Protection
Honeypot channel
In short
Run /honeypot create and Bastion makes a #do-not-post-here channel with a pinned warning. Any account that posts there, apart from staff and bots, is removed and its last 10 minutes of messages are cleared. It's free.
Why it works
Real people read the warning and leave the channel alone. Spam bots and hacked accounts post their advert in every channel they can see, including this one. One message there is enough to know.
Set it up
/honeypot create
Makes the channel at the top of your channel list, pins a plain warning and switches the honeypot on. Only the owner, trusted people and administrators can run it.
You can also pick an existing channel in the dashboard, under Automod, Advanced settings, Honeypot channel. Write your own warning and pin it.
CarefulNever choose a channel people chat in. Everyone who posts there is removed. Only the owner and trusted people can change the honeypot settings.
What happens to someone who posts
- The message is deleted.
- Their messages from the last 10 minutes are removed across the server.
- The action you chose is applied.
- Bastion posts what happened in your log channel.
| Setting | What it does | Default |
|---|---|---|
| Use a honeypot channel | Switches it on or off. | Off |
| Honeypot channel | The channel to watch. Only messages in the channel itself count, not threads under it. | None |
| What happens to them | Kick and clear messages, time out for a day, kick, or ban. | Kick and clear messages |
| Go easy on members older than | Members who joined longer ago than this many days are timed out and your alert roles are pinged instead. 0 treats everyone the same. | 0 |
Kick and clear messages is a ban that Bastion lifts straight away. The spam goes, and the real owner of a hacked account can rejoin once the account is safe.
Threads
Anyone can open a thread and invite others to talk in it, so a thread under the honeypot is never the trap. Bastion deletes any thread made there and punishes nobody for what was said in it. A channel made by /honeypot create has threads and reactions switched off for members. If you picked your own channel and members can open threads in it, Bastion tells the owner, at most once a day, and says which permissions to switch off.
A reply that pings someone and a line Discord writes itself, such as a pinned message notice, are never acted on either.
Who is never caught
- The server owner and trusted people.
- Anyone with a moderator role or a staff permission such as Manage Messages, Kick Members or Timeout Members.
- Bots and webhooks.
The honeypot is part of Automod, so Automod must be on. It shares Automod's safety limit: after 5 removals in 10 minutes Bastion times people out instead, so one mistake can't empty a server.
Last updated