This policy covers only the Hovermate Discord integration and visits to its legal pages. The Hovermate Privacy Policy separately covers the application, Steam license verification and other features.
The operator is Paliverse Apps LLC, United States of America. For privacy questions or requests, email support@hovermate.gg with the subject “Hovermate Discord privacy”.
1. Information used by the integration
- Authorization: application identifier, authorization code, access and refresh tokens, expiry and granted permissions. Password entry takes place on Discord's own page; Hovermate does not receive your Discord password.
- Local Discord responses: authentication responses may include account identifiers or profile information. Hovermate processes those responses locally to establish the connection. Its voice controls use the mute/deafen settings and voice-settings change events needed to display and perform your requested actions.
- Overlay controls: where available, the Discord SDK reports overlay availability and handles requests to open voice settings or change overlay visibility.
The requested permissions are rpc, rpc.voice.read and rpc.voice.write. This implementation does not request the email, messages.read or bot permissions. It does not record call audio, retrieve message history or operate a server-side Discord profile database.
2. Where information goes
Hovermate sends the authorization code and refresh requests directly to Discord over HTTPS. The authorization callback returns to a loopback address on your computer. Authenticated controls communicate with the local Discord desktop client. Our legal-page host and Steam license service are not intermediaries for Discord authorization tokens or voice-control data.
Discord independently processes account, authorization and service information under its Privacy Policy. Enabling the integration allows the Discord desktop client and its SDK to participate in these operations.
3. Local storage and removal
Tokens are saved in discord-auth.dat within Hovermate's application data directory, normally %LOCALAPPDATA%\Hovermate. A configured custom data directory or an older installation can use a different location. The token file is protected using Windows protection for the current Windows user. This does not protect against every threat on a compromised computer.
Tokens remain until removed or invalidated; uninstalling may leave local data behind. To stop access, revoke Hovermate under Discord's User Settings → Authorized Apps. To remove the saved token, close Hovermate and its Engine and remove only discord-auth.dat from the applicable data directory. We can help locate that file. Revocation does not erase local copies, and local deletion does not itself revoke Discord's authorization.
Email support@hovermate.gg to request correction or deletion of Discord API data that you have supplied to us through support. We will promptly correct or delete that data when requested or when it is no longer needed for the permitted purpose, except where retention is required by law. Do not send your authorization tokens with the request.
4. Legal-page visits and support
These static pages contain no analytics, advertising scripts, tracking cookies, third-party fonts or contact forms. Our web server processes your IP address and the requested address to deliver pages. Routine access logging is disabled. Error logs may contain connection details, including IP addresses and requested paths, when a request fails. Error logs are rotated daily, retaining up to seven rotated files plus the current log. Infrastructure backups can retain earlier copies until those backups expire. Information needed for an active security incident or legal obligation may be preserved separately for that purpose.
If you email us, we receive your address, message and any attachments you choose to send. We use them to answer your request, investigate an issue or handle a privacy request. Do not send passwords, tokens or unrelated private content. Correspondence is retained while needed for the request and related follow-up or legal obligations; request deletion by email.
Support correspondence uses our private support system and dedicated Zoho mailbox, with email notifications and replies from our team. The general Privacy Policy's support section explains those services, any selected technical follow-up, retention and deletion requests. Contacting support does not authorize the Discord integration to upload your locally stored Discord tokens.
5. Purposes, sharing and rights
We use integration information to provide the controls you enable, maintain security and resolve support requests. Depending on applicable law and the processing involved, relevant grounds may include providing the requested service, your consent, legitimate interests in security and support, or legal obligations. Where consent is the basis, you may withdraw it without affecting earlier lawful processing.
We do not sell Discord API data, use it for advertising or use it to train machine-learning models. Hosting and communication providers may process website or support information to supply their services. Information may be disclosed when legally required. Providers may process information in other countries; applicable transfer requirements must be respected.
Depending on applicable law, you may have rights to access, correct, delete or receive your personal information, restrict or object to processing, withdraw consent and complain to a data-protection authority. Contact support@hovermate.gg. We may request proportionate information to verify a request. We cannot remotely erase files that exist only on your computer or delete information independently held by Discord.
6. Age and changes
The integration is not intended for users below Discord's applicable minimum age. Contact us if you believe information from an ineligible child has been provided to us. Changes to integration data handling will be reflected here, with additional notice or consent where required. Previous published versions remain available in the legal archive.