It appears that bots and by extension user bots are able to access a server's entire user list when using the bot API, bots and userbots should really not be allowed to do this as it prevents us from restricting spammers who join a server from spam DMing non-staff members of the server, and especially with the bots that are spamming NSFW content to our primarily teenage audience it's really inappropriate and there's not much we can do to stop it.
I know userbots/selfbots are against ToS but these spammers really don't care about that and this should likely be a feature added to tighten the security around bots and the API so that server permissions are properly upheld.
I know there is already a feature in the client to not allow users to DM you from a server if they're not friended, but the average user doesn't have that enabled and lots of people don't actually like having that enabled since they like talking with random people from the server. However noone likes spam, so it's a bit of a conundrum to actually recommend people enable that since it cuts of legitimate avenues of communication by forcing users to friend other users when they might not necessarily want to, (and that bypasses the user's own privacy settings entirely if they're forced to friend everyone they want to DM).
Iniciar sesión para dejar un comentario.