Skip to content
STATIC STATE
Games About Press
Login with Discord

Static State / Legal

PRIVACY
POLICY

This policy explains what information the Static State website and official Discord applications process, why it is used, and the choices available to you.

Effective
July 12, 2026
Last updated
August 16, 2026
Contact
[email protected]

Contents

01 / Scope 02 / Information processed 03 / How information is used 04 / Cookies 05 / Third parties 06 / Retention 07 / Your choices 08 / Security 09 / Children 10 / Changes 11 / Contact

Summary

Static State does not sell personal information, run advertising trackers, or maintain a general database of Discord profiles. Discord login and bot commands are optional. The official Discord applications covered by this policy include Static State Bot and NODE ZERO Bot, and their core features are designed to use only the information needed to answer a request.

01

Scope

This Privacy Policy applies to the official Static State website, including staticstate.dev and its temporary Cloudflare Pages address, and to official Static State Discord applications, including Static State Bot and NODE ZERO Bot. It does not control the privacy practices of Discord, YouTube, Steam, Cloudflare, or other third-party services.

02

Information we process

Information received through Discord login

When you choose “Login with Discord,” the site requests Discord’s basic identity permission. The site may receive and use:

  • Your Discord user ID.
  • Your Discord username and display name.
  • Your Discord avatar identifier and profile image.

The site does not request your Discord password, email address, private messages, message content, friends list, or payment information. The temporary Discord access token used during login is not stored after the login request is completed.

Static State Discord community information

While you are logged in, the site may use a server-side Discord bot connection to check whether your account is a member of the Static State Discord server, whether server onboarding is pending, and which recognized community role should be shown in your website profile. The website displays only the highest relevant role selected by its role-priority rules.

Official Discord applications

When you invoke an application command, press an app-provided component, or submit information directly to Static State Bot or NODE ZERO Bot, Discord may provide the information needed to process that interaction. Depending on the command, this may include your Discord user ID, username or display name, server ID, channel ID, permission or role context, command name and options, and content you intentionally enter into command fields.

Core bot functionality is designed around Discord application commands and does not require Static State to read or store ordinary Discord message history. The bots do not request your Discord password, account token, friends list, or payment information. NODE ZERO Bot may generate an in-universe Operator identifier from your Discord user ID without maintaining a separate Operator-profile record solely to preserve that identifier.

NODE ZERO Rich Presence

NODE ZERO may use Discord Rich Presence to publish game activity through Discord when that feature is enabled. Rich Presence is handled through Discord and its user controls. Static State does not use the website to maintain a separate history of an individual player's Discord Rich Presence activity.

Session and technical information

The website stores a signed session cookie on your device. That cookie contains your Discord user ID, username, display name, avatar identifier, and session timestamps. Static State does not currently maintain a separate user-account database.

The hosting provider and normal internet infrastructure may automatically process technical information such as your IP address, browser type, device information, request time, and requested page for security, delivery, diagnostics, and abuse prevention.

03

How information is used

Information is used only as reasonably necessary to:

  • Authenticate you through Discord.
  • Display your Discord name, avatar, community status, and recognized role.
  • Show the appropriate Static State Discord action, such as joining or opening the server.
  • Protect the login process against forgery, tampering, abuse, and unauthorized access.
  • Respond to commands and components used with Static State Bot and NODE ZERO Bot.
  • Provide requested bot features such as public build status, project information, transmissions, fictional incident output, or an in-universe Operator identifier.
  • Apply command permissions, rate limits, abuse prevention, and other security controls.
  • Operate, secure, troubleshoot, and improve the website and official Discord applications.
  • Comply with applicable legal obligations or valid legal requests.

Static State does not use Discord information for targeted advertising and does not sell or rent it.

04

Cookies

The website currently uses only cookies necessary for login and security:

CookiePurposeDuration
static_state_session Keeps you signed in and stores the signed Discord identity session. Up to 7 days, or until logout.
static_state_oauth_state Protects the Discord login flow against request forgery. Up to 10 minutes.

These cookies are marked HttpOnly and SameSite=Lax, and they are marked Secure when transmitted over HTTPS. Blocking them may prevent Discord login from working.

05

Third-party services and disclosures

Static State may transmit or make information available to service providers only as needed to operate the website and official Discord applications:

  • Discord, for OAuth login, profile identity, server membership, role checks, application commands, and Rich Presence.
  • Cloudflare, for website hosting, delivery, security, and server-side application processing used by Static State services.
  • YouTube, when an embedded trailer is loaded or played. The site uses YouTube’s privacy-enhanced embed domain where configured.

Links to Steam, Discord, YouTube, and other external sites take you to services governed by their own terms and privacy policies.

Information may also be disclosed when reasonably necessary to comply with law, protect rights or safety, investigate abuse, or respond to a valid legal process.

06

Retention

  • The login session cookie expires after no more than 7 days and is deleted when you log out.
  • The OAuth security cookie expires after no more than 10 minutes.
  • Community membership and role information is requested when needed and is not stored in a separate Static State user database.
  • Bot interaction data is processed as needed to answer the interaction. Static State does not intentionally maintain a long-term per-user history of ordinary bot command usage for the core features described in this policy.
  • An in-universe NODE ZERO Operator identifier can be generated without maintaining a separate Operator-profile database solely for that identifier.
  • Technical logs controlled by hosting or third-party providers are retained according to those providers’ practices and applicable law.

07

Your choices and requests

You may:

  • Use the public website without logging in.
  • Log out to remove the Static State session cookie.
  • Revoke an application through Discord’s Authorized Apps settings where applicable.
  • Choose not to invoke a bot command or interact with an official Static State Discord application.
  • Remove an app from a server where you have permission to manage that installation.
  • Ask what data Static State has, request correction, or request deletion by emailing the address below.

Because Static State does not currently maintain a general account or Discord-profile database, a deletion request will often involve confirming what, if anything, is retained, deleting applicable Static State-controlled records, and helping you end an active session or authorization. Data controlled by Discord or another third party must be managed through that service.

08

Security

Static State uses reasonable technical measures designed to protect the website and Discord integrations, including signed session data, HttpOnly cookies, secure HTTPS transmission, short-lived OAuth state validation, interaction verification where applicable, and restricted server-side credentials such as bot tokens and signing secrets. No online system can be guaranteed completely secure.

09

Children

The website and official Discord applications are not directed to children under 13. Do not use Discord login or the Discord applications unless you meet Discord’s minimum age requirement and any higher minimum age required in your country. If Static State learns that personal information was collected from a child in violation of applicable law, reasonable steps will be taken to delete it.

10

Changes to this policy

This policy may be updated when the website, official Discord applications, Discord integration, business operations, or legal requirements change. The revised page will display a new “Last updated” date. Material changes may also be announced through appropriate Static State channels.

11

Contact

Privacy questions, access requests, correction requests, and deletion requests may be sent to:

Privacy contact [email protected]

This policy describes the website and official Discord applications as currently implemented or prepared for release. New features such as payments, subscriptions, newsletters, analytics, persistent user profiles, or substantially expanded app data collection may require this policy to be updated before those features launch.

© STATIC STATE

Privacy Terms