Summerizer policies
Privacy Policy
This policy explains how Summerizer, operated by AndWhatNot Studio, processes information when the Discord application is installed or used.
1. Scope and controller
This policy applies to the Summerizer Discord application, its summary and report functions, credit system, purchase fulfillment, and related support and security operations. AndWhatNot Studio is the operator and data controller for this processing.
Discord independently controls its platform, accounts, payment checkout, and other services under Discord’s own policies. A Discord server and its administrators may also have their own responsibilities for channel content and member notices.
2. Information Summerizer processes
Discord account and server information
- Discord user, application, server, channel, message, role, interaction, entitlement, and SKU identifiers;
- usernames, display names, server membership, and channel permissions needed to authorize a request or deliver a private report; and
- command inputs, button interactions, timestamps, and response state.
Configured channel content
- message text, timestamps, author identifiers and display names, message links, and relevant reply or thread context available to the application;
- attachment names and links when included in a supported message; and
- the fixed source-channel time window used for a requested summary or report.
Derived and transactional information
- event summaries, relevant-message mappings, detailed reports, source references, confidence or uncertainty notes, and cached outputs;
- credit balances, reservations, grants, spends, reversals, and an append-only transaction ledger;
- Discord purchase entitlements and their fulfillment, consumption, deletion, or refund status; and
- AI model, prompt version, token usage, cost estimates, job status, error type, and security/audit logs.
Summerizer does not receive your full payment-card details. Discord and its payment providers handle checkout and payment credentials.
3. Where information comes from
Information comes from Discord’s APIs and Gateway events, from users and server administrators interacting with Summerizer, from messages available in configured channels, and from service providers used to generate and operate the service. Purchase status comes from Discord entitlements and is rechecked through Discord’s API.
4. How information is used
Summerizer processes information to:
- collect an authorized time window and generate requested summaries and detailed reports;
- map outputs to supporting messages and reduce unsupported or duplicated claims;
- confirm server, channel, role, and user access before creating or reopening private material;
- fulfill Discord purchases, maintain credit balances, prevent duplicate grants, and handle refunds or chargebacks;
- cache reports so the same event does not require unnecessary regeneration;
- operate, secure, troubleshoot, monitor, and improve the service;
- prevent abuse, investigate failures, enforce the Terms of Service, and comply with law; and
- respond to support, privacy, correction, and deletion requests.
Summerizer does not use personal information for targeted advertising, sell it, or make decisions that produce legal or similarly significant effects about individuals.
5. Legal bases
Where European or UK data-protection law applies, processing may rely on:
- contract: to provide requested features, deliver purchased reports, and maintain credits;
- legitimate interests: to operate a useful summary service, maintain security, prevent fraud, diagnose errors, and improve reliability, balanced against user rights;
- legal obligations: for tax, accounting, consumer-protection, law-enforcement, or regulatory requirements; and
- consent: where specifically requested and legally required.
Server administrators should configure Summerizer only for channels where they have a valid basis and have provided appropriate notice to participants.
7. Retention
- Temporary source-message snapshots used by the detailed-report workflow are ordinarily retained for up to 30 days, unless a shorter period applies or a longer period is required for security, dispute resolution, or law.
- Summaries, mapped events, and cached reports are retained while the feature remains active and the output is useful, then deleted or anonymized according to operational cleanup schedules.
- Credit, entitlement, purchase, refund, audit, and security records may be retained longer where necessary for accounting, fraud prevention, legal compliance, or dispute resolution.
- Backups and logs may persist for a limited additional period before rotating out.
Retention may also be shortened when a source is deleted, permissions are lost, a server removes the application, or a valid deletion request is completed.
8. Security
Summerizer uses measures intended to protect information, including restricted service credentials, access checks, least-privilege execution where implemented, encrypted network transport, transactional credit accounting, replay protection, audit records, and limited retention. No online system is completely secure, and absolute security cannot be guaranteed.
9. Your choices and privacy rights
You can avoid new processing by not interacting with Summerizer, asking a server administrator to remove or restrict it, or not posting in a clearly disclosed configured channel. Depending on your location, you may have rights to request access, correction, deletion, restriction, objection, portability, or withdrawal of consent, and to complain to a data-protection authority.
Send a request to admin@andwhatnotstudio.com. Include your Discord user ID and enough detail to locate the relevant server, channel, report, or transaction. We may ask for reasonable verification. Some information may be retained where required for security, legal, accounting, or dispute-resolution purposes, and we cannot delete copies controlled independently by Discord or other users.
10. International transfers
Discord, OpenAI, and infrastructure providers may process information in countries different from your own. Where required, appropriate contractual or legal transfer safeguards are used by the relevant provider. Their own privacy notices describe their processing locations and safeguards in more detail.
11. Children
Summerizer is not directed to children under 13 and must not be used by anyone below Discord’s minimum permitted age in their country. If you believe a child’s information was processed contrary to this policy, contact us so the matter can be investigated.
12. Updates and contact
This policy may be updated when Summerizer’s features, providers, or legal obligations change. The effective date and version at the top identify the current policy. Material changes will be communicated through a reasonable service channel where practical.
Questions, requests, or complaints may be sent to admin@andwhatnotstudio.com.