Data we collect
Discord account data. When you sign in, Discord provides your user ID, username, display name, avatar, and—when available through the authorized OAuth scope—email address. We also check whether your account belongs to the relevant Zenith server.
Zenith account data. We handle your Credit balance, subscriptions and entitlements, purchase history, order status, and subscription pause or resume requests.
Transaction and technical data. We record the selected product, price, Credits, applicable fees or discounts, provider and payment references, payment status, timestamps, and limited payment metadata. We may also process IP address, country, browser information, and security or rate-limit signals needed to operate and protect the service.
We do not read your Discord messages, direct-message history, or activity in unrelated Discord servers.
How we use information
- Authenticate you and display the correct Zenith account, balance, subscriptions, and activity.
- Process top-ups and purchases, deliver subscriptions or Discord roles, and reconcile payment status.
- Prefill checkout details, respond to support requests, and investigate failed or disputed transactions.
- Prevent fraud, abuse, unauthorized access, and disruption of the service.
- Maintain operational, accounting, and audit records.
Payment and billing data
Crypto top-ups may store the payment currency, amount, network, destination address, payment ID, and status. New card payments use SellAuth’s hosted checkout and its configured payment processor. We send your contact email, top-up amount and an order reference to create the checkout. Card and billing details are collected on the provider’s payment page. Existing MoneyMotion payments continue to be processed by MoneyMotion.
Zenith does not ask for or store your full card number, card security code, or wallet private keys. Zenith’s order record keeps the provider reference and fulfillment status needed to credit your account and handle support or disputes.
When information is shared
We do not sell or rent personal information. We share information only as needed with:
- Discord, for sign-in, server membership checks, roles, and account-linked features.
- NOWPayments, for crypto payment creation and confirmation.
- SellAuth and its configured payment processor, for new card payments; MoneyMotion for existing card-payment sessions.
- Cloudflare and our service infrastructure, for hosting, storage, security, and delivery.
- Google Fonts, to load the site typeface. Google may receive standard request data such as your IP address and browser information.
Crypto-payment QR codes are generated by Zenith. The payment destination address is not sent to a third-party QR service.
We may also disclose information when required by law or when reasonably necessary to protect users, Zenith, or the integrity of the service.
Cookies and local storage
Zenith Panel uses an essential opaque session cookie to keep you authenticated. The server can revoke the session at any time; it expires after one hour of inactivity or twelve hours at the latest and is revoked when you log out. A separate short-lived cookie protects the Discord sign-in flow. The site may also use browser session storage for interface preferences and one-time notices; these values do not contain your card details.
Data retention
Cached Discord profile and email data used by Zenith Panel expires after up to 30 days unless refreshed by a later sign-in. Pending crypto-checkout data expires when the payment window closes or is cancelled.
Order, payment, balance, subscription, security, and audit records may be kept for as long as needed to fulfill purchases, provide support, resolve disputes, prevent abuse, maintain accounting records, and meet legal obligations. Payment providers retain information under their own policies.
Your choices
You can log out at any time to clear the active session cookie. You may contact Zenith staff to ask about, correct, or request deletion of personal information associated with your account. Some transaction, moderation, security, or accounting records may need to be retained where there is a legitimate operational or legal reason.
Security
We use access controls, revocable server-side sessions, encrypted network connections, origin checks, provider-isolated card entry, rate limits, and authenticated payment notifications to protect the service. No online system is completely secure, so please notify Zenith staff if you suspect unauthorized account or payment activity.
Contact and updates
For privacy questions or data requests, contact a Zenith staff member through the official Discord server. We may update this policy as the service changes; the current version and revision date will remain available on this page.
