Minerva, for the people your organization gives it to
This policy applies to the Minerva platform and to the Minerva mobile app for iOS and Android, both published by IT-RANKS Technology.
Minerva is enterprise software. You reach it because your organization runs Minerva and gave you an account on it. It is not a consumer service, and there is no way to sign up for it on your own.
Your data stays between you and your organization
Minerva runs on your organization's own environment. The mobile app connects to that environment and to nothing else. Your cloud cost data does not pass through IT-RANKS.
When you sign in, you first tell the app which Minerva environment to connect to. From that moment everything — your credentials, your session, the figures you see, the acknowledgements you make — travels between your device and that environment.
Your organization decides who has an account, what each role may see, how long data is kept and when it is deleted. Where a legal framework distinguishes the two roles, your organization is the controller of the data in its environment; IT-RANKS is the software provider and acts as a processor only for the support and hosting your organization has separately contracted.
The single exception is the delivery of notifications, described below.
What the app keeps locally
The mobile app keeps a small amount of information on your device so that it opens quickly and stays readable when you have no connection.
- Your session
- Kept in the protected storage your device provides, so you are not asked to sign in each time. Erased when you sign out or when the session is revoked.
- Your sign-in email
- Kept in the same protected storage so the field is filled next time. Erased when you sign out.
- A recent copy of what you saw
- A limited, short-lived copy of your latest figures, so the app can open offline and tell you how old they are. It is discarded automatically after a short period, and erased when you sign out.
- Which alerts you were shown
- So the same alert is never announced to you twice.
- Your preferences
- Whether notifications are on, how you unlock the app, and which sections you choose to see.
All of this sits in the app's private area, which your device keeps separate from other apps. Removing the app removes every part of it.
What leaves, and who receives it
- Email and password
- Sent to your organization's Minerva environment to sign you in.
- Your session
- Sent to the same environment with each request, to confirm it is still you.
- Device name and type
- So that you and your administrators can see which devices are signed in, and revoke one.
- A notification address
- An identifier for this installation, used only to deliver notifications, and only while you have them switched on.
- Your acknowledgements
- Recorded against your account, because clearing an alert is a change other people in your organization can see.
Everything the app sends travels over an encrypted connection, and the app refuses to connect to an environment that is not secured.
No tracking, no advertising, no profiling
The Minerva mobile app contains no analytics, advertising, tracking or profiling software of any kind. There is nothing in it that reports your behaviour to us or to anyone else.
- We do not track you across other companies' apps or websites.
- We do not sell, rent or share personal data with data brokers or advertisers.
- We do not build advertising profiles, and the app shows no advertising.
- We do not access your contacts, photos, messages, calendar, microphone, camera or location.
- We do not collect your organization's cost figures for our own purposes. The app receives them from your environment and sends them nowhere.
How you are told something needs you
Notifications are off until you switch them on, and switching them off stops them completely.
While you are using the app
Most of what you see is produced on your own device. The app already reads your budgets and anomalies to draw the screens; when something new appears it raises the notification locally. Nothing additional leaves your device for this to work.
While the app is closed
To reach you when the app is not running, your organization's environment must hand the message to the notification service that your phone's platform operates — Apple for iOS devices, Google for Android — through the delivery provider we use to reach them. This is the only case in which anything relating to you passes outside your own organization.
What travels that route is deliberately thin: the notification address for your installation, the short line of text you see, and a reference to the item it should open. It carries no credentials and no account history.
Switching notifications off removes that address from your environment, and nothing further is sent.
Face and fingerprint
If you choose to unlock Minerva with your face or fingerprint, the check is performed entirely by your device. Minerva asks your device whether the person present is you, and receives only yes or no.
Minerva never reads, stores or transmits biometric data. Your face and fingerprint never leave the protected hardware on your device, and this app has no access to them.
Cost figures belong to your organization
The spend, budgets, anomalies and recommendations in Minerva describe your organization's cloud accounts. They are your organization's data, held in your organization's environment, under its own retention rules.
The mobile app reads that data and lets you acknowledge what needs you. It cannot create budgets, change configuration, or send your data anywhere else.
How long anything is kept
On your device. Signing out erases the stored session, the saved email and the recent copy of your figures immediately. Removing the app removes everything it kept, including your preferences.
In your organization's environment. Retention is set by your organization, not by us. Your administrators can revoke any device at any time, which stops it reading anything further and stops its notifications.
Notification addresses. One is removed when you switch notifications off, when the session is revoked, and when the delivery service reports that the app is no longer installed.
How your data is protected
- Everything the app sends and receives travels over an encrypted connection.
- Your session is held in the protected storage your device provides, not in ordinary files.
- Signing in on your phone is separate from signing in on the web, so revoking a phone does not sign you out elsewhere, and losing a phone does not expose the portal.
- What you may see and do is enforced by your organization's environment according to your role, not merely hidden from view.
- Actions that change something other people can see are recorded against the account that made them.
No system is beyond reach. If you believe an account or a device has been compromised, tell your Minerva administrator, who can revoke it immediately, and contact us at the address below.
Asking about your data
Depending on where you live, you may have the right to ask for a copy of your personal data, to have it corrected or erased, or to object to how it is used.
Because your account and its data live in your organization's environment, those requests are answered by your organization. Ask your Minerva administrator or your organization's privacy contact. If you approach us directly, we will refer you to them and help them respond.
Minerva is not for children
Minerva is a workplace tool for people managing an organization's cloud spend. It is not directed at children, and we do not knowingly collect data from anyone under 16.
When this policy changes
If this policy changes we update the effective date at the top of this page. When a change materially affects how your data is handled, we will say so in the product rather than relying on you to re-read this page.
Reaching us
For questions about this policy, or about how Minerva handles data:
IT-RANKS Technology
Riyadh, Saudi Arabia
