Effective 10 September 2026
Privacy Notice
This notice explains how the XIV Moonlink project operator handles personal data for the Moonlink private beta. The operator is the data controller and can be reached at privacy@moonlink.dev.
What Moonlink collects
- When you sign in with Discord: your stable Discord user ID. A Moonlink display name is also stored. Moonlink does not request your Discord email, guild list, messages, contacts, or friends.
- Account and security data: opaque Moonlink account and device IDs, device display names, public device keys and fingerprints, role grants, revocations, invitations, recovery state, and bounded security-audit events.
- Venue and session data: normalized venue bindings, access policies, show revisions, connection/session state, and the minimum technical metadata needed to operate and protect the relay.
- Information you send when requesting support or exercising a privacy right.
What Moonlink does not collect
Discord access tokens are used only long enough to request your Discord identity and are not retained. Moonlink does not transport or upload game audio. Audio analysis, approved layouts, effect allowlists, renderer settings, and private device keys remain local unless you explicitly export or share setup data.
Why the data is used
Data is used to create or recover your account, enroll protected devices, authenticate sessions, remember venue access, enforce owner and administrator permissions, synchronize approved shows, prevent abuse, diagnose failures, and respond to support requests. Processing is based on providing the service you request, legitimate interests in operating a secure beta, consent where requested, and applicable legal obligations.
Sharing and processors
Moonlink uses Discord for identity verification and infrastructure providers to host the website and relay. Data may be disclosed when required by law, to protect users or the service, or with your direction. Personal data is not sold and is not used for third-party advertising.
Retention
Account, device, venue, and active grant records are retained while needed to provide the service. Security-audit records are designed for bounded retention of up to 180 days. Terminal invitation records are cleaned after a short security window. Backups may persist briefly after deletion until their normal rotation completes. Data may be kept longer when reasonably necessary to investigate abuse or meet a legal obligation.
Security
Moonlink uses protected non-exportable device keys where supported, signed authentication proofs, TLS, least-privilege service accounts, bounded inputs, and server-authoritative permissions. No system can guarantee absolute security.
Your choices and rights
You can disconnect a device locally, disable automatic venue joining, revoke venue access where authorized, and stop using Moonlink. Depending on your location, you may request access, correction, deletion, restriction, portability, or objection, and may complain to your local data-protection authority. Send requests to privacy@moonlink.dev. Identity verification may be required before account data is disclosed or changed.
Children
Moonlink is not directed to children under 13 or below the minimum age required to use Discord in their country. Do not use Moonlink if you cannot lawfully consent to these practices.
Changes
Material changes will be posted here with a revised effective date. Privacy questions can be sent to privacy@moonlink.dev.