Image scam OCR / QR checks, Dangerous-file layer decisions, trusted-link mode, and Anti-Spam policy stay deterministic first. OCR scam scoring covers fake Nitro, Robux, Steam gift, wallet, QR-login, and MrBeast-style crypto lures; moderator review can use the configured Shield log channel while Babblebox stores sanitized OCR text only.
Pure join volume can alert without punishment. Containment waits for stronger raid evidence, trusted-role suppressors, event mode, and recovery paths.
Setup Hub, Role Tools, Role Rules, Setup Sync, logs, appeals, permissions diagnostics, and owner control are clear, narrow surfaces instead of a giant settings dump.
Admin lane stays small with reversible locks, permission truth, who can use the commands, what /giverole may add, what /removerole may remove, Role Rules, /admin role-rules, /admin role-history, Role Tools, /admin role-tools, /giverole, /removerole, exclusions, new-member auto-role, and seven days of visible revoke history.
The panel-first rules flow keeps Actions, Options, and Exemptions together with a dedicated timeout profile, separate GIF Flood / Media Pressure controls, GIF Flood / Media Pressure controls, and smart or never-ping alerts for compact moderation logs.
Dangerous-file layer checks use optional reputation without uploading files; Babblebox never executes, decompresses, inspects macros, or uploads files to VirusTotal or MalwareBazaar. The bounded private immunity lane and private feature-surface checks keep AFK reasons, reminders, Watch keywords, and configured local Shield checks separate from live moderation alerts.
Powerful flows, separated by risk.
Safety, moderation, and setup each have their own lane. That keeps routine operators away from risky actions while still giving admins fast recovery tools when the server needs them.