Privacy Policy
Last updated: July 2026
This Privacy Policy explains how WardogsHub collects, uses, and protects personal data when you use wardogshub.net. We aim to be transparent about exactly what we store.
1. Data controller & contact
WardogsHub operates this website (community project, not affiliated with Bulkhead Interactive).
Privacy and general inquiries: Email: contact@wardogshub.net
You can also open a support ticket on the website (Discord login required).
2. Data we store (account)
When you sign in with Discord, we create a user account in our database. We store:
- Internal account ID
- Discord user ID
- Discord username
- Discord global display name (if available)
- Discord avatar URL
- Optional linked SteamID64 (for WARDOGS player stats)
- Role flags used on the site (admin, moderator, Bulkhead, wiki editor)
- Account created / updated timestamps
3. Data we store (preferences)
Optional settings linked to your account:
- News-feed preferences (card/list view, hidden sources, optional card width)
- Navbar visibility preferences (which menu tabs you hide)
- Measurement system preference (metric or imperial)
4. Data we store (player stats)
If you link Steam and use the statistics page, we store:
- Your SteamID64 on your account (until you unlink it or delete the account)
- Short-lived cache of player stats responses (typically minutes) once an official Bulkhead / WARDOGS API is connected — not a long-term match-history database
5. Data we store (support tickets)
If you submit a ticket, we store:
- Ticket type (feedback, bug, or support)
- Status, timestamps, and the page URL you reported from
- Your message and the full conversation thread
- Your user ID and display name as reporter
- Staff replies, claim/assignment info, and resolution metadata when staff handle the ticket
6. Data we store (loadouts)
If you use the Loadout Maker and save loadouts, we store your loadout name, the loadout configuration (JSON), sort order, favorite flag, and timestamps — linked to your account.
7. Data we store (wiki & staff activity)
Wiki edits and staff actions may create records that include your user ID and display name:
- Wiki pages/categories: author and last editor name/ID
- Wiki images: uploader user ID (if available)
- Wiki edit history: actor name/ID, action type, and content snapshots before/after
- Admin audit logs: who changed member roles, site settings, feature flags, cron schedules, etc. (actor name/ID and change details)
8. Data we do not store
We do not permanently store Discord OAuth access or refresh tokens in the database (session authentication is handled via Auth.js session cookies).
We do not store your Steam password. Steam linking uses Steam OpenID and only provides your SteamID.
We do not use advertising trackers or sell personal data.
9. Ko-fi / funding data
If someone donates via Ko-fi, our webhook may store donation records such as: donor display name from Ko-fi, message, amount, currency, public flag, timestamp, and raw webhook payload needed for processing. This is payment/donation metadata from Ko-fi — not your Discord password. Public donor names may appear on the funding page when marked public.
10. Purpose of processing
We process this data to authenticate you, operate the community site (wiki, news, loadouts, tickets, statistics), apply your preferences, moderate content, keep the platform secure, and process optional Ko-fi funding displays.
11. Legal basis (GDPR)
Processing is based on your consent when logging in via Discord and optionally linking Steam (Art. 6(1)(a) GDPR) and our legitimate interest in running a secure community platform and handling support (Art. 6(1)(f) GDPR). Ko-fi donation processing is based on the transaction you initiate with Ko-fi and our legitimate interest in operating funding transparency.
12. Third-party services
We use:
- Discord — authentication (OAuth). Discord’s own privacy policy applies to data Discord processes.
- Steam — optional account linking (OpenID) for player stats
- Bulkhead / WARDOGS — only if an official stats API is released and connected by us
- Ko-fi — optional donations/webhooks
- Hosting & database providers (e.g. Coolify / PostgreSQL) as processors on our behalf
- Public content sources for news (e.g. Steam, X/Twitter, Reddit, YouTube, press feeds) — not personal account data from you
13. Cookies & local storage
We use:
- Essential Auth.js session cookies for login
- Locale cookie (wd_locale) for language preference
- Short-lived cookies during Steam linking (return path / locale)
- Optional role-preview cookie for admins only (wdh-role-preview)
- Browser localStorage for theme colors, and (for guests) news/unit preferences until you log in
14. Retention & deletion
Account-linked data is kept while your account exists. You can delete your account anytime in the Dashboard (except the site owner/Betreiber account, which cannot be deleted for operational reasons).
Deleting your account removes your user row and cascaded data such as tickets and saved loadouts. Wiki pages, wiki edit logs, and admin audit logs may retain your display name with the user ID cleared (SET NULL), so content history stays intact without an active account link.
You can unlink Steam in the Dashboard anytime without deleting your whole account.
You can also email contact@wardogshub.net or open a ticket to request access or deletion assistance.
Server/hosting logs may retain IP address, user agent, and access times for a limited period for security and debugging.
15. Your rights
Under the GDPR you may request access, rectification, erasure, restriction of processing, data portability, and objection to processing. You may also lodge a complaint with a supervisory authority.
16. Security
We use HTTPS, server-side validation, parameterized database queries, and role-based access controls. No method of transmission or storage is 100% secure.
17. Changes
We may update this Privacy Policy from time to time. Material changes will be shown on this page with an updated date.