Data we collect and why
| Data | Purpose |
|---|---|
| Registration email, username, password credential and registration IP | Create and secure your account and provide password recovery |
| Birthdate and gender, where requested by the registration form | Complete the account fields required by the control panel and game |
| Login IP addresses and login times | Account security, access investigations and simultaneous-client limits |
| Game activity, including character actions, chat, trades, items, zeny, drops and commands | Moderation, bug investigation, economy protection and public activity feeds |
| Hashed device identifier when you pair a device | Check approved devices and enforce the per-device limit |
| Launcher version and the server it connects to | Operate and support the launcher connection |
| Discord user ID, if you link Discord | Associate the linked Discord identity with the account |
Passwords are stored as hashes. Device pairing stores a hashed identifier rather than the raw hardware identifier. It is still treated as account-related data because it can identify an approved device within this service.
The launcher does not read files outside the game folder. Pairing is optional; once enabled for an account, only approved devices can play on that paired account.
Public announcements
Rare-drop and achievement announcements, MVP notices and similar configured feeds can show character names publicly in game and on Discord. Using the VIP command @discord sends your message and character name to Discord's general channel. Do not include private or sensitive information in those messages.
Retention
| Record | Retention period |
|---|---|
| Account data | For the life of the account and up to 30 days after deletion, except records retained for the purposes below |
| Login and moderation logs | 12 months |
| Chat logs | 90 days |
| Ban records | Indefinitely where needed to enforce continuing bans, subject to review and applicable law |
Records may be retained longer where necessary for an active investigation, a legal obligation or a dispute. Data should be deleted or anonymised when no longer needed for its purpose.
Who can access it
Authorised staff access account information for operating, supporting, securing and moderating AshenRO. We do not sell personal information.
Service providers may process data necessary to host and deliver the website, game and account services. The marketing site is hosted on Netlify. The control panel and game use separate server infrastructure. Discord processes content and linked identities sent to it under its own terms and privacy policy.
The website loads fonts from Google Fonts and a review badge from RateMyServer; those providers receive normal web request information such as your IP address when the resources load. Google Drive hosts the client download. Following an external link takes you to a service with its own privacy practices. These services may process information outside your country.
Cookies and local preferences
The account control panel uses a session cookie for sign-in. The static marketing site does not receive the password entered on the control panel. The wiki stores your selected colour theme and open navigation groups in your browser's local storage so they remain consistent on your next visit. You can remove these preferences through your browser's site-data settings.
Access, correction and deletion
Use a private Discord support ticket to request access to, correction of or deletion of your account data, or to raise a privacy concern. Staff may ask for information needed to verify that the account belongs to you. Never provide your password in a ticket.
Deleting an account removes the account and characters and cannot be undone. Ban records and information still needed for legal obligations, security or unresolved disputes may be retained. We will explain any applicable limits to a request. Withdrawing consent to processing needed to run your account may mean the account can no longer be used.
Contact and updates
Contact AshenRO staff on the official Discord and ask for the staff member responsible for privacy. This policy will be updated if data practices change; material changes will be announced on Discord.
