Effective 10 September 2026

Privacy Notice

This notice explains how the XIV Moonlink project operator handles personal data for the Moonlink private beta. The operator is the data controller and can be reached at privacy@moonlink.dev.

What Moonlink collects

What Moonlink does not collect

Discord access tokens are used only long enough to request your Discord identity and are not retained. Moonlink does not transport or upload game audio. Audio analysis, approved layouts, effect allowlists, renderer settings, and private device keys remain local unless you explicitly export or share setup data.

Why the data is used

Data is used to create or recover your account, enroll protected devices, authenticate sessions, remember venue access, enforce owner and administrator permissions, synchronize approved shows, prevent abuse, diagnose failures, and respond to support requests. Processing is based on providing the service you request, legitimate interests in operating a secure beta, consent where requested, and applicable legal obligations.

Sharing and processors

Moonlink uses Discord for identity verification and infrastructure providers to host the website and relay. Data may be disclosed when required by law, to protect users or the service, or with your direction. Personal data is not sold and is not used for third-party advertising.

Retention

Account, device, venue, and active grant records are retained while needed to provide the service. Security-audit records are designed for bounded retention of up to 180 days. Terminal invitation records are cleaned after a short security window. Backups may persist briefly after deletion until their normal rotation completes. Data may be kept longer when reasonably necessary to investigate abuse or meet a legal obligation.

Security

Moonlink uses protected non-exportable device keys where supported, signed authentication proofs, TLS, least-privilege service accounts, bounded inputs, and server-authoritative permissions. No system can guarantee absolute security.

Your choices and rights

You can disconnect a device locally, disable automatic venue joining, revoke venue access where authorized, and stop using Moonlink. Depending on your location, you may request access, correction, deletion, restriction, portability, or objection, and may complain to your local data-protection authority. Send requests to privacy@moonlink.dev. Identity verification may be required before account data is disclosed or changed.

Children

Moonlink is not directed to children under 13 or below the minimum age required to use Discord in their country. Do not use Moonlink if you cannot lawfully consent to these practices.

Changes

Material changes will be posted here with a revised effective date. Privacy questions can be sent to privacy@moonlink.dev.