Legal
Privacy Policy
What we collect, what our tracker collects on your site, and what you can ask us to do about it. This policy forms part of the terms.
1. What we collect about you
- Waitlist: the email address you enter into the early-access form, and when you sent it.
- Account: your name, email address, hashed password or SSO identifier, and the projects and teammates you set up.
- Product usage: which screens and reports you open, so we know what to improve.
- Technical: IP address, browser and device type, and server logs needed to keep the service running and secure.
- Correspondence: whatever you write to hello@mintance.com, including job applications.
2. What our tracker collects on your site
When you install the Mintance script, each event it sends us carries: a visitor ID and session ID, the page URL and referrer, viewport and screen size, browser language, time zone, and any advertising click IDs present in the URL. Your server's view of the request also gives us the visitor's IP address.
On top of that, you decide what to send. Custom events carry whatever properties you attach. The identify call can attach a name, email address, phone number, external ID and any custom fields you choose — so if you send us personal data about your users, it is because you chose to. Payment plugins, if you enable them, report purchase amounts from Stripe, Polar or LemonSqueezy.
Visitors can opt out entirely by setting _mnt_ignore to true in their browser's local storage, and the tracker will stop sending events.
3. Cookies and storage
Our tracker sets two first-party cookies on your site. There are no advertising cookies and no cross-site tracking.
| Cookie | Purpose | Life |
|---|---|---|
| _mnt_vid | Visitor ID. Recognises a returning visitor to your site. | 365 days |
| _mnt_sid | Session ID. Groups a visit together; refreshes while the visitor is active. | 30 minutes |
The Mintance app itself sets no cookies — your sign-in session is held in your browser's local storage and cleared when you sign out.
We run Mintance on mintance.com too. In the EU we ask before the tracker loads — nothing is stored until you accept, and you can change your mind here at any time.
4. How we use it
Your account data runs your account. The events you send us are stored, queried and displayed back to you, and used for the automated insight detection you switch on. That is the whole list. We do not sell your data, share it with advertising networks, or use it to train models.
5. Who else sees it
We share data with the service providers we need to run Mintance — cloud hosting, email delivery, error monitoring — each under a data-processing agreement, and only to the extent they need it. We will tell you before adding a provider that handles your events. Otherwise we disclose data only where the law requires it, and we will notify you unless we are forbidden from doing so. We can share our current provider list on request.
6. Your responsibilities
For the events you send us, you are the data controller and we are your processor — we act on your instructions. Showing your visitors a consent notice where the law requires one is your responsibility, not ours, as is telling them what you collect and why. If one of your users asks to see or delete their data, that request belongs with you; we will help you honor it. Please do not send us payment card numbers or special-category personal data — see clause 4 of the terms.
7. How long we keep it
Events stay for as long as your plan's retention window and your project settings allow. Delete a project and its events go with it, including from backups, within 30 days. Account data is kept while your account is open and for 12 months after you close it. Waitlist emails are deleted once you are onboarded, or after 24 months, whichever comes first. Security logs are kept for 90 days.
8. Security
We encrypt data in transit and at rest, limit access to the people who need it, and audit administrative access to customer data. No system is perfectly secure, but if a breach ever affects your data we will tell you without undue delay and within 72 hours of becoming aware, with what we know and what we are doing about it. Found a vulnerability? Write to security@mintance.com. There is more detail on the security page.
9. Your rights
You can ask us for a copy of your data, correct it, delete it, restrict or object to how we process it, or take it elsewhere in a portable format. Email hello@mintance.com and we will answer within 30 days, free of charge. You can also complain to your local data protection authority. If you are an end user of a product that uses Mintance, send your request to that company instead — they decide what gets collected.
10. Changes and governing law
We will update this policy as the product changes. Material changes get 30 days' notice by email to account owners, and every version carries the date it took effect. This policy is governed by the laws of the State of Wyoming, United States. Questions, requests or concerns: hello@mintance.com.