All pages

Data and privacy

Every host the mod contacts and why, what each request carries, what stays on your computer, and what Vantage Stats sends only when you opt in.

This page is for anyone who wants to know what Vantage does with the network and with their computer before trusting it, including parents and anyone who has been asked "is this safe?". It lists every host the mod talks to, when, why, and with what, then what it keeps on disk. It describes the mod as of 2.0.1, read from its source. The binding text for Vantage's own service is the privacy policy; this page explains the mod's side of it.

The short version

  • Vantage never asks for a Hypixel API key and has no setting for one.
  • Most of what it fetches is public game data: Bazaar and auction prices, item data, the SkyBlock calendar. Those requests carry nothing about you.
  • Your Minecraft access token goes to Mojang and nowhere else, and only when you sign in to Vantage Stats.
  • Nothing about you reaches Vantage's own service unless you look up a player, send a bug report you have read first, or turn Vantage Stats on.
  • Vantage Stats is off until you turn it on, category by category, and records nothing until then.
  • Everything Vantage keeps is in one folder, config/vantage, on your computer.

Every host the mod contacts

The tables below are the complete list, sorted by when the requests happen. A link the mod shows you in chat or on a screen is not on them: clicking one opens your browser, and the mod itself sends nothing.

From the moment the game starts

These run in the background for the whole session, inside SkyBlock or not. They fetch public data and send nothing about you.

HostWhat forHow oftenCan you stop it
api.hypixel.netBazaar prices, the mayor and election, and Hypixel's item, skill and collection tables. Hypixel's keyless public resources only.Bazaar every 120 s; the election every 10 minutes; the tables at start and every 12 hoursthe Bazaar interval, from 30 to 900 s, under Price refresh interval on API & Data Sources; there is no off switch
hysky.de, then moulberry.codes if it failslowest BIN and three-day average BIN pricesat twice the Bazaar interval, every 240 s by defaultthe same interval
github.com, api.github.comthe NotEnoughUpdates item repository: item names, recipes and constantsa check for a newer version on every launch; a download when there is oneAuto-update item repo on API & Data Sources; off, Vantage uses the copy it already has
api.github.com, raw.githubusercontent.comdungeon room data from the Skyblocker repository, and selected constants from the SkyHanni repositorywhen the copy on disk is more than 24 hours old, checked hourlyno switch; offline, the copy on disk is used

Features that are on by default

HostFeatureWhat forWhen
gitlab.comUpdate checkerthe mod's list of releasesonce per session; see Announcements and updates
gitlab.comAnnouncementsthe announcements file in the mod's repositoryat start, on joining a world, and every 30 minutes
hysky.deEvent calendar and Event remindersa community calendar of SkyBlock events whose times depend on the mayorwhile you are in SkyBlock, at most once every 20 minutes
api.eliteskyblock.comJacob's Contestthe year's Jacob's contest scheduleonce per SkyBlock year, while you are in SkyBlock, then kept on disk; its Fetch the schedule option turns it off
Mojang, then Vantage's serviceDungeon Scoreits Spirit pet lookup looks up the first player to die in a dungeon run, to see whether they have a Legendary Spirit petonce per run, when someone dies; turn Spirit pet lookup off to stop it

The calendar, the contest schedule and the update and announcement files are public data, and those requests carry nothing about you. The Spirit pet lookup is a player lookup like the profile viewer's, below: Mojang turns that player's name into a uuid (Vantage already knows yours, so it skips this step when it is you), and the uuid goes to Vantage's service.

Only when you use something

HostWhat sends itWhat it carries
api.mojang.comlooking a player up with the profile viewer, /vt pv <name>the name you typed, to find its uuid; skipped when the name is your own
sessionserver.mojang.comthe same lookups, and Dungeon Score'sa uuid, to get that player's current name and skin
stats.glass-vt.lol, Vantage's servicethe profile viewerthe uuid of the player you looked up
stats.glass-vt.lola bug report, only after you press Sendthe report you have read on screen; see below
stats.glass-vt.lolWhere profiles come from, then Check, on API & Data Sourcesnothing; it asks whether the service is ready

Only if you switch a feature on

HostFeature (off by default)What it carries
translate.googleapis.comTranslate On Clickthe text of the chat message you click, and the language you want it in
api.elitebot.devElite leaderboardsyour uuid and your SkyBlock profile's id, every 10 minutes by default
the Discord app on your computerDiscord rich presenceyour status lines, sent to the Discord app you are running, which shows them on your Discord profile; see the note below
stats.glass-vt.lol and MojangVantage Statsonly after you turn it on; see below

The connection you already have

Vantage also uses the Hypixel Mod API, which is bundled inside the jar, to learn which server, lobby and island you are on. It talks over the connection your game already has to Hypixel and opens none of its own.

What every request carries

Every request the mod makes names itself with a User-Agent line:

Vantage/<version> (Minecraft <version>)

Nothing else is added to them: no account name, no install id, no settings. Vantage Stats' own uploads, once you turn it on, also carry your sign-in and a random id for this game install; What is recorded lists them.

Responses for public data are kept in a disk cache, config/vantage/cache, so a launch without network still has prices and data from last time, and a file that has not changed is not downloaded twice. The cache is trimmed once per launch.

Vantage's own service

Vantage's service runs at stats.glass-vt.lol. It is the one host the mod's own online features talk to, and it is written into the mod as a constant with no setting to change it, on purpose: an address a setting can rewrite is an address a shared config could rewrite. The service describes it.

Player lookups

Hypixel's developer policy does not allow a Hypixel API key inside a public mod, so the mod cannot ask Hypixel for a player's profile itself. The service holds one registered application key and asks on the mod's behalf, for the profile viewer and for Dungeon Score's Spirit pet lookup. The mod sends the uuid of the player being looked up and nothing else. The privacy policy says what the service does with the answer; Profile viewer says how the viewer works.

Bug reports

/vt bug <what went wrong> builds a report and shows you all of it on a screen before anything leaves your computer. Typing the command is a request to see the report, not to send it; nothing goes until you press Send. Troubleshooting lists exactly what a report carries.

Vantage Stats

Vantage Stats is off by default, and switching the feature on only arms it. Until you agree on its consent screen, for the Minecraft account you are playing on, and turn at least one of its ten categories on, it records nothing and makes no network calls. What it records, what it never records and how to delete it are on What is recorded; Overview explains the rest.

Your Minecraft session

Signing in to Vantage Stats proves the account is yours with the same check every Minecraft server makes: your game sends your access token to Mojang's session server, exactly as when you join any server, and the service asks Mojang whether it was you. That is the only place in the mod that touches your access token, and it goes to Mojang and nowhere else. A check before every release makes sure it stays the only place.

No Hypixel API key

Vantage never asks for a Hypixel API key and has nowhere to type one. If an older version stored one in your config, Vantage deletes it the next time it loads and says so once in chat, so a setting does not vanish without a word. The profile viewer reads through the service instead.

What stays on your computer

Everything Vantage writes is under your Minecraft folder's config/vantage/:

config/vantage/
  vantage.json                which config profile is active
  profiles/                   your config profiles, one file each
  backups/                    the newest ten copies of each profile
  hud.json                    your HUD layout, one per config profile
  cache/                      copies of downloaded public data
  repo/                       the NotEnoughUpdates item repository
  data/                       dungeon rooms and SkyHanni and NEU constants
  announcements-seen.json     which announcements you have seen
  chat_rules.json             your chat rules
  playtime.json               your playtime
  ledger/, blackbox/, mining/, loop/, containers/, music/ ...
                              what individual features record, such as the grind ledger and the black box
  stats/                      Vantage Stats, created only when you use it

Feature files such as these are written by the features you use and read back by them; none of them is uploaded by the mod on its own. The black box, for example, keeps the seconds before each death on your computer and nothing else. Vantage Stats' one exception, the history it imports once when you first turn it on, goes only into the categories you chose; What is recorded says what it reads.

To remove everything Vantage keeps, close the game and delete the config/vantage folder. Deleting the folder does not delete what Vantage Stats has uploaded; /vt stats delete does that, and the privacy policy says how.

Logs

Vantage writes its own lines to the game's log, latest.log, like any mod. It also keeps its own last 40 log lines in memory, so a bug report can carry them. They are never written anywhere else or sent unless you send a report, and they come from Vantage's own logger only: never another mod's lines, never the game's, and never chat.

The Vet card

/vt carry <type> copies a Vet card to your clipboard and nothing else. The card is a signed code carrying your Minecraft name and uuid, your Vantage Vet points and tier, the hours you played in the last seven days, your mod version, when it was made, and the carry you asked for. It reaches the Vantage Discord only if you paste it there yourself; nothing in the mod talks to the Discord bot.

The privacy policy

The privacy policy is the binding text for Vantage's service, its Discord bot and Vantage Stats: who runs them, what they store, for how long, and how to have it removed. This page and the policy are meant to agree. If you find a place where they do not, or where the mod does something neither describes, that is a bug; Troubleshooting says how to report it.