Security
Built with security at its core
TierVault is designed to protect your content from upload to delivery. This document explains our security architecture and data practices.
Defense in depth
Multiple independent security layers protect your content at every stage.
Unique Access Tokens
Per-user isolationEach user receives a cryptographically unique download token tied to their Discord identity. Access is never shared across users.
Device Fingerprinting
Anomaly detectionDownload links are bound to the originating device. Subsequent access from unrecognized devices triggers automatic blocking and alerts.
Identity Verification
OAuth enforcementOptional Discord OAuth challenge before file access. Users must authenticate their identity even if they possess a valid link.
Summary
Direct-to-storage uploads
Files bypass application servers
CDN-served downloads
Edge delivery with signed URLs
Minimal permissions
Bot reads roles, sends messages only
No data sales
Subscription-funded, no advertising
Infrastructure
Where is data stored?
How are files transferred?
Do you have access to file contents?
Discord Integration
What permissions does the bot require?
What is the bot's scope of operation?
What Discord data is retained?
Access Control
How do download tokens work?
How does device binding work?
How is unauthorized sharing detected?
Data Practices
What happens when an account is deleted?
Is data shared with third parties?
Security Contact
To report a security vulnerability or for questions about our security practices, reach out through the channels below.