Privacy Policy
This policy explains the personal information practices associated with Positive Space Media’s public informational website and related direct communications.
- Scope
- This is a current-practices notice for the public website. It does not retroactively change the terms that applied before the stated update date, and it does not describe a visitor account, checkout, or subscription product that does not presently exist.
- Updated
- September 18, 2026
Overview and scope
Positive Space Media (“PSM,” “we,” “us,” or “our”) publishes a public informational website, including institutional pages, editorial articles, interactive visual features, and role-based email links. This Privacy Policy describes information handled when a person visits that website or contacts us through an address displayed there. It does not automatically govern information handled under a separate client, supplier, licensing, employment, production, or other business agreement; the applicable agreement and a more specific notice, if supplied, govern that relationship.
Our audit of the current public deployment found no public visitor login, payment checkout, newsletter submission form, or third-party advertising or analytics software development kit. Search of public content appears to occur locally in the browser. The public site is a deployment snapshot; private Drive or operator authoring systems used to prepare material are not visitor accounts and do not, merely because they exist, collect account information from public readers.
This policy separates practices observable on the current site from activities that may occur only if a visitor chooses to email us or enters another relationship with us. Descriptions of possible future products are conditional, not statements that those products, data flows, vendors, or legal bases are already in use. Questions or requests may be sent to the privacy address listed in the Contact section.
Information we collect
The categories potentially handled in connection with the current public site are limited but not zero. They include network and request information necessarily transmitted when a browser asks a host to deliver a page or locally hosted media; an Internet Protocol address disclosed to GeoJS when the interactive globe requests approximate location; preferences stored in the visitor’s browser; and information a person elects to place in an email. We do not treat an inference as established fact and do not characterize approximate network location as precise physical location.
- Website request data
- A hosting or network provider may process IP address, date and time, requested resource, referring address, user-agent or browser details, response status, and similar request or diagnostic data as an ordinary consequence of serving the site. Hosting logs are possible; this notice does not represent that PSM receives every field or controls a particular provider retention period.
- Browser-resident preferences
- Observed examples include coming-soon display or preview-choice state and founder-tour or guide preference and progress state in localStorage, and a globe interface flag in sessionStorage. This inventory is illustrative rather than an assurance that no other ordinary interface state exists. These values concern presentation and navigation; the coming-soon value is not represented as authentication, authorization, or a security control, and none of these values is a public visitor account credential.
- Voluntary correspondence
- An email may contain the sender’s name, address, organization, signature, attachments, message metadata, and whatever inquiry, application, pitch, rights request, or other content the sender chooses to provide.
Analytics and public search
The audited public deployment does not include a third-party advertising or analytics SDK. We therefore do not describe current visitor-level analytics profiles, ad measurement, retargeting, or cross-site tracking. Ordinary hosting request data and browser operation should not be confused with a claim that an analytics product is installed. If an analytics service is introduced later, we will revise the disclosure as appropriate before or when that processing begins and provide choices required by applicable law.
Public site search appears to match against the deployed content in the visitor’s browser. On that basis, entering a term does not presently appear to submit the query to a dedicated remote search provider. A browser still must obtain the relevant page resources from the site host, and a user who follows a search result makes ordinary page requests. We do not promise that every future search implementation will remain local; a materially different implementation would require review and updated notice.
Device, browser, and approximate location information
Browsers disclose technical information when connecting to websites and their service providers. Depending on the browser, network, and hosting configuration, this can include IP address, browser and operating-system identifiers, language, requested URL, referring URL, display or graphics capabilities, and timestamps. The application may also evaluate client capabilities to present an appropriate visual experience. We use or permit processing of such information to deliver pages and media, preserve interface state, diagnose faults, protect availability, and orient the globe as described below.
The current site does not request GPS or device precise-location permission. Approximate country, region, city, latitude, or longitude returned from an IP-based lookup can be inaccurate and should not be understood as a record of a visitor’s precise whereabouts. We do not represent that the site uses device fingerprinting, and the audited code did not reveal a public visitor identity profile assembled from these technical attributes.
Email and other contact submissions
The current public contact paths are mailto links. Selecting one generally opens the visitor’s chosen email application with an address and, on some pages, suggested subject or body text. The visitor decides whether to send. This is not an on-site form submission. Once sent, the message is transmitted through the sender’s provider and whatever recipient mailbox, filtering, routing, and network infrastructure is then in use. Those systems may process addresses, routing information, content, attachments, spam signals, and delivery logs under applicable practices. The public code audit did not establish the recipient provider, configuration, contracts, access, or retention.
We use correspondence to route and answer inquiries, assess partnership or licensing requests, receive press questions, administer candidate communications, maintain appropriate business records, protect rights, and comply with law. Messages may be shared internally with people responsible for the subject and, where reasonably necessary, with advisers or service providers supporting communications. Please do not send passwords, government identification numbers, financial account data, medical records, confidential source material, vulnerability exploit code, or other information unnecessary to the inquiry through ordinary email.
Communications and newsletter status
We may respond to a message and send operational follow-up related to the reason for contact. A person who writes about licensing, press, careers, partnerships, privacy, or another listed topic should expect routing to the corresponding function. The present public deployment does not contain a newsletter registration submission. Consequently, this policy does not claim that public visitors are currently enrolled in a mailing list, that a particular campaign provider is in use, or that an unsubscribe workflow applies to a product not offered.
If we later offer optional promotional email, the collection point will describe what a subscriber is requesting and present any consent or opt-out mechanism required for that program and jurisdiction. A future program would not convert an earlier one-to-one inquiry into blanket marketing permission. A person may ask us to stop non-required promotional communications, if any, but we may still send a requested reply, maintain suppression information, or communicate where necessary for an existing transaction, relationship, safety matter, or legal obligation.
GeoJS, hosting, and service providers
When the relevant interactive experience loads, client code automatically requests https://get.geojs.io/v1/ip/geo.json. Because the request goes directly from the browser to GeoJS, GeoJS receives the visitor’s public IP address and ordinary HTTP request information. GeoJS returns an IP-derived approximate location used to choose an initial globe orientation. The request does not ask the browser for GPS permission. GeoJS operates the external service and its handling is governed by its own notices and practices.
The website also necessarily relies on hosting, network, domain, and email infrastructure. Those providers may process information needed to transmit pages, locally hosted images or videos, and messages, or to protect and troubleshoot their systems. We do not name a processor without verified deployment evidence, promise provider contractual terms we have not confirmed, or state a host’s log-retention period as our own. Providers may act for us, independently, or in a mixed role depending on the service and applicable law.
Hosted media and external destinations
The audited public site serves its media and video locally rather than through identified third-party video embeds. Loading those files still creates ordinary requests to the infrastructure delivering the site. We do not infer from local hosting that no infrastructure provider can see request data, nor do we claim a specific log practice that has not been validated.
Articles or institutional pages may link to news sources, partner sites, social platforms, or other external destinations. Following a link causes the destination and its providers to receive information from the visitor’s browser and subjects the visit to their policies. A link or attribution does not place that destination under our control. Visitors should review external notices and use browser privacy controls appropriate to their preferences.
AI and automated processing boundary
The current public reading experience does not present a visitor-facing AI chat, automated eligibility decision, or account recommendation system. Interactive graphics, local search, routing logic, and IP-based orientation are automated in a technical sense but are not represented as making legal or similarly significant decisions about an identified visitor. We do not state that public navigation behavior is used to train an AI model absent verified evidence.
PSM may use technology, including assistive tools, in private editorial or operational work. That separate authoring activity does not mean every website visit or email is automatically submitted for model training. Before deploying a feature that uses visitor personal information for generative AI, profiling, or a consequential automated decision, PSM should evaluate the purpose, data source, notice, human review, vendor terms, and rights required by applicable law and make a feature-specific disclosure where appropriate.
Role-scoped and other business contexts
Different communications call for different handling. Client or partner contacts may be processed to evaluate and administer an engagement; news-source and press communications may require editorial judgment and source-protection practices; candidates may provide resumes and professional history for recruiting; licensors and rights holders may provide ownership, authorization, and usage details; vendors may provide business contact and compliance information. These activities arise only when the corresponding relationship or communication occurs and are not categories collected from every public reader.
A contract, engagement letter, candidate notice, production release, source agreement, or other specific instrument may add to or supersede this general website notice for its defined subject. We do not use this policy to imply that PSM is currently collecting payment-card details, administering employee benefits, creating consumer accounts, or performing regulated identity verification through the public site. Send career inquiries to the careers address and licensing inquiries to the licensing address, while privacy-rights requests should use the privacy address.
Security and data minimization
We seek to handle information in a manner appropriate to its nature, purpose, and context and to limit collection through the public site to what its features require. No transmission, browser, mailbox, host, or storage system is completely secure. This notice therefore does not promise absolute security, certify a particular encryption implementation, or claim compliance with a security standard that has not been independently verified.
Visitors can reduce risk by sending only information reasonably necessary for an inquiry, confirming destination addresses, avoiding sensitive attachments in ordinary email, keeping browsers updated, and treating unexpected messages with caution. Suspected privacy or security concerns relating to the public site may be reported to the legal or privacy contact. Do not compromise systems, access other people’s information, or publicly disclose sensitive details merely to demonstrate an issue.
Retention
We do not publish invented fixed retention periods or imply that a verified enterprise schedule applies where one has not been confirmed. Browser-resident values remain according to the storage type and the visitor’s browser controls. GeoJS, hosting infrastructure, and sender or recipient email systems may maintain request or message data under their own practices, which this public code audit did not establish. To the extent PSM receives and keeps correspondence or related business records, relevant retention considerations include the inquiry or relationship, continuity and recordkeeping, rights and dispute management, security, applicable legal duties, and another disclosed purpose.
When information is no longer reasonably required, it may be deleted, de-identified, or maintained in a restricted record where lawful and appropriate. Retention can vary based on the nature of a message, an ongoing editorial or commercial relationship, a legal hold, backup cycles, fraud or abuse concerns, and statutory or professional requirements. A deletion request may therefore apply differently to an ordinary inquiry, a required transaction record, an editorial archive, and information held independently by an external provider.
Your rights and choices
Depending on where a person lives and the context, applicable law may provide rights to request access, correction, deletion, restriction, objection, portability, withdrawal of consent, information about categories or recipients, review of certain automated decisions, or an appeal. Some rights do not apply to every organization or record, and exemptions may protect freedom of expression, journalism, legal claims, security, confidential information, or another person’s rights. We will evaluate a request under the law that applies rather than promise a right or result unavailable in the circumstances.
- Send requests to privacy@positivespacemedia.com and state the right requested, relevant interaction, approximate date, and email address used.
- We may ask for proportionate information to verify identity or authority. Do not send sensitive identity documents unless specifically requested through an appropriate method.
- An authorized agent may make a request where law permits. We may seek evidence of authorization and may confirm the request directly with the individual.
- We will use verification information for the request, minimize what we ask for, and respond within the period required by applicable law; this policy does not promise an unverified universal service-level deadline.
Browser data can be cleared through browser settings, though doing so may reset interface state. Because the current deployment does not include a third-party advertising or analytics SDK, we do not describe an advertising opt-out signal as controlling a system that is not present. We do not discriminate unlawfully against a person for exercising an applicable privacy right. A person may also complain to a competent regulator where that right exists.
Children’s privacy
The public site is intended for a general and professional audience and is not directed to children as a service for them. It does not offer public visitor accounts or child-oriented submission features. We do not knowingly solicit personal information online from children through the current public experience. Age thresholds and parental-consent rules differ by jurisdiction, so this statement should not be read as selecting one threshold for every law.
A parent or guardian who believes a child sent personal information to us through an ordinary email link may contact privacy@positivespacemedia.com with enough context for us to locate and evaluate it. Please do not include additional sensitive information about the child in the initial message. We will take steps appropriate to the circumstances and applicable law, recognizing that editorial or legal exceptions can apply to particular records.
International access and transfers
The public site can be accessed across borders. A visitor’s browser may connect to hosting and network infrastructure in jurisdictions other than the visitor’s own, and an email may be routed or stored internationally by the sender’s and recipient’s providers. The GeoJS request likewise reaches an external service. Privacy laws and government-access rules can differ between locations.
We do not identify an unverified headquarters, server location, processor list, adequacy status, or standard contractual clauses in this general notice. If a particular business relationship requires a cross-border transfer mechanism or additional disclosure, PSM should address it in the relevant agreement or notice after confirming the parties, data, destinations, and legal requirements. Visitors may contact us for available information about processing relevant to their own request.
Future products and materially different practices
References elsewhere on the site to platforms, products, newsletters, memberships, programs, transactions, or future capabilities do not establish that those features are live or that their associated personal-information practices currently occur. If PSM later launches accounts, payments, subscriptions, advertising, remote search, user-generated content, or other data-intensive services, those features may require just-in-time disclosures, consent choices, additional contractual terms, or a separate privacy notice.
We will not use this current-practices notice as a substitute for evaluating a materially new collection. Before launch, the feature owner should confirm categories, purposes, legal grounds where relevant, recipients, retention, security, children’s implications, and rights operations. Prior visitors should not assume that a later policy silently authorizes materially unrelated use of information previously supplied.
Changes to this policy
We may revise this policy to reflect verified changes in the public deployment, legal requirements, or operations. The “Updated” date identifies the version’s publication date, not a retroactive effective date. For a material change, we may provide additional notice appropriate to the significance and available relationship with affected people. Archived obligations and rights remain subject to the terms and law applicable when the relevant processing occurred.
Reading the public site after a revision does not by itself create consent to a new, unrelated purpose where consent or another specific legal basis is required. We encourage readers who correspond with us over time to review the current notice. A feature-specific notice may control over this general policy to the extent it expressly addresses the same processing.
Contact
Privacy questions and rights requests may be sent to privacy@positivespacemedia.com. Legal notices concerning the website may be sent to legal@positivespacemedia.com. These are email contact points, not representations of a physical office, registered-agent address, or acceptance of formal service where law requires another method.
For accurate routing, use careers@positivespacemedia.com for candidate communications and licensing@positivespacemedia.com for rights and licensing inquiries. In a privacy request, describe the relevant interaction without including unnecessary sensitive information. If the matter involves a security concern, provide a concise description and a safe means to follow up, but do not attach live malware, credentials, or unlawfully obtained personal information.