> For the complete documentation index, see [llms.txt](https://docs.zeroauthority.xyz/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.zeroauthority.xyz/nova-bot/privacy-policy.md).

# Privacy Policy

*Last updated: June 11, 2026*

Nova ("Nova", "the bot", "we") is an AI blockchain and community assistant operated by Zero Authority DAO — covering Bitcoin, Stacks, Ordinals, 60+ EVM chains, and Solana, alongside community engagement features for the servers and groups it serves. Nova is available on Discord, Telegram, and as an embeddable web widget. This policy explains what data Nova collects, how it is used, and the choices you have.

{% hint style="info" %}
**TL;DR** — Nova only reads and responds to messages directed at it (DMs, @mentions, or replies to Nova). Conversation history is kept briefly to maintain context, then automatically deleted. We never sell your data, and your messages are **never** used to train AI models.
{% endhint %}

## Data We Collect

| Data                                                                       | When                                                                      | Why                                                                     |
| -------------------------------------------------------------------------- | ------------------------------------------------------------------------- | ----------------------------------------------------------------------- |
| Platform user ID and username (Discord/Telegram)                           | When you interact with Nova                                               | Identify your account, apply rate limits, link premium status           |
| Message content                                                            | Only when you DM Nova, @mention it, or reply to one of its messages       | Generate a response to your request                                     |
| Conversation history                                                       | During active conversations with Nova                                     | Short-term context so follow-up questions make sense                    |
| Server/channel IDs                                                         | When Nova is used in a server                                             | Deliver responses and alerts to the right place, per-server rate limits |
| Server roles (read-only)                                                   | When you use role-gated features (premium, quests, bounties)              | Verify eligibility and assign/remove reward roles                       |
| Wallet addresses, alert preferences                                        | Only when you explicitly register them (e.g. wallet tracker, swap alerts) | Deliver the alerts you asked for                                        |
| Community activity metadata (message timestamps, lengths, reaction counts) | Only in the ZADAO community server/group                                  | Power opt-in community engagement stats and leaderboards                |

Nova does **not** collect presence/online status, voice data, or messages that are not directed at it (outside the ZADAO community stats described below).

## How Long We Keep It

* **Conversation memory** is tiered and expires automatically: recent context is kept for \~6 hours, extended context for \~48 hours, and compressed conversation summaries for up to 30 days. After that it is deleted.
* **ZADAO community stats**: message *metadata* (author ID, timestamp, length — no text) is kept up to 365 days to compute weekly engagement stats. Message *text* in the ZADAO community is stored transiently for up to 14 days to power quality-based contribution scoring, then permanently deleted; only content-free scores and counts are kept.
* **Alert subscriptions and registered wallet addresses** are kept until you remove them or stop using Nova.
* **Account records** (user ID, premium status) are kept while you use Nova.

## Where Data Is Stored

Data is stored in a PostgreSQL database hosted on Amazon Web Services (AWS), encrypted in transit and at rest, with access restricted to the Nova operations team.

## Third Parties

* **Anthropic (Claude API)** — messages you send to Nova are processed by Anthropic's Claude models to generate responses. This is inference only: per Anthropic's commercial API terms, this data is **not used to train AI models**.
* **Blockchain data providers** (e.g. Hiro, mempool.space, market data APIs) — Nova queries these for on-chain and market data. Your personal data is not shared with them; only the addresses/tokens you ask about are queried.
* **AWS** — infrastructure hosting, as described above.
* **Discord and Telegram** — Nova receives your messages and profile data through their APIs and delivers its responses back through them. The platforms process your data independently under their own privacy policies ([Discord](https://discord.com/privacy), [Telegram](https://telegram.org/privacy)).

We do not sell, rent, license, or share your personal data with advertisers, data brokers, or any other monetization service. Ever. We disclose personal data only to the service providers above, when required by law, or when you expressly direct us to.

## AI and Machine Learning

Nova uses large language models (Anthropic Claude) to understand and answer your messages. Your message content is used **only for inference** (generating the response in front of you). Neither we nor our model provider use your messages to train or fine-tune machine learning models.

## Your Choices

* **Don't want Nova reading your messages?** Don't DM, @mention, or reply to it — Nova ignores all other messages.
* **Community stats (ZADAO server only):** server admins can exclude channels from tracking, and you can ask a ZADAO admin or our team to exclude your account or delete your activity data.
* **Correct or delete your data:** ask in the ZADAO Discord ([discord.gg/zeroauthority](https://discord.gg/zeroauthority)) or contact the team, and we will promptly correct or delete your stored conversation history, community activity data, alert subscriptions, and account records.
* **Remove Nova:** server admins can remove the bot at any time; per-server data is no longer collected from that point, and previously stored data expires per the retention schedule above (or immediately on request).

## Your Rights

Depending on where you live (e.g. GDPR, UK GDPR, CCPA/CPRA, LGPD), you may have the right to **access** the personal data we hold about you, have it **corrected**, have it **deleted**, **object to or restrict** its processing, and receive a **copy** of it. To exercise any of these rights, contact us through the channels below — we honor these requests for all users regardless of location, and we will never discriminate against you for exercising them. We also delete API data when it is no longer needed for Nova's stated functionality, when Nova is removed from a server, or when Discord or you request it, in line with the Discord Developer Terms of Service.

## Security & Breach Notification

Data is encrypted in transit and at rest, and access is restricted to the Nova operations team. If a security incident results in unauthorized access to your personal data, we will notify affected users and the relevant platforms/authorities as required by applicable law.

## Children

Nova is not directed at children under 13 (or the minimum age required by Discord/Telegram in your country), and we do not knowingly collect data from them.

## Changes

We will update this page when our data practices change and update the "Last updated" date above.

## Contact

Questions or data requests: reach the team in the [ZADAO Discord](https://discord.gg/zeroauthority) or via [zeroauthoritydao.com](https://zeroauthoritydao.com).
