Anti-Nuke

Whitelisting trusted users

When to use the whitelist and the security trade-off.

Sometimes a trusted admin needs to perform mass operations (yearly channel cleanup, role restructuring). Add their user ID or a trusted role to the whitelist and their actions will bypass detection.

Use sparingly

A whitelisted account is the worst-case scenario for compromise. If their account gets hijacked, anti-nuke does nothing. Only whitelist accounts you trust completely AND that have 2FA enabled.

Never whitelist self-assignable roles

If members can grab a role through a reaction role panel and that role is whitelisted, you have effectively disabled anti-nuke for everyone. Whitelist only roles that members cannot self-assign.

Adding to whitelist#

discord
/antinuke whitelist action:add user:@trusted-admin /antinuke whitelist action:add role:@CoOwner