Realm Guard

Privacy Policy

Policy for the Realm Guard Windows application, optional Discord integration, Microsoft Store subscription features, and website.

Realm Guard Privacy Policy

Effective date: July 4, 2026 Last updated: August 18, 2026

This Privacy Policy explains how Realm Guard, developed and published by AmericanVampire, accesses, processes, stores, transmits, and deletes information.

This policy applies specifically to the Realm Guard Windows application, its Microsoft Store subscription features, its optional Discord integration, its Discord authorization relay, and the Realm Guard website.

1. Summary

Realm Guard is a local-first administration and monitoring application for Minecraft Bedrock Realms.

Realm Guard requires access to information associated with Microsoft, Xbox, Minecraft, and the Realm selected by the user. Most information processed by Realm Guard is stored locally on the user's Windows device.

AmericanVampire does not operate a central database containing customer Realm data and does not sell, rent, trade, monetize, or use Realm information for advertising.

Realm Guard does not include:

  • Third-party advertising
  • Publisher-operated behavioral analytics
  • Advertising trackers
  • Location tracking
  • Cross-application tracking
  • Marketing telemetry
  • Sale of personal information
  • Sale or sharing of player information
  • Cloud synchronization of the local Realm Guard database

Some information must be transmitted to Microsoft, Xbox, Minecraft, Discord, Cloudflare, Microsoft Store, or website infrastructure providers when the user enables or uses features that depend on those services. Those transmissions are explained below.

2. Information Realm Guard Accesses

Depending on the features used and the permissions of the connected Microsoft accounts, Realm Guard may access or process the following information.

Microsoft and Xbox account information

  • Xbox User ID (XUID)
  • Gamer tag
  • Display name
  • Authentication tokens
  • Locally assigned authentication-profile names
  • Information indicating whether the connected account owns or can access a Realm

Realm Guard does not receive or store the user's Microsoft account password.

Realm information

  • Realm identifier
  • Realm name
  • Realm description or message
  • Realm owner identifier
  • Realm availability and connection status
  • Maximum supported player count
  • Active world slot
  • Available world slots
  • World names and world metadata
  • Available Realm backups
  • Backup identifiers, dates, and file sizes

Player and membership information

  • Gamer tags
  • Display names
  • XUIDs
  • Online or offline status
  • First-seen and last-seen times
  • Realm membership status
  • Pending invitation status
  • Ban status
  • Realm permission level
  • Operator or administrative permission status

Realm activity and communications

Depending on what the connected observer account can receive from the Realm, Realm Guard may process:

  • Player join and leave events
  • Death and kill events
  • Server and system events
  • Player chat messages
  • Command messages
  • Commands sent through Realm Guard
  • Command responses
  • Command success, failure, or no-response status
  • Moderation activity
  • Invitations, removals, bans, unbans, and permission changes

Realm Guard can only observe information made available through the connected Microsoft account, Minecraft services, Realm services, or the live observer connection.

Information entered by the user

Realm Guard may locally store information entered by the administrator, including:

  • Player labels
  • Label colors
  • Watchlist entries
  • Watchlist reasons
  • Administrator notes
  • Search and filter selections
  • Application preferences
  • Export preferences
  • Selected Realm and account roles

This administrator-created information is not uploaded to AmericanVampire.

3. How Information Is Used

Realm Guard processes information only to provide requested application functions, including:

  • Authenticating Microsoft accounts
  • Discovering accessible Realms
  • Connecting an observer account to a Realm
  • Displaying current players and membership information
  • Monitoring Realm activity
  • Recording local logs
  • Running Minecraft commands
  • Managing invitations and members
  • Banning and unbanning players
  • Changing Realm permissions
  • Changing Realm identity and world slots
  • Listing and downloading Realm backups
  • Creating user-requested exports
  • Maintaining a local watchlist and administrator notes
  • Displaying an optional live Discord player roster
  • Verifying Microsoft Store subscription entitlement
  • Diagnosing errors shown directly to the user

Realm Guard does not use this information to create advertising profiles or monitor users across unrelated applications or services.

4. Microsoft Account Authentication

Realm Guard uses Microsoft and Xbox authentication to connect to Minecraft and Realm services.

Authentication is performed through Microsoft-controlled sign-in pages and device-authorization processes. Microsoft account passwords are entered into Microsoft services, not into Realm Guard.

Realm Guard may store authentication tokens and profile information locally so the user does not have to authenticate every time the application starts. Separate local authentication profiles may be stored for observer and Realm-owner functions.

Authentication tokens are used only to perform authorized Microsoft, Xbox, Minecraft, and Realm requests on behalf of the user.

Users can change the connected accounts through Realm Guard. Removing or changing an account may remove or replace its locally stored authentication profile.

Microsoft may independently process account, authentication, security, device, network, diagnostic, and service-usage information. That processing is controlled by Microsoft and is governed by the Microsoft Privacy Statement.

5. Live Realm Connection

Realm Guard may connect an observer account directly to the selected Minecraft Bedrock Realm.

This connection allows Realm Guard to receive information that the observer account is authorized to receive, including player-presence events, chat, system messages, command responses, and other supported Realm activity.

Network connections necessarily expose technical information, such as the user's IP address and connection metadata, to Microsoft, Xbox, Minecraft, networking providers, and other infrastructure involved in providing the connection.

AmericanVampire does not receive a copy of the live Realm connection or maintain a remote copy of the information received through it.

6. Local Storage

Realm Guard stores operational information in an application-managed local data directory on the user's Windows device.

Local storage may include:

  • A SQLite database
  • Microsoft authentication profiles and tokens
  • Application configuration
  • Selected Realm information
  • Realm and player records
  • XUIDs, gamer tags, and display names
  • Player permissions and roster states
  • Player-presence history
  • Activity logs
  • Connection logs
  • Chat logs
  • Command history and responses
  • Moderation history
  • Labels, notes, and watchlist entries
  • Backup history and local backup paths
  • Export history and local export paths
  • Discord integration settings
  • Encrypted Discord webhook credentials

The application may also create temporary database journal files required for reliable SQLite operation.

Realm Guard's local interface is served through the device's loopback address. It is intended for communication between Realm Guard's desktop process and its own interface on the same device, not as a publisher-hosted cloud service.

AmericanVampire does not have remote access to the local Realm Guard database.

7. Commands and Administrative Actions

When a user runs a command or performs an administrative action, Realm Guard transmits the required request to the applicable Microsoft, Xbox, Minecraft, or Realm service.

This may include:

  • Minecraft commands and their arguments
  • Target player gamer tags or XUIDs
  • Invitations and invitation revocations
  • Member removals
  • Bans and unbans
  • Permission changes
  • Realm name or message changes
  • Active world-slot changes
  • Backup requests

These transmissions occur only to perform actions requested by the user or to maintain a feature the user has enabled.

Realm Guard may store a local record of the action, its target, its time, the acting account, and any success, failure, or response information returned by the service.

8. Exports

Realm Guard can create CSV and plain-text exports.

Depending on the export selected, exported information may include:

  • Player information
  • Gamer tags and XUIDs
  • Player statuses and permissions
  • Labels, notes, and watchlist information
  • Realm activity
  • Connection history
  • Chat messages
  • Command history and responses
  • Moderation history
  • Dates and times

The user chooses where an export is saved. Exports are created locally and are not uploaded to AmericanVampire.

Exported information may be sensitive. Users are responsible for choosing a secure location, controlling access to exported files, and deleting exports they no longer require.

9. Realm Backups

Realm Guard may display available Realm backups and allow an authorized Realm owner to download a backup.

Backup requests are sent to Minecraft or Realm services. The selected backup is downloaded to a location chosen by the user.

Realm Guard may locally record:

  • Backup identifier
  • Realm identifier
  • Backup name
  • File size
  • Creation time
  • Download time
  • Local file path

Downloaded world files are not uploaded to AmericanVampire.

Backups saved outside Realm Guard's application-data directory may remain after Realm Guard is uninstalled.

10. Microsoft Store Purchases and Subscriptions

Realm Guard uses Microsoft Store services to offer and verify subscriptions.

Microsoft may process:

  • Microsoft account information
  • Purchase and subscription information
  • Payment status
  • Subscription entitlement
  • Subscription expiration
  • Installation and update information
  • Device compatibility
  • Store diagnostics
  • Country or regional pricing information

Realm Guard receives only the entitlement information necessary to determine whether the user has an active Realm Guard subscription. Realm Guard does not receive or store complete payment-card or banking information.

Purchases, renewals, cancellations, refunds, billing, and payment methods are handled by Microsoft under Microsoft's policies.

11. Optional Discord Integration

Realm Guard includes an optional Discord integration. It is disabled unless the user deliberately chooses to connect Discord and approves the requested Discord authorization.

The Discord authorization requests permission to create an incoming webhook in a server and channel selected by the user.

When enabled, Realm Guard may send the following information to the selected Discord channel:

  • Realm name
  • Active world name
  • Online player gamer tags
  • Number of online players
  • Last-updated date and time
  • Realm Guard webhook name
  • Realm Guard webhook image

Realm Guard does not intentionally include the following in the Discord live-player roster:

  • Player XUIDs
  • Microsoft authentication tokens
  • Discord authorization tokens
  • Realm Guard administrator notes
  • Watchlist reasons
  • Complete chat logs
  • Complete command history
  • Complete activity logs
  • Moderation history
  • Exported files
  • World backups

Information posted to Discord becomes visible to Discord users who can access the selected channel. Visibility is controlled by the Discord server's roles, channel permissions, and configuration.

While connected, Realm Guard checks for roster changes regularly and updates the Discord message. It may also periodically refresh the message even when the roster has not changed.

Discord independently processes account, server, channel, webhook, message, device, IP-address, and service-usage information under the Discord Privacy Policy.

12. Discord Authorization Relay

Realm Guard uses a Cloudflare-hosted authorization relay to complete Discord's OAuth authorization process.

During connection, the relay may temporarily process:

  • A temporary public encryption key generated by Realm Guard
  • A cryptographically protected authorization-state value
  • A random session nonce
  • The authorization issue time
  • Discord's temporary authorization code
  • Discord webhook ID and token
  • Discord server identifier
  • Discord channel identifier and name
  • Discord OAuth scope and error information
  • Technical network information automatically received with web requests

The relay exchanges the temporary Discord authorization code for webhook information. It then encrypts the webhook information specifically for the requesting Realm Guard application and redirects the encrypted result back to Realm Guard.

The relay does not use a publisher-operated database to retain authorization sessions, Discord access tokens, webhook credentials, Realm data, or player lists.

The relay's application-level error logging is designed to exclude Discord access tokens, refresh tokens, and webhook credentials. It may record limited technical error information such as HTTP status, error type, requested scope, and error description for operational diagnosis.

Cloudflare may independently process IP addresses, request headers, timestamps, security events, and other infrastructure information under the Cloudflare Privacy Policy.

13. Discord Credential Storage and Disconnection

After Discord authorization succeeds, Realm Guard stores the created webhook information locally.

Where Windows encryption is available, the webhook credential is encrypted using operating-system-protected application storage before being written to disk.

When the user selects Disconnect, Realm Guard attempts to:

  1. Delete the Realm Guard roster message from Discord.
  2. Delete the webhook created for Realm Guard.
  3. Delete the locally stored webhook credential.

If Discord is unavailable, the network connection fails, permissions change, or Discord rejects the deletion request, cleanup may fail. Realm Guard displays an error when it detects that cleanup was unsuccessful.

If automatic deletion fails, the user should manually delete the Realm Guard webhook through the affected Discord server's integration settings.

Discord may retain security records, audit information, cached content, or other data according to Discord's own retention practices even after the message or webhook is deleted.

14. Realm Guard Website

The Realm Guard website does not intentionally collect Realm data, player information, application databases, authentication credentials, logs, exports, or backups.

The website does not use advertising or publisher-operated behavioral tracking. Like most websites, its hosting and network providers may automatically process standard technical information to deliver, secure, and maintain the website. This information may include:

  • IP address
  • Browser and device information
  • Requested pages
  • Request date and time
  • Referring page
  • Network and security information
  • Diagnostic information relating to website availability or errors

AmericanVampire does not use this technical information to build advertising profiles or associate website visits with locally stored Realm Guard information.

Information voluntarily submitted by email or through another published contact method is used only to review and respond to the request, provide support, protect Realm Guard and its users, or comply with applicable legal obligations. Users should not submit Microsoft passwords, authentication tokens, Discord webhook credentials, complete Realm logs, or world-backup files.

If additional website services are introduced later, this policy will be updated before those services are used to collect additional personal information.

15. Analytics, Advertising, and Crash Reporting

Realm Guard does not currently include publisher-operated:

  • Advertising
  • Advertising identifiers
  • Behavioral analytics
  • Usage analytics
  • Cross-application tracking
  • Marketing trackers
  • Remote crash-reporting services
  • Remote session recording
  • Remote keystroke recording
  • Sale or monetization of usage information

Errors are generally displayed locally or written to the application's local operating context.

Microsoft, Windows, Discord, Cloudflare, website infrastructure providers, and other platform providers may collect their own diagnostics or operational information independently of Realm Guard.

16. Information AmericanVampire Does Not Receive

AmericanVampire does not intentionally receive or maintain a remote copy of:

  • Microsoft account passwords
  • Microsoft authentication tokens
  • Realm-owner or observer authentication profiles
  • Local Realm Guard databases
  • Complete Realm player rosters
  • Player XUID databases
  • Chat logs
  • Command histories
  • Moderation histories
  • Administrator notes
  • Watchlist reasons
  • Labels
  • Exports
  • Realm backups
  • World files
  • Discord webhook credentials
  • Payment-card or bank-account information

The limited Discord authorization relay processing described in this policy is the exception to a completely local workflow. That relay temporarily handles the authorization information needed to securely create and return a Discord webhook but does not intentionally retain it in a publisher-operated database.

17. Data Sharing and Disclosure

AmericanVampire does not sell personal information.

AmericanVampire does not share personal information for targeted or cross-context behavioral advertising.

Information may be transmitted to service providers only as necessary to provide user-requested functionality:

  • Microsoft, Xbox, Minecraft, and Realm services for authentication and Realm operations
  • Microsoft Store for licensing, purchases, and subscription entitlement
  • Discord for the optional live-player integration
  • Cloudflare for the Discord authorization relay
  • Website hosting and network providers for delivering, securing, and maintaining the Realm Guard website

Information may also be disclosed when legally required, necessary to protect rights or security, or necessary to investigate misuse. Because AmericanVampire does not maintain a central database of Realm information, there may ordinarily be no customer Realm data available to disclose.

18. Legal Bases Where Applicable

Where privacy law requires a legal basis, information is processed on one or more of the following grounds:

  • Performance of a contract: To provide Realm Guard, verify licensing, connect accounts, and perform requested Realm operations.
  • User consent: To enable the optional Discord integration.
  • Legitimate interests: To secure the Discord authorization process, prevent misuse, diagnose failures, and maintain reliable service operation.
  • Legal obligations: To comply with applicable law, lawful requests, accounting obligations, or Microsoft Store requirements.

Users may withdraw consent for the Discord integration by selecting Disconnect.

19. Data Retention

Local Realm Guard information

Local information remains until:

  • The user deletes it through an available application function.
  • The user manually deletes the application data.
  • Windows removes the application data.
  • Realm Guard is uninstalled and the installer or Windows removes its managed storage.

Uninstall behavior may vary depending on the Windows package type, installation method, application version, and where the user saved files.

Exports and backups

Exports and backups saved to a user-selected location remain until the user deletes them.

Discord information

The local webhook credential remains until Discord is disconnected, the credential is deleted, application data is removed, or the application is uninstalled.

The Discord message and webhook remain on Discord until they are successfully deleted by Realm Guard or manually removed by an authorized Discord administrator.

Authorization relay

The Realm Guard Discord relay does not intentionally persist authorization sessions or webhook credentials in a publisher-operated database. Infrastructure providers may retain temporary technical or security logs according to their policies.

Microsoft and other providers

Microsoft, Discord, Cloudflare, and website infrastructure providers determine their own retention periods for information they independently process.

20. Security

Realm Guard uses reasonable technical measures intended to protect locally stored information, including:

  • Local-only SQLite storage
  • Loopback-only communication for the application interface
  • Microsoft-controlled authentication pages
  • Encrypted Discord credential storage where supported by Windows
  • Short-lived Discord authorization state
  • Cryptographic verification of Discord authorization state
  • Encryption of webhook information before it is returned to the desktop application
  • Prevention of Discord mention parsing in roster messages
  • Removal of local Discord credentials during successful disconnection
  • No publisher-operated central Realm database

No application, device, network, or storage system can be guaranteed completely secure.

Users are responsible for:

  • Securing their Windows account and device
  • Securing their Microsoft and Discord accounts
  • Controlling who can access the selected Discord channel
  • Protecting exports and downloaded backups
  • Revoking access when a device is lost, transferred, or compromised
  • Removing locally stored information before disposing of a device

21. User Choices and Controls

Users can:

  • Choose which Microsoft accounts are connected
  • Choose which accessible Realm is monitored
  • Choose whether to connect a Realm-owner account
  • Choose whether to enable Discord
  • Choose the Discord server and channel
  • Disconnect Discord
  • Choose when and where to create exports
  • Choose when and where to download backups
  • Remove exported files and backups
  • Remove application data
  • Uninstall Realm Guard
  • Manage or cancel subscriptions through their Microsoft account

Some core features cannot function without Microsoft authentication and access to the selected Realm.

22. Privacy Rights

Depending on location, users may have rights concerning personal information, including rights to access, correct, delete, restrict, or object to processing.

Most Realm Guard information is stored only on the user's device. AmericanVampire cannot access, retrieve, correct, or delete information that it does not possess.

For locally stored information, users can exercise control by managing the application, deleting local files, or uninstalling Realm Guard.

For information held independently by Microsoft, Discord, Cloudflare, or website infrastructure providers, users should contact the applicable provider.

Privacy requests concerning information actually controlled by AmericanVampire may be submitted using the contact information below.

23. California and Similar State Disclosures

AmericanVampire does not sell personal information.

AmericanVampire does not share personal information for cross-context behavioral advertising.

Realm Guard does not use sensitive personal information to infer characteristics about users or players.

Because AmericanVampire does not maintain a central customer Realm database, AmericanVampire generally cannot associate local Realm records with a specific purchaser.

24. Children's Privacy

Realm Guard is intended as a Realm administration utility and is not designed to collect personal information directly from children.

Realm Guard may locally display gamer tags or activity belonging to Realm players, including players who may be minors, when that information is available to the authorized Realm administrator or observer account.

AmericanVampire does not intentionally receive or maintain a central collection of this information.

Parents and guardians should use Microsoft family settings, Xbox privacy controls, Minecraft account controls, Realm permissions, and Discord permissions as appropriate.

25. International Processing

Microsoft, Discord, Cloudflare, and website infrastructure providers may process information in countries other than the user's country of residence. Their handling of international transfers is governed by their respective privacy policies and legal commitments.

Realm Guard's local database remains on the user's device unless the user independently copies, backs up, shares, or synchronizes that data using another service.

26. Third-Party Services and Policies

Realm Guard relies on services governed by separate terms and privacy policies:

Realm Guard does not control the independent data practices of these providers.

27. Changes to This Policy

This policy may be updated when Realm Guard's features, integrations, legal obligations, or data-handling practices change.

The revised policy will be published on the Realm Guard website with an updated revision date. Material changes will be communicated through the website, Microsoft Store listing, application, or another appropriate method when required.

Continued use after an update is subject to the revised policy where permitted by law.

28. Contact

Publisher: AmericanVampire Application: Realm Guard Website: https://www.realmguard.net Email: Realm-Guard@outlook.com

Privacy questions or requests may be submitted to Realm-Guard@outlook.com.

When contacting the publisher, do not send Microsoft passwords, authentication tokens, Discord webhook credentials, complete Realm logs, or world-backup files.