FAQ

Is AFK Console Client safe?

How MinecraftAFK keeps accounts safe: Microsoft OAuth so your password never reaches us, standard client behavior to limit ban risk, and clear data handling.

Yes. Here's exactly what that means and why.

Account authentication

We use Microsoft's official OAuth flow to authenticate Minecraft accounts. When you click "Add account", you're redirected to login.live.com and sign in directly with Microsoft. Your password is entered into Microsoft's page, not ours. Microsoft hands us a short-lived authentication token, which is what we use to connect your account to servers.

We never see, store, or process your Microsoft password. The same is true for any 2FA codes, recovery emails, or security questions, which all stay between you and Microsoft. Offline-mode accounts have no password at all and connect by username only.

Will my account get banned?

The bot behaves like a standard Minecraft client. It only sends actions a real player could perform: moving, jumping, chatting, opening menus. There's no aim-bot, no x-ray, no fly-hack, nothing a real player can't do.

That said, every server's rules are different. Some servers (Hypixel, for example) prohibit unattended gameplay. Others (DonutSMP) actively reward AFKing with passive income. Always check the rules of the specific server you're playing on. We document known server-specific behavior in VPN blocks.

Privacy and data handling

  • We collect what's needed to run your subscription: email, Discord ID, Microsoft account UUIDs, server configurations.
  • We don't sell, share, or rent your data to advertisers.
  • Account chat logs are stored for debugging and are visible to you in the dashboard.
  • Full details are in our privacy policy.

How long has MinecraftAFK been running?

Since 2022. We're a small team, but the service has been continuously online for several years and currently serves thousands of paying users. You can read independent reviews on Trustpilot.

What's the actual risk?

  1. Your specific server bans AFK. Check its rules before connecting.
  2. Server-side anti-cheat false positives. Rare, but possible on servers with aggressive detection. The web client uses standard Minecraft protocol, so this is uncommon.
  3. Your account is compromised through another route (for example, reusing passwords elsewhere). We can't prevent that, but our OAuth flow means a breach of our servers wouldn't expose your Microsoft credentials.

Have a specific concern? Ask in our Discord and we'll walk through the technical details.