Rankiva

Privacy Policy

Private beta notice. Updated 5 October 2026.

Rankiva is an independent Kerala PSC exam preparation app operated from Canada for learners, primarily in India. It is not affiliated with, endorsed by, or representing the Kerala Public Service Commission or the Government of Kerala; official information is at keralapsc.gov.in. Contact Rankiva at supportrankiva@gmail.com.

Account and learning data

Online guest practice creates a Supabase user ID without requiring an email or password. Guest data is pseudonymous, not fully anonymous. Google sign-in, when used, shares your name, email and Google identity with our authentication provider. Rankiva does not receive your Google password.

We store learning attempts, answers, correctness, topics, time spent, readiness estimates, streaks, points, saved questions and study preferences to provide practice, progress and account recovery. Learning events can include a generated device identifier. Technical request logs may be processed by hosting providers.

Support tickets

When you open a support ticket in the app we store the category, subject, description and replies; your name and email from your signed-in account (guests have none); an optional contact phone number if you give one; an optional screenshot you attach, kept in private storage; and the app version and device details (Android version and phone model) attached automatically. We use these only to answer and resolve your request.

Notifications and devices

Rankiva keeps an in-app notifications inbox (for example support replies, account notices and updates you choose) and your notification preferences (topics, quiet hours in IST, daily limit). To deliver notifications the app registers this installation: a random installation ID, app version, Android version, phone model and whether notifications are allowed. When push delivery is enabled, a push token from the phone's notification service is also stored; it is never shown to anyone and is cleared when you sign out or the account is deleted. Android asks for notification permission only when you turn notifications on.

On your device

Preferences and account-specific progress caches are stored locally. A profile photo you select stays on your device; the current app does not upload it. When connected, supported learning state is backed up under your Supabase user ID. Unsynced device data is not recoverable on another phone.

Providers and access

Supabase provides authentication, database and private file storage. Google provides optional account sign-in. Cloudflare Pages hosts these public pages. Authorized operation may involve access from Canada and processing outside India. Rankiva does not sell learner data or use it for targeted advertising in this private beta.

Google OCR/AI tools may process owner-uploaded educational content. The student app does not need to send learner answers to an AI model to provide practice.

Security and protected papers

Network access uses HTTPS. Account-owned records are subject to database access policies. Human administrative access is restricted to the verified owner. Protected PDFs use temporary signed links rather than a public storage bucket. View-only presentation cannot prevent screenshots or browser saving.

Retention and deletion

No automatic maximum retention period is currently configured for beta account and learning records. Records remain until removed through the verified deletion process or operational maintenance. You can delete your account in Settings > Privacy & Data > Delete my account, or by emailing supportrankiva@gmail.com from your account email (see the account-deletion page). Deletion runs 24 hours after the request; signing back in during that window offers Restore account, which cancels it.

Deletion covers the account and associated active learner records, including progress, attempts, saved questions, registered devices, notifications and identifiable learning events. Support tickets and question reports are kept anonymized, with name, email, phone and account link removed. Provider backup copies and security logs may remain until the provider's retention period ends; we do not claim immediate removal from backups. We will explain any record that must be retained when responding to your request.

Your choices

You can use guest practice without Google sign-in, request access or correction through support, or request account deletion. Logout does not delete server records. Uninstalling or clearing app storage removes local access but does not itself remove server records. Please submit a guest deletion request before clearing the app so the request can be tied to your guest identity.

Questions, children and updates

For privacy concerns, including data supplied by a child, contact supportrankiva@gmail.com. Do not send identity documents, passwords or one-time codes. Changes to this notice will be posted here with an updated date.