Security

Visible boundaries for permissions, servers, connected services, and high-risk actions.

This page documents controls verified in the product and source. It does not substitute unsupported certifications or compliance claims.

Discord permissions

Protected workflows validate the Discord permissions and hierarchy required for the selected action.

  • Guild and feature gates are checked server-side
  • Unavailable actions fail closed
  • The UI explains missing prerequisites before mutation where possible

Server and session boundaries

Authenticated dashboard requests are resolved against the active session and selected manageable server.

  • Authentication tokens are stored server-side
  • Internal operations require separate authorization
  • Sensitive service configuration is not returned to customer clients

Billing and operational actions

The payment service retains payment details. Abhi stores the references and state needed to operate subscriptions.

  • Verified payment notifications
  • Redacted audit metadata
  • Typed confirmation and fresh re-authentication for highest-risk internal actions

Report a security issue

Do not submit tokens, credentials, member exports, or exploit payloads through public community channels.

  • Email security reports to support@abhi.gg
  • Include a safe reproduction summary
  • Use the support form only when the attachment guidance permits the file type
Reviewed 2026-07-11