Privacy Policy
1. Who we are
Radiant ("Radiant", "we", "us", "our") is a Discord bot and website for VALORANT players, operated by Harsh Kohli, an individual based in India. Harsh Kohli is the data controller (and "Data Fiduciary" under India's Digital Personal Data Protection Act, 2023) for the personal data described in this policy.
You can contact us about anything in this policy at admin@harshkohli.com.
2. Scope
This policy covers the Radiant Discord bot (the "Bot"), the website at radiant.harshkohli.com (the "Site"), and any related account-linking and premium features (together, the "Service"). It does not cover Discord, Riot Games, payment platforms, or other third-party services, which have their own privacy policies.
3. Summary
- We collect the minimum Discord data needed to run commands and remember server settings.
- Riot account data is collected only if you choose to link your own Riot account through Riot's official sign-in (Riot Sign-On, "RSO").
- We never ask for or store your Riot password, and we never collect personal store, wallet or inventory data.
- We use only official sources: the Discord API and Riot Games' official API. We do not scrape websites or use unofficial game-client APIs.
- You can unlink your Riot account and delete your data at any time with
/unlinkor by emailing us. - We do not sell your personal data, and we do not use it for advertising.
4. Information we collect
4.1 Discord data (all users of the Bot)
- Identifiers: your Discord user ID and the IDs of servers (guilds), channels and roles where the Bot is used.
- Profile basics: your Discord username and display name, so the Bot can show them in its replies (for example on a leaderboard you have opted into).
- Server settings: configuration chosen by server administrators, such as alert channels, role mappings, enabled features and premium status.
- Command usage logs: which command was used, when, in which server, and whether it succeeded or failed. We use these for debugging, abuse prevention, rate limiting and aggregate usage statistics. We do not read or store the content of ordinary chat messages; the Bot works through slash commands and buttons.
- Custom match data (if used): for 10-man custom match tools, the list of members who joined a queue, the teams created and map vote results.
4.2 Riot account data (only if you opt in through RSO)
If you run /link and sign in with Riot, Riot shares a limited set of data with us under the permissions you approve. We then request data about your account from Riot's official API. This may include:
- Account identifiers: your PUUID (Riot's player ID), your Riot ID (game name and tagline, for example
Example#0000), and your account region/shard. - RSO tokens: access and refresh tokens issued by Riot so we can keep your link active. Refresh tokens are stored encrypted.
- Competitive and match data: your rank (competitive tier), match history and per-match statistics such as agent, map, result, score, kills, deaths, assists and similar values returned by Riot's official API.
- Derived statistics: figures we calculate from that match data, such as win rates, averages and trends over time.
- Your visibility choices: whether you have opted in to appearing on server leaderboards, rank roles and other features that show your data to others, along with a timestamped record of when you opted in or out.
4.3 Premium and payment data
If premium features become available and you purchase them, payment is handled by third-party platforms such as Discord (Premium Apps), Patreon or Ko-fi. We do not receive or store your full card or bank details. We receive limited information needed to grant your benefits, such as an entitlement or subscription ID, the Discord user or server it applies to, plan, status, start and end dates, and, where the platform provides it, the name or email on the supporter account so we can match a purchase to you. Redeem codes you use are recorded against your Discord user or server ID.
4.4 Website
The Site is a static website. It has no user accounts, forms, analytics or advertising trackers. Like any website, our hosting provider may automatically log technical information such as your IP address, browser user agent, requested page and time of the request, for security and to keep the Site running. The Site loads fonts from Google Fonts, which means your browser connects to Google's servers and Google may receive your IP address (see Google's Privacy Policy).
4.5 When you contact us
If you email us, we receive your email address and whatever you include in your message, and we use it to reply and resolve your request.
5. What we do not collect
- We never ask for, receive or store your Riot Games password or login credentials. Sign-in happens on Riot's own pages.
- We do not collect personal store offers, Night Market offers, wallet balances (VP, Radianite or other currency), inventory, skins owned, loadouts or purchase history from your Riot account.
- We do not use scraping, unofficial or private game-client APIs, or any method other than Riot's official API and RSO to obtain Riot data.
- We do not collect data about players who have not linked their account and opted in, beyond what is needed to operate the Service. Where Riot match data includes other players, we do not display or build profiles of players who have not opted in.
- We do not read your Discord direct messages or the content of ordinary server chat.
- We do not collect precise location, contacts, or government ID.
6. How we use information
- To provide the Service: respond to commands, show information you request, and remember server and user settings.
- To show your linked profile and statistics, and, only if you opt in, to include you on server leaderboards, rank roles, custom match tools and recaps in servers where you use Radiant.
- To send alerts that a server administrator has configured, such as new patch notes or a new act.
- To provide and manage premium features, trials and redeem codes.
- To keep the Service secure and reliable: prevent abuse and spam, enforce rate limits, debug errors and monitor performance.
- To comply with the policies of Discord and Riot Games, and with applicable law.
- To respond to support requests and communicate important changes.
We do not sell personal data, share it with advertisers, or use it to make decisions that have legal or similarly significant effects on you.
7. Legal basis for processing
India (DPDP Act 2023): we process personal data on the basis of your consent (for example, when you link your Riot account and choose your visibility settings) and for legitimate uses permitted by the Act, such as processing data you have voluntarily provided for a specific purpose (for example, using a command) and complying with law.
EEA/UK (GDPR / UK GDPR), where applicable:
- Contract: to provide the features you ask for, including premium features you purchase.
- Consent: for linking your Riot account and making your data visible to others. You can withdraw consent at any time with
/unlinkor by changing your visibility settings; this does not affect processing done before withdrawal. - Legitimate interests: for security, abuse prevention, debugging and aggregate usage statistics, balanced against your rights.
- Legal obligation: where we must keep records, for example for tax purposes.
8. Visibility of your data and opt-in
- Your own profile and stats commands are visible in the channel where you use them, unless the reply is marked as only visible to you.
- Server leaderboards, rank roles, recaps and custom match team balancing only include members who have linked their account and opted in. You can opt out at any time without unlinking.
- We keep a timestamped record of each opt-in and opt-out so that we can demonstrate compliance with Riot Games' player opt-in requirements.
9. Third parties we share data with
We share personal data only as needed to run the Service:
| Third party | Why | Their policy |
|---|---|---|
| Discord Inc. | The Bot runs on Discord. Discord processes all messages and interactions sent through its platform, and handles purchases made through Discord Premium Apps. | discord.com/privacy |
| Riot Games, Inc. | Riot Sign-On for account linking, and Riot's official API for game data. When we request data, Riot receives your PUUID or the access token you authorised. | riotgames.com/en/privacy-notice |
| Hosting and infrastructure providers | Our servers, database and website are hosted by third-party cloud providers who store and process data on our behalf under their security terms. | Available on request |
| Payment platforms (Discord, Patreon, Ko-fi and their payment processors) | To process premium purchases and tell us which benefits to grant. They handle your payment details directly. | Patreon, Ko-fi |
| Google Fonts (Site only) | Serves the fonts used on the Site. | policies.google.com/privacy |
We may also disclose information if required by law, court order or a valid request from a government authority; to enforce our Terms of Service; or to protect the rights, safety or property of our users, ourselves or others. If Radiant is ever transferred to a new operator, your data may be transferred as part of that, and we will notify you in advance.
10. Data retention
| Data | How long we keep it |
|---|---|
| Server settings | While the Bot is in the server. Deleted within 30 days after the Bot is removed. |
| Discord user preferences | Until you ask us to delete them, or after 12 months without any use of the Bot. |
| Command usage logs | Up to 30 days. After that, only aggregated, non-identifying counts are kept. |
| Riot account link, RSO tokens, rank and match data | While your account is linked. Deleted from our live systems when you run /unlink or ask us by email, and from backups within 30 days. Links unused for 12 months may be removed automatically. |
| Opt-in / opt-out records | A minimal record (Discord user ID, action and timestamp) for up to 24 months, to demonstrate compliance with Riot's opt-in requirements. Then deleted. |
| Premium and payment records | For the life of the subscription, then as long as required by tax and accounting law (in India, generally up to 8 years). |
| Support emails | Up to 24 months after the conversation ends. |
| Custom match queues and teams | Deleted within 7 days after the match session ends. |
11. Unlinking and deletion
/unlink: disconnects your Riot account, revokes our stored tokens, and deletes your Riot data (PUUID, Riot ID, rank, match and derived stats) from our live systems.- Visibility settings: opt out of leaderboards and rank roles at any time without unlinking.
- Riot account settings: you can also revoke Radiant's access from your Riot account's connected apps settings, where available.
- By email: email admin@harshkohli.com from any address and include your Discord user ID to request access to, correction of, or deletion of your data. We may ask you to confirm the request from your Discord account to verify it's you. We aim to respond within 30 days.
- Server administrators can remove all server settings by removing the Bot from the server, or by emailing us.
12. Your rights
India: Digital Personal Data Protection Act, 2023
- Right to access a summary of the personal data we process about you and the processing activities.
- Right to correction, completion, updating and erasure of your personal data.
- Right to withdraw consent at any time, as easily as you gave it.
- Right to grievance redressal. Contact us first at admin@harshkohli.com. If you're not satisfied with our response, you may complain to the Data Protection Board of India.
- Right to nominate another person to exercise your rights in the event of death or incapacity.
EEA and UK: GDPR / UK GDPR
- Rights of access, rectification, erasure, restriction of processing and data portability.
- Right to object to processing based on legitimate interests.
- Right to withdraw consent at any time.
- Right to lodge a complaint with your local data protection supervisory authority.
Users in other regions may have similar rights under local law. We honour valid requests from any user, wherever they live. We will not discriminate against you for exercising your rights.
13. Cookies
The Site does not set cookies and does not use analytics or advertising trackers. If a future account-linking page needs a cookie (for example, a short-lived security cookie to protect the Riot Sign-On flow), it will be strictly necessary, used only for that purpose, and described here.
14. Children
Radiant runs on Discord and is intended only for people who meet Discord's minimum age requirement (13, or older where local law requires it). Riot account linking and premium purchases are intended for users who are 18 or older, or who have the permission of a parent or legal guardian where the law requires it. We do not knowingly collect personal data from children in violation of applicable law, and we do not track children's behaviour or target advertising at them. If you believe a child has provided personal data to us without the required consent, contact admin@harshkohli.com and we will delete it.
15. Security
- Data is encrypted in transit (HTTPS/TLS), including all requests to Discord and Riot APIs.
- RSO refresh tokens and other secrets are encrypted at rest. API keys are stored as server-side secrets, never in source code or client-facing files.
- Access to production systems and databases is limited to the operator and protected by strong authentication.
- We collect only what we need and delete it on the schedule above.
- If a personal data breach occurs, we will notify affected users and the relevant authorities as required by law.
No system is completely secure, but we work to protect your data using reasonable safeguards.
16. International transfers
Radiant is operated from India, and our service providers (including Discord, Riot Games and our cloud hosting providers) may process data in India, the United States, the European Union or other countries. Where we transfer personal data internationally, we rely on our providers' standard safeguards (such as Standard Contractual Clauses where applicable) and comply with any transfer restrictions issued under the DPDP Act.
17. Changes to this policy
We may update this policy as Radiant develops, for example when new features launch. We will change the "Last updated" date above, and for significant changes we will give notice on the Site or through the Bot before they take effect. Where the law requires it, we will ask for your consent again.
18. Contact and grievances
Harsh Kohli, operator of Radiant, India
Email: admin@harshkohli.com
This email is also our point of contact for grievances and data protection requests under the DPDP Act 2023 and the GDPR.