Last updated: 1 September 2026
This page explains how Shepherd ("the Service") handles personal data belonging to the people who use it and to members of the Discord servers where it is installed. Processing follows Regulation (EU) 2016/679 (GDPR).
FILIPPO CASTAGNA — ITALY.
For anything relating to your data: filippocastagna44@gmail.com.
Purpose: providing the Service, managing subscriptions, meeting tax obligations. Legal basis: performance of a contract (Art. 6(1)(b) GDPR), and legal obligation for the tax records (Art. 6(1)(c)).
Shepherd receives messages from servers where it is installed through Discord's Message Content intent. Messages that are not classified as scams are never stored: they are evaluated in memory and discarded immediately.
When a message is classified as a scam we retain:
Purpose: allowing moderators to review a decision afterwards and reverse it, and allowing the affected person to contest it. Legal basis: the legitimate interest of the server owner in protecting their community from fraud (Art. 6(1)(f) GDPR). We consider the interest in not being defrauded to prevail, and retaining the evidence to be in the interest of the sanctioned person too, because it is what makes the decision contestable.
For every analysed image we compute a cryptographic fingerprint (SHA-256) and store it alongside the verdict. A fingerprint is not personal data and the image cannot be reconstructed from it. It exists so the same scam is recognised when it reappears elsewhere without being re-analysed.
If a server has the shared network enabled, the Discord ID of anyone who posts a scam is added to a list visible to other protected servers, together with the number of reports received. The list contains no messages, no images and no server names. An administrator who reverses a decision removes that person from the list immediately. The feature can be turned off in the server settings.
The action taken (ban, kick, timeout or message removal) may be applied automatically based on an AI model's assessment, following the rules chosen by the server administrator. The consequences relate solely to access to a Discord server and produce no legal effects on the person.
Every action can be reversed by a human moderator in one click, and every sanctioned person receives a direct message inviting them to contact the server's moderators. To contest a decision, write to the server moderators or to us at the address above.
We use the following processors:
Transfers to the United States rely on the Standard Contractual Clauses approved by the European Commission or on the EU-US Data Privacy Framework, according to each provider's arrangements.
We do not sell data and we do not share it with third parties for marketing.
You can request access, rectification, erasure, restriction or portability of your data at any time, and object to processing based on legitimate interest. Write to filippocastagna44@gmail.com or use the form below. We respond within 30 days.
If you believe the processing breaches the GDPR you can lodge a complaint with the Italian Data Protection Authority (garanteprivacy.it) or with the supervisory authority in your own country.
Data is held in access-restricted databases and storage over encrypted connections. Dashboard access is limited to Discord users who hold the Manage Server permission, re-checked on every request.
The Service is not directed at anyone below the minimum age required by Discord's Terms of Service in their country, and does not knowingly collect data from children below that age.
Material changes are announced to server administrators through the support server and published here with a new date.