Updated September 22, 2026
Privacy policy
What we collect, why, who else handles it, and how to get a copy or a deletion. Email tackomod@gmail.com for any request.
Who we are
TackoMod is a chat moderator for Twitch. It reads a line, decides whether that line breaks the rules you wrote, and can remove the line after you turn enforcement on. TackoMod operates the service, and “we” on this page means TackoMod. Reach us at tackomod@gmail.com. That inbox is how you contact us about privacy, billing, and the terms of service.
We do not publish a street address on this site. Email is the way to reach TackoMod.
Information from Twitch
When you choose Continue with Twitch, Twitch sends us:
- your Twitch user id, login, and display name
- your email address and profile image, when Twitch includes them
- an access token and a refresh token for the permissions below
We ask Twitch for permission to join your channel as a moderator, to manage that moderator seat, and to read moderation state. We do not ask for your Twitch password. Twitch is the login.
We encrypt those tokens with AES-256-GCM before they are written down. We decrypt a token only in the moment we call Twitch.
Your channel
When a channel is connected we store:
- the channel's Twitch id and login, and the account that owns it
- the plan, the mode, and the status of the channel
- the rules you write, each published version of those rules, and the phrases you allow
- people you add to the channel, their Twitch login, and their role: owner, manager, or moderator
Chat and decisions
Twitch sends us chat messages for a connected channel. For each message we store the Twitch message id, the chatter's Twitch id and login, their role, the text, and the time they sent it.
We then store the decision: what we did, the category, the confidence, the reason, the evidence, the model's answers, and how long the check took. The evidence can quote the line. We keep that record so you can see why a line stayed up or came down, and so you can undo a mistake.
Chat on Twitch is already visible to people watching the stream. We still treat it as information we are responsible for.
We do not take an automatic action on a message from the broadcaster or from a moderator.
The public demo
The homepage demo and the Try it box on the Rules page send sample lines, and lines you type, to the model. That call is not attached to a Twitch account. We do not file it as channel history. We do not sell it.
We hold the network address of that call in memory on the server for about a minute, so one address cannot send more than 30 lines in a minute. We do not write that address into the database.
Models that score a line
To score a line we send the line, a short run of recent chat, and the channel rules to a model called Jev. By default the request goes through Vercel AI Gateway to the TypeSafe model typesafe-ai/jev. If the server is set to call TypeSafe directly, the same request goes to TypeSafe's API instead.
Those providers handle the request under their own data policies. We do not train a model of our own on your channel. We do not sell the text.
Cookies
We use two cookies. Both are first-party, httpOnly, and SameSite=Lax. On an https site they are marked Secure.
- tackomod_session keeps you signed in for 30 days. The cookie holds a session id and a secret. The database stores a hash of the secret, not the secret. Signing out revokes the session.
- tackomod_oauth lasts about 10 minutes, and only while Twitch is sending you back to us, so we can confirm that the login you started is the login that finished.
We do not use advertising cookies. We do not set a third-party analytics cookie.
How long we keep it
Chat text is kept for the history window of the plan on the channel:
- Watch (free): 7 days
- Guard ($15 a month): 30 days
- Channel ($29 a month): 90 days
- Partner ($79 a month): 90 days
After that window we blank the stored chat text, the model's answers, and the evidence that quoted the line. The decision keeps the action, the category, the confidence, and the short reason. A rule name can still include a matched word. The whole decision is removed when the account is erased.
When a cache is configured, a short copy of recent lines is kept for context for up to 10 minutes, and a live log of decisions is kept for up to one hour. Those copies expire on their own.
A sign-in session lasts 30 days unless you sign out first.
Disconnecting and deletion
Disconnecting a channel revokes our Twitch token, stops the chat subscription for that channel, and marks the channel disconnected. Chat text still follows the history window above. The token is not put back if you change your mind. You connect the channel again.
If you remove TackoMod from your Twitch connections, we treat that as a disconnect, and we do it when Twitch tells us.
To delete the account, email tackomod@gmail.com. We revoke the Twitch token when we start, and we erase the account 24 hours later. During those 24 hours you can email us to cancel. Canceling does not restore the Twitch token or the chat subscription.
Erasure removes the account, the sessions, the tokens, the channels you own, the chat, the decisions, the rules, and the memberships. We delete the Stripe customer tied to the channel. We keep a short record that the erasure ran. That record does not include the chat text.
Who else processes information
We share information with companies that do a specific job for the product. We do not sell personal information. We do not share it for advertising. We do not let anyone use it to market to your viewers.
- Twitch. Login, chat delivery, and moderation actions happen on Twitch.
- Stripe. Payments. Stripe stores the card number. We store a customer id.
- Vercel and TypeSafe. Scoring a line, as described above.
- Netlify. The website and the database.
- Upstash. The short-lived cache, when that cache is configured.
- Cloudflare. The service that receives chat from Twitch, when that service is running.
A manager or moderator you add can see that channel's live chat and history, inside the role you gave them.
Your rights
Email tackomod@gmail.com and we will, within 30 days:
- send a copy of the account and channel information we hold
- correct information we have wrong (your Twitch profile itself is corrected at Twitch)
- delete the account, on the 24-hour schedule above
- export channel history (a manager can also download a CSV of history while the text is still inside the retention window)
- stop a use described in this policy, or restrict it, when you object
If you are in the European Economic Area or the United Kingdom, we rely on the contract (providing the moderator you asked for) and on legitimate interests (keeping the service secure, stopping abuse, and recording whether a decision was right). You can complain to your data protection authority. We have not appointed a European representative. The same email reaches us.
If you are in California, we do not sell personal information and we do not share it for cross-context behavioral advertising. You can ask for access or deletion at the same email.
Children
TackoMod is not directed at children under 13. A child under 13 must not connect a channel. If we learn that an account belongs to a child under 13, we delete it.
Security
Tokens are encrypted at rest. Session secrets are stored as hashes. Card numbers stay at Stripe. If we learn of a breach that affects your account, we will email the address we have from Twitch, say what happened, and say what we are doing about it.
Changes
When we change this policy we change the date at the top. If the change is material and we have an email from Twitch for the account, we send it. The date on this page is the notice either way.
Contact
Privacy requests, deletion, and questions about this policy go to tackomod@gmail.com.