;br /&gt;
* role IDs;&lt;br /&gt;
* channel IDs;&lt;br /&gt;
* message IDs and message URLs;&lt;br /&gt;
* timestamps associated with joins, verification, commands, moderation actions, and log events.&lt;br /&gt;
&lt;br /&gt;
The bot&amp;#039;s database uses Discord IDs as the canonical identifiers. Usernames and display names are usually retrieved from Discord when needed for messages, embeds, or logs rather than being stored as separate profile records.&lt;br /&gt;
&lt;br /&gt;
=== Server configuration ===&lt;br /&gt;
&lt;br /&gt;
CMDR Fima stores server configuration for each configured guild, including IDs for the mute role, verified role, staff roles, moderation log channel, message log channel, member log channel, welcome channel, verification channel, role-panel channel, excluded message-log channels, the warning threshold, and the next moderation case number.&lt;br /&gt;
&lt;br /&gt;
=== Moderation information ===&lt;br /&gt;
&lt;br /&gt;
CMDR Fima stores moderation records in its SQLite database. These records may include:&lt;br /&gt;
&lt;br /&gt;
* moderation case numbers;&lt;br /&gt;
* case type, status, and timestamps;&lt;br /&gt;
* target user ID;&lt;br /&gt;
* moderator or actor user ID;&lt;br /&gt;
* warning reasons and internal notes;&lt;br /&gt;
* warning number and active/void status;&lt;br /&gt;
* void timestamps, voiding moderator ID, and void reasons;&lt;br /&gt;
* mute, kick, ban, unban, purge, channel-lock, channel-unlock, staff-note, and imported Discord-action case metadata where applicable;&lt;br /&gt;
* source channel IDs, source message IDs, and source message URLs where a moderation action relates to a message;&lt;br /&gt;
* whether a direct-message notification was attempted or delivered;&lt;br /&gt;
* Discord action status, such as pending, completed, failed, or not applicable;&lt;br /&gt;
* case revisions, including changed fields, previous and new values, change reason, changing staff member ID, and timestamp.&lt;br /&gt;
&lt;br /&gt;
Moderation records are used to administer and protect the EDFM Discord community, maintain an accurate moderation history, enforce server rules, and resolve disputes.&lt;br /&gt;
&lt;br /&gt;
CMDR Fima also reconciles certain moderation actions taken through Discord&amp;#039;s native audit log. The current implementation can import ban, unban, and kick actions that were not performed through Fima, recording them with reduced-confidence metadata rather than inventing a cause.&lt;br /&gt;
&lt;br /&gt;
=== Warning threshold and automatic mute ===&lt;br /&gt;
&lt;br /&gt;
Warnings are issued by authorized human moderators. The current EDFM configuration uses a warning threshold of three active warnings. When a member reaches the configured threshold, CMDR Fima records a pending automatic mute case and attempts to apply the configured mute role. This is a rules-enforcement workflow, not autonomous AI moderation.&lt;br /&gt;
&lt;br /&gt;
=== Message information ===&lt;br /&gt;
&lt;br /&gt;
CMDR Fima observes message events through Discord gateway events and uses the Message Content intent.&lt;br /&gt;
&lt;br /&gt;
The current implementation does &amp;#039;&amp;#039;&amp;#039;not&amp;#039;&amp;#039;&amp;#039; store ordinary message content in Fima&amp;#039;s SQLite database. It may store message IDs, channel IDs, message URLs, and related metadata when a message is the source of a moderation action.&lt;br /&gt;
&lt;br /&gt;
Where message logging is configured, CMDR Fima sends message edit and deletion logs to the configured Discord message-log channel unless the channel is excluded. Those log entries may include:&lt;br /&gt;
&lt;br /&gt;
* author mention/tag and user ID;&lt;br /&gt;
* channel reference;&lt;br /&gt;
* message URL for edited messages;&lt;br /&gt;
* before and after content for edited messages when available;&lt;br /&gt;
* deleted-message content when the message content is available in Discord&amp;#039;s cache;&lt;br /&gt;
* an attachment count.&lt;br /&gt;
&lt;br /&gt;
Deleted-message content depends on Discord/cache availability. If a deleted message is not cached, Fima logs that the content was not available. These message-log entries are Discord messages in the configured log channel; they are not separate SQLite message-content records created by Fima.&lt;br /&gt;
&lt;br /&gt;
CMDR Fima can also process a message temporarily when a staff member uses message-context actions such as EDFM search, warning a member from a message, deleting and warning, or adding a staff note.&lt;br /&gt;
&lt;br /&gt;
=== Verification and role information ===&lt;br /&gt;
&lt;br /&gt;
CMDR Fima stores verification records containing guild ID, user ID, join timestamp, Discord Rules Screening completion timestamp, verification timestamp, verification actor, whether the verified role was granted, and last verification attempt timestamp.&lt;br /&gt;
&lt;br /&gt;
CMDR Fima also stores self-assignable role-panel configuration, including panel names, descriptions, channel IDs, message IDs, group names, option labels, descriptions, emojis, role IDs, active status, and ordering. Ordinary role selections are applied to Discord roles; the current role-panel tables store the panel configuration, not a separate history of every member&amp;#039;s role-selection clicks.&lt;br /&gt;
&lt;br /&gt;
=== Command and interaction information ===&lt;br /&gt;
&lt;br /&gt;
CMDR Fima processes slash commands, message-context commands, buttons, select menus, and modal submissions. Some confirmation flows, such as ban, kick, warning, delete-and-warn, purge, and configuration actions, create short-lived interaction-session records containing:&lt;br /&gt;
&lt;br /&gt;
* an opaque token;&lt;br /&gt;
* guild ID;&lt;br /&gt;
* initiating user ID;&lt;br /&gt;
* action name;&lt;br /&gt;
* JSON payload needed to complete the confirmation;&lt;br /&gt;
* expiry timestamp;&lt;br /&gt;
* consumed timestamp if used.&lt;br /&gt;
&lt;br /&gt;
Interaction sessions are single-use and moderator-bound. They expire after five minutes under the current implementation. Expired sessions are purged on bot startup.&lt;br /&gt;
&lt;br /&gt;
== How information is used ==&lt;br /&gt;
&lt;br /&gt;
CMDR Fima uses information for operational purposes only, including:&lt;br /&gt;
&lt;br /&gt;
* executing bot commands and interactions;&lt;br /&gt;
* retrieving EDFM information;&lt;br /&gt;
* retrieving supported Elite Dangerous data;&lt;br /&gt;
* maintaining moderation cases and warning history;&lt;br /&gt;
* enforcing the configured three-active-warning mute workflow;&lt;br /&gt;
* verification and onboarding;&lt;br /&gt;
* self-assignable role management;&lt;br /&gt;
* staff logging and community administration;&lt;br /&gt;
* channel locking and restoring channel permissions;&lt;br /&gt;
* troubleshooting errors and preventing abuse;&lt;br /&gt;
* maintaining per-server configuration.&lt;br /&gt;
&lt;br /&gt;
CMDR Fima does not use Discord member data for advertising, behavioural marketing, sale of data, or unrelated profiling.&lt;br /&gt;
&lt;br /&gt;
== Elite Dangerous information providers ==&lt;br /&gt;
&lt;br /&gt;
The current implementation contacts:&lt;br /&gt;
&lt;br /&gt;
* EDFM&amp;#039;s MediaWiki API at &amp;lt;code&amp;gt;https://edfieldmanual.com/api.php&amp;lt;/code&amp;gt; for search, article extracts, page images, canonical URLs, categories, and wikitext needed for structured data;&lt;br /&gt;
* EDData at &amp;lt;code&amp;gt;https://api.eddata.dev&amp;lt;/code&amp;gt; for implemented commodity summaries, import/export market lists, nearby commodity market lists, and system lookups;&lt;br /&gt;
* EDSY only as a normal outbound link in ship embeds (&amp;lt;code&amp;gt;https://edsy.org/&amp;lt;/code&amp;gt;), not as an API request by the bot.&lt;br /&gt;
&lt;br /&gt;
EDData information is described in the code as EDDN-derived aggregated Elite Dangerous data. Ordinary Elite-data lookups should not transmit unnecessary Discord identity information to EDFM or EDData; requests are based on the topic, commodity, system, or page being requested.&lt;br /&gt;
&lt;br /&gt;
== Sharing of information ==&lt;br /&gt;
&lt;br /&gt;
CMDR Fima may disclose information in these limited ways:&lt;br /&gt;
&lt;br /&gt;
* to Discord, as part of normal bot operation, commands, roles, embeds, messages, moderation actions, and logs;&lt;br /&gt;
* to configured staff-only or private moderation/log channels, where enabled by server configuration;&lt;br /&gt;
* to authorized EDFM moderators and administrators who need the information for community administration, moderation, security, or troubleshooting;&lt;br /&gt;
* to EDFM infrastructure needed to operate the bot and wiki;&lt;br /&gt;
* to EDFM and EDData when making the implemented Elite Dangerous information requests described above.&lt;br /&gt;
&lt;br /&gt;
EDFM does &amp;#039;&amp;#039;&amp;#039;not&amp;#039;&amp;#039;&amp;#039; sell Discord user data.&lt;br /&gt;
&lt;br /&gt;
== Data retention ==&lt;br /&gt;
&lt;br /&gt;
=== Temporary interaction/session data ===&lt;br /&gt;
&lt;br /&gt;
Confirmation interaction sessions expire after five minutes. Expired sessions are deleted when CMDR Fima starts. Consumed session records remain until they are expired and purged by that startup cleanup.&lt;br /&gt;
&lt;br /&gt;
=== External Elite data cache ===&lt;br /&gt;
&lt;br /&gt;
CMDR Fima stores external cache entries for provider responses. The cache is intended for gameplay/reference data rather than personal Discord information. Cache TTLs in the current code include approximately 5 minutes for EDFM search, 30 minutes for EDFM structured data, 15 minutes for EDData commodity summaries, 3 minutes for EDData market searches, and 1 minute for autocomplete. Expired cache entries are purged on bot startup.&lt;br /&gt;
&lt;br /&gt;
=== Verification and role state ===&lt;br /&gt;
&lt;br /&gt;
Verification records and role-panel configuration are retained while needed for server membership, verification, onboarding, role management, and operational continuity. Leaving the server does not currently trigger an automatic deletion of the verification database row.&lt;br /&gt;
&lt;br /&gt;
=== Moderation records ===&lt;br /&gt;
&lt;br /&gt;
Moderation records, warnings, case revisions, lock snapshots, and related moderation metadata may be retained for community administration, abuse prevention, enforcement, maintaining an accurate moderation history, and resolving disputes. The current implementation does not automatically delete moderation records after a fixed period.&lt;br /&gt;
&lt;br /&gt;
=== Message logs ===&lt;br /&gt;
&lt;br /&gt;
The current implementation does not store ordinary message content in the SQLite database. Message edit/delete content, where available and where logging is enabled, is sent to the configured Discord message-log channel and is then subject to Discord channel retention, staff moderation, and any manual cleanup of that channel.&lt;br /&gt;
&lt;br /&gt;
=== Operational logs ===&lt;br /&gt;
&lt;br /&gt;
CMDR Fima uses structured application logging. Logs may include operational metadata such as error messages, interaction IDs, channel IDs for failed log delivery, guild IDs, target IDs in moderation reconciliation messages, provider error types, and command/search diagnostics. Secrets are redacted by the logger configuration. No bot-specific automatic log-retention period was found in the current implementation; retention depends on the process supervisor or host logging configuration.&lt;br /&gt;
&lt;br /&gt;
== Deleted accounts and departed members ==&lt;br /&gt;
&lt;br /&gt;
Discord account deletion or leaving the server does not automatically remove all CMDR Fima database records. Discord IDs may remain in moderation, verification, role-panel, configuration, or log records where those records are still needed for safety, enforcement, dispute resolution, security, or operational integrity.&lt;br /&gt;
&lt;br /&gt;
Where information is no longer necessary, EDFM can review whether it should be deleted, anonymized, or retained in a minimal form. Usernames may become stale over time, so Discord user IDs are the more reliable identifier for locating bot records.&lt;br /&gt;
&lt;br /&gt;
== Access, correction, and deletion requests ==&lt;br /&gt;
&lt;br /&gt;
To request information about CMDR Fima data associated with you, ask for correction of inaccurate data, or request deletion of data that is no longer necessary, contact EDFM at &amp;lt;code&amp;gt;contact@edfieldmanual.com&amp;lt;/code&amp;gt; or through an official EDFM staff contact route in the Discord server.&lt;br /&gt;
&lt;br /&gt;
Please include enough information to identify the relevant Discord account, such as your Discord user ID if you know it. Do not send passwords, bot tokens, or other secrets.&lt;br /&gt;
&lt;br /&gt;
EDFM will review requests case by case. EDFM may retain limited information where reasonably necessary to enforce bans, prevent abuse, protect the community, maintain moderation history, resolve disputes, preserve security, or comply with legal obligations. Where full deletion is not appropriate, EDFM may be able to correct, annotate, restrict, or minimize records.&lt;br /&gt;
&lt;br /&gt;
The current implementation does not expose self-service deletion tools to ordinary users. Data requests require staff/operator handling so that moderation and security records are not changed by unauthorized users.&lt;br /&gt;
&lt;br /&gt;
== Security ==&lt;br /&gt;
&lt;br /&gt;
CMDR Fima uses technical and administrative safeguards appropriate for a community Discord bot, including:&lt;br /&gt;
&lt;br /&gt;
* staff authorization checks for moderation and administrative commands;&lt;br /&gt;
* role hierarchy checks before granting or managing roles;&lt;br /&gt;
* moderator-bound, single-use confirmation tokens for sensitive actions;&lt;br /&gt;
* local SQLite storage on the bot host rather than public database exposure;&lt;br /&gt;
* separate bot credentials loaded from environment configuration;&lt;br /&gt;
* logger redaction for tokens and authorization headers;&lt;br /&gt;
* configured staff log channels for operational visibility;&lt;br /&gt;
* restricted access to moderation records through staff commands and server/operator access.&lt;br /&gt;
&lt;br /&gt;
No system can be guaranteed completely secure. EDFM may restrict access, rotate credentials, disable features, or preserve records where needed to investigate abuse, security incidents, or operational problems.&lt;br /&gt;
&lt;br /&gt;
== Children and Discord eligibility ==&lt;br /&gt;
&lt;br /&gt;
CMDR Fima is used through Discord. Users must meet Discord&amp;#039;s own eligibility requirements and applicable law for using Discord and joining Discord communities.&lt;br /&gt;
&lt;br /&gt;
== Changes ==&lt;br /&gt;
&lt;br /&gt;
This Privacy Policy may be updated when CMDR Fima&amp;#039;s functionality, configuration, data practices, or operational environment changes. The last-updated date at the top of the page should be revised when material changes are made.&lt;br /&gt;
&lt;br /&gt;
== Contact ==&lt;br /&gt;
&lt;br /&gt;
For privacy questions or data requests, contact: &amp;lt;code&amp;gt;contact@edfieldmanual.com&amp;lt;/code&amp;gt;. You may also contact authorized EDFM staff through the official EDFM Discord server when that is the relevant community context.&lt;br /&gt;
&lt;br /&gt;
== See also ==&lt;br /&gt;
&lt;br /&gt;
* [[CMDR Fima]]&lt;br /&gt;
* [[CMDR Fima/Terms of Use]]&lt;br /&gt;
* [[Elite Dangerous Field Manual:Privacy Policy]]&lt;br /&gt;
* [[Elite Dangerous Field Manual:Terms of Use]]&lt;br /&gt;
&lt;br /&gt;
[[Category:CMDR Fima]]&lt;/div&gt;</summary>
		<author><name>Sythan</name></author>
	</entry>
</feed>