Back to Home

Privacy Policy

Last updated: August 28, 2026

This Privacy Policy explains how Hero HW Services ("Hero," "we," "us") handles personal information when you use the website, dashboard, Discord bot, and related tools.

It works together with the Terms of Service. If you do not want us to process your information as described here, do not use the Service.

Scope

This policy covers information we process as operator of Hero. It does not cover Discord, SellAuth, Stripe, Google, model vendors, or similarity vendors when they act as independent controllers under their own policies.

What we collect

We collect the following categories, depending on how you use Hero:

  • Account. Discord user ID, username, avatar URL, and OAuth tokens needed to sign you in and apply roles. We do not ask for your Discord password.
  • Billing records. Invoice IDs, plan names, redemption time, and pass status. Card numbers are handled by SellAuth and Stripe. We do not store full PAN data.
  • Usage. Unlock URLs and job metadata, quota counters, Humanizer settings and history, Similarity credit balances, Ask threads, referral handles, and notification state.
  • Content you submit. Text and files you send to Humanizer, Similarity checks, or Ask, and URLs you paste into Unlock.
  • Technical. IP address, browser type, approximate timestamps, reCAPTCHA tokens, and security logs (rate limits, origin checks). We may keep hashed or truncated identifiers for abuse detection.
  • Cookies and local storage. Session cookies to keep you signed in, and a consent record in local storage for cookie preferences.

We do not require your school name, government ID, or payment card to create a Discord login. You may still put personal details into documents you upload. Treat those uploads as confidential on your side as well.

How we use it

We use this information to:

  • Authenticate you, bind a pass to your Discord account, and enforce quotas.
  • Run Unlock, Humanizer, Similarity, Ask, referrals, and notifications you request.
  • Detect account sharing, fraud, bots, and attacks on the Service.
  • Process refunds and credits as described in the Refund Policy.
  • Improve reliability, debug failures, and measure aggregate load.
  • Comply with law and respond to valid legal process.

We do not use your essays or unlock contents to train public generative models for unrelated advertising. Vendor tools we call may process a job under their own terms to complete that job.

Who we share with

We do not sell your personal information. We share it with processors and partners only as needed to run Hero:

  • Discord, for OAuth login, avatars, and community or role features you use.
  • SellAuth and Stripe, for checkout and invoice records.
  • Hosting, database, and network providers that store sessions and job history.
  • Google reCAPTCHA, to distinguish people from automated abuse.
  • Humanizer and similarity vendors (including the non-repository scanning channels we use) solely to complete a job you started.
  • Staff who handle Discord tickets when you ask for support.

We may disclose information if we believe it is required by law, to protect Hero or other users, or in connection with a merger, sale, or shutdown of the Service (with notice where reasonable).

Cookies and sessions

Essential cookies and similar storage keep you signed in and protect forms. They are required for the dashboard to work. Preference storage remembers cookie choices.

If you allow analytics in the cookie banner, we may use additional measurement. You can limit that by choosing essential-only in the banner, or by clearing site data in your browser (which will also sign you out).

Third-party embeds (for example checkout or Discord) may set their own cookies under their policies.

Your files and text

Documents and text you submit are processed to return the result you asked for. We do not sell those files, post them publicly, or put checked files into a school repository through our described non-repository flow.

Unlock jobs may store titles, source URLs, and solution previews in your history so you can reopen them. Humanizer history may keep original and rewritten text for the period described below. Do not upload content you are not allowed to process.

Retention

Account and pass records are kept while the account is active and for a reasonable period afterward so we can handle refunds, chargebacks, and abuse. Quota and job logs are kept long enough to operate daily resets and support tickets.

You may request deletion of cached history and account records through a Discord ticket. We may retain a minimal record (for example Discord ID and a ban flag, or invoice IDs) when we must defend a claim, prevent repeat abuse, or meet accounting and payment-network rules.

Backups may lag live deletion by a short window. Security logs may be kept longer in aggregated or truncated form.

Security

We use HTTPS, origin checks, rate limits, and reCAPTCHA on sensitive actions. No method is perfect. You still need to protect your Discord account, devices, and invoice IDs. Sharing those credentials is a Terms violation and a privacy risk to you.

International transfers

Hero may be operated and hosted in countries different from yours. Vendors may process data in the United States or elsewhere. By using the Service you understand that your information may be transferred to those places, which may have different data-protection rules than your home country.

Your rights

Depending on where you live (including the EEA, UK, or certain U.S. states), you may have rights to access, correct, delete, or export personal information, to object to or restrict certain processing, and to appeal a denial. We honor those rights to the extent the law requires.

Send requests through a Discord ticket from the same account. We may need to verify that the Discord ID matches the records. Authorized agents should include proof of authority.

You can close the practical use of Hero by leaving Discord OAuth connected only as you choose, signing out, and asking us to purge history. Discord and payment companies keep their own copies under their policies.

Children

The Service is not for children under 13. We do not knowingly collect personal information from them. If you believe we have, open a ticket and we will delete it except where we must keep a minimal record of the request.

Sale of data

We do not sell personal information as that term is commonly used in U.S. state privacy laws, and we do not share it for cross-context behavioral advertising. We do not use sensitive data to infer characteristics for ads.

If that practice changes, we will update this policy and provide any opt-out the law requires before it applies.

Changes

We may update this policy when the product, vendors, or law change. The date at the top is the latest version. Continued use after an update means you accept the revised policy for future processing. If a change is material, we will note it on this page or in Discord.

Contact

Privacy questions and deletion requests go through a ticket in our public Discord. We do not run a separate privacy email. That ticket is the official channel.

This policy describes our practices. It is not legal advice to you. If you need advice about your rights, consult a lawyer or your local data-protection authority.