Privacy Policy
Last updated: March 13, 2026
K-Bot Factory ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how your personal information is collected, used, and disclosed by K-Bot Factory.
This Privacy Policy applies to our website, https://kbot.jevi.es (the "Service"), and the bots built by K-Bot Factory. By accessing or using our Service, you signify that you have read, understood, and agree to our collection, storage, use, and disclosure of your personal information as described in this Privacy Policy and our Terms of Service.
1. Definitions and Key Terms
To help explain things as clearly as possible, every time any of these terms are referenced, they are strictly defined as:
- Cookie: A small amount of data generated by a website and saved by your web browser. It is used to identify your browser, provide analytics, and remember information about you such as login information.
- Data Controller: For the purpose of the GDPR, the Data Controller is Jesús Vílchez, based in Spain, responsible for the collection and processing of your personal data.
- Device: Any internet-connected device such as a phone, tablet, computer, or any other device that can be used to visit K-Bot Factory and use the services.
- Personal Data: Any information that directly, indirectly, or in connection with other information allows for the identification or identifiability of a natural person.
- Service: Refers to the service provided by K-Bot Factory (building and managing custom Discord bots) as described on this platform.
- Third-party service: Refers to payment processors, analytics providers, and security services used to facilitate our operations.
- You: A person or entity that is registered with K-Bot Factory to use the Services.
2. What Information Do We Collect?
We collect information to provide a better experience and to fulfill the technical requirements of building your custom bots.
A. Identity & Authentication (via Discord OAuth2)
We use Discord OAuth2 for secure authentication via NextAuth.js. We do not store your Discord password. We only access and store:
- Unique Discord ID
- Discord Username
- Email address
- Discord Avatar URL
B. Billing Information
When you make a purchase, we collect billing details necessary for invoice generation and tax compliance:
- Billing Name
- Billing Address
- Country of residence
- Other billing information as required by law
C. Bot Configuration Data
To build and host your bot, we collect the preferences you provide, which may include:
- Custom bot names
- Currency names
- Any other user-defined configuration settings
3. How Do We Use Your Data?
Any of the information we collect may be used in the following ways:
- To provide and maintain our Service: Specifically, to link your Discord account to your bot configurations.
- To process transactions: Your billing data is used for payment verification and legal tax reporting.
- To personalize your experience: Using your avatar and username to identify your account.
- To improve customer service: Helping us respond to your support requests more efficiently.
- To send transactional emails: Using your email address via Resend to send order confirmations, updates, and bot status alerts.
4. Third-Party Services (Processors)
We share your data with selected third-party processors only as necessary to provide the Service. All processors are vetted for GDPR compliance:
- Stripe: Handles all payment processing. We do not store credit card numbers on our servers. Stripe manages payment data and fraud prevention.
- Google Analytics (GA4): Used for website traffic analysis. This is only active if you provide explicit consent via our cookie banner.
- Cloudflare Turnstile: Used for security and bot protection during form submissions.
- Resend: Used to deliver transactional and system-related emails.
5. Cookies & Local Storage
You can view more information about Cookies and Local Storage in our Cookie Policy.
Essential Cookies
These are required for the website to function and cannot be switched off:
next-auth.session-token: Maintains your login session.next-auth.csrf-token: Protects against Cross-Site Request Forgery attacks.
Local Storage
We use local storage to improve your browsing experience:
cookieConsent: Stores your privacy and cookie preferences.bot_config_draft: Temporarily stores your bot configuration settings while you complete the authentication or checkout process.
6. International Data Transfers
As an entity based in Spain, we comply with EU data protection standards. However, some of our third-party processors (such as Discord, Stripe, and Google) may store or process data on servers located outside the European Economic Area (EEA), primarily in the United States. We ensure these transfers are protected by Standard Contractual Clauses (SCCs) or other legal frameworks approved by the European Commission.
7. Data Retention
We keep your information only as long as:
- You maintain an active account with K-Bot Factory.
- It is required by Spanish law for tax and accounting purposes (typically 5 to 6 years for billing information).
- It is necessary to provide the technical services you have requested.
- It is necessary to comply with legal obligations.
- You have not revoked your consent.
When data is no longer needed, it is either permanently deleted or anonymized.
8. Your Rights under GDPR and Spanish Law
As a resident of the European Union/Spain, you have the following rights regarding your Personal Data:
- Right of Access: You can request a copy of the data we hold about you.
- Right to Rectification: You can request that we correct inaccurate or incomplete data.
- Right to Erasure ("Right to be Forgotten"): You can request that we delete your personal data from our systems, provided there is no legal obligation for us to keep it (e.g., tax records).
- Right to Restrict Processing: You can ask us to temporarily stop processing your data.
- Right to Data Portability: You can request your data in a structured, commonly used, and machine-readable format.
- Right to Object: You can object to us processing your data for specific purposes, such as analytics.
To exercise any of these rights, please contact us at privacy@kbot.jevi.es. We will respond to your request within 30 days.
9. Security Measures
We implement a variety of security measures to maintain the safety of your personal information. We use SSL (Secure Socket Layer) technology to encrypt data in transit. Access to personal data is restricted to authorized personnel who are required to keep the information confidential. However, please note that no method of transmission over the Internet is 100% secure.
10. Kids' Privacy
K-Bot Factory is not intended for children under the age of 13. We do not knowingly collect personally identifiable information from children. If we become aware that we have inadvertently collected data from a user under 13, we will take immediate steps to delete that information from our servers.
11. Changes To Our Privacy Policy
If we decide to change our privacy policy, we will post those changes on this page and update the modification date. We encourage you to review this page periodically.
12. Contact Us
If you have any questions or wish to exercise your data rights, please contact the Data Controller:
Jesús Vílchez
Email: privacy@kbot.jevi.es
Website: https://kbot.jevi.es
Discord support server https://discord.gg/QyXw3v633W