generated: '2026-08-25' method: searched source: https://www.minervaproject.com/mp-security + live contract-discovery probes, 2026-08-25 note: >- Minerva Project publishes no machine-readable contract (no OpenAPI, AsyncAPI, GraphQL SDL, MCP server, gRPC or WSDL was found on any host it operates — see x-coverage in apis.yml), so every API-level standard below is recorded as not-conformant on the basis of absence, not of a failed check. The regulatory / compliance entries are searched from the company's own published security statement. Education domain standards (LTI, OneRoster, Caliper, QTI, Ed-Fi) are the shortlist for this sector; Minerva Project makes no public conformance claim for any of them, and its Forum platform is provisioned per partner institution rather than published as an integratable tool, so domain_standard_conformance has nothing to read. The company's GitHub org does maintain a fork of pylti1.3 (an LTI 1.3 Advantage tool library) and of django-saml2-idp, which is suggestive of internal LTI/SAML capability, but a dependency fork is not a conformance claim and is recorded here only as a lead, never as evidence of conformance. standards: - id: openapi conforms: false evidence: No OpenAPI/Swagger document at any probed path on minervaproject.com, forum.minervaproject.com or help.minervaproject.com. - id: asyncapi conforms: false evidence: No event/streaming surface published. - id: graphql conforms: false evidence: No /graphql endpoint found. - id: oauth2 conforms: false evidence: No public OAuth authorization server; /.well-known/oauth-authorization-server 404s on every host. - id: oidc conforms: false evidence: /.well-known/openid-configuration 404s on every host. Forum consumes customer IdPs for SSO but publishes no discovery document. - id: rfc9457-problem-details conforms: false evidence: No published error contract. - id: lti-1-3 conforms: unknown evidence: >- No public conformance claim and no IMS/1EdTech certification listing found. The minervaproject GitHub org maintains a fork of pylti1.3 (LTI 1.3 Advantage Tool), last pushed 2025-04-24 — a lead that Forum implements LTI internally, not evidence that it does. - id: oneroster conforms: false evidence: No published claim. - id: caliper-analytics conforms: false evidence: No published claim. - id: qti conforms: false evidence: No published claim. - id: gdpr conforms: true evidence: 'https://www.minervaproject.com/mp-security states GDPR compliance achieved.' - id: ferpa conforms: true evidence: 'https://www.minervaproject.com/mp-security states FERPA compliance achieved.' - id: soc2-type-ii conforms: true evidence: >- https://www.minervaproject.com/mp-security names a SOC 2 Type II audit with an observation window of Q4 2021 through Q2 2022; no newer attestation is published as of 2026-08-25.