DISCORD TOS WARNINGSTRAY VIOLATES DISCORD TERMS OF SERVICE · ACCOUNTS MAY BE RESTRICTED OR BANNED · USE AT YOUR OWN RISK

Privacy Policy

Last Updated: July 2026

1. Zero Remote Data Collection (Privacy-by-Design)

Your privacy is fundamental to our architecture. Stray is entirely self-hosted. Our informational website does not collect, monitor, track, store, or transmit any personal user data or telemetry cookies.

2. GDPR Compliance Statement (European Union)

Under the EU General Data Protection Regulation (GDPR), we act as neither a Data Controller nor a Data Processor. Because all presence code and auth tokens execute on your private server or workspace local filesystem:

  • Right of Access & Deletion: Deleting your local db.json database completely purges all presence history.
  • Zero Intermediary Transfers: Gateway WebSocket handshakes connect directly to official Discord gateway endpoints.

3. CCPA / CPRA Compliance Statement (United States)

Under the California Consumer Privacy Act (CCPA), we disclose that we do not collect, monetize, sell, lease, or share personal consumer information. All settings reside on your own client hardware.

4. Local AES-256-GCM Encryption Protection

Stray Alley uses local AES-256-GCM encryption with automatically generated symmetric keys to safeguard sensitive Discord auth tokens stored within your local db.json database.

Legal Disclaimer & Terms

By accessing this website, you agree that Stray or BCN Studio is not responsible for anything. This open-source project is strictly built for educational bruteforce purposes to test limits.