Scope and responsible entity
This policy applies to the website pages, policy pages, operational measurement, and company-controlled contact channel provided by MindBridge Business Academy. The current publication domain is . Publication domains are not separate legal entities.
Third-party services such as TradingView, the site’s network and security provider, Google Fonts, WhatsApp, linked government resources, and other external sites have their own privacy practices. This policy describes MindBridge's role and the information connected with the current publication. It does not replace a provider's policy for a provider-controlled account or service.
Information categories
| Category | Examples associated with the current site | Primary source |
|---|---|---|
| Identifiers | Pseudonymous visitor and session identifiers, email address when you contact us, and identifiers contained in a request. | Browser storage, operational systems, or information you provide. |
| Internet and network activity | IP address, user agent, browser type, request headers, entry URL, page path, referrer, page code, communications-link interactions, and route status. | Your browser, the network delivery and security provider, and first-party operational measurement. |
| Device and interface information | Viewport size, device or browser characteristics, language settings, storage availability, and script or widget status. | Your browser or device. |
| Approximate location | Country or region inferred from network information. The site does not seek precise GPS location through the standard page experience. | Network and delivery information. |
| Communications | Email content, request category, supporting links, and records needed to respond to a general, privacy, correction, security, or accessibility inquiry. | Information you send. |
| Third-party interaction information | Requests generated when TradingView, Google Fonts, or another external resource loads, and information processed by WhatsApp when you open it. | Your interaction with the provider. |
| Operational inferences | Aggregate conclusions about page performance, route integrity, engagement, device compatibility, or traffic quality. The current site does not use this information to make legal or similarly significant automated decisions about individuals. | Operational events and aggregate review. |
Information we do not seek through the publication
The site does not ask readers to enter brokerage passwords, bank passwords, one-time verification codes, private keys, seed phrases, complete payment card numbers, or securities account credentials. Do not send that information through email, a page, or a community message.
If a privacy request requires identity verification, only information reasonably needed to verify the requester and the applicable record should be requested. A government identifier should not be sent unless the official channel specifically explains why it is necessary and provides an appropriate method.
Sources of information
- Directly from you: information you provide in an email or other official communication.
- Automatically from your browser or device: page requests, language, viewport, storage, interactions, and operational events.
- From network and service providers: delivery, security, approximate country, widget, font, and provider request information.
- From public or authoritative sources: information used to verify a correction, security report, company identity issue, or legal obligation.
Purposes of processing
| Purpose | Information commonly used | Why it is reasonably necessary |
|---|---|---|
| Deliver and display the publication | IP address, request data, browser and device information, fonts, scripts, and page paths. | Returns the requested page and presents content in a usable format. |
| Security and abuse prevention | Network information, security signals, request patterns, approximate location, and incident reports. | Protects the site, identifies abuse, and supports investigation of impersonation or malicious activity. |
| Session continuity and route integrity | Session identifier, page code, entry path, and route status. | Maintains expected route behavior and supports session continuity. |
| Operational measurement | Pseudonymous identifiers, page open, communications-link activity, route status, language, and approximate country. | Evaluates performance, aggregate engagement, route quality, and technical failures. |
| Respond to requests | Email, page URL, request details, proof of authority, and verification information where necessary. | Answers questions and handles privacy, corrections, security, and accessibility reports. |
| Legal, compliance, and dispute handling | Relevant records, requests, security information, and communications. | Complies with applicable law, protects rights, and addresses disputes or misuse. |
Service providers and recipients
Information may be disclosed to providers that support network delivery, security, font delivery, market components, operational measurement, hosting, communications, professional advice, legal compliance, and incident response. Providers should receive only the information reasonably connected to their function.
- Network delivery and security provider: delivery, performance, security, and approximate location information.
- TradingView: market widget and provider request information when enabled.
- Google Fonts: font file requests and related technical information.
- First-party measurement endpoint: page, route, communications-link interaction, device, language, country, and pseudonymous event information.
- WhatsApp: provider-controlled information when you voluntarily open community details.
- Professional and legal recipients: information reasonably necessary for advice, compliance, dispute resolution, fraud prevention, or legal process.
Provider roles and limitations are described in Market Data and Third-Party Providers.
Category-to-purpose and recipient map
| Information category | Examples | Primary purposes | Recipient categories | Typical retention basis |
|---|---|---|---|---|
| Request and network data | IP address, timestamp, user agent, requested page, security and routing signals | Deliver pages, protect systems, diagnose errors, maintain route integrity, and review aggregate operation | Hosting, network delivery, security, and operational service providers | Operational need, security investigation, provider settings, and legal requirements |
| Browser and session identifiers | Anonymous visitor identifier, session identifier, communication-link lock | Session continuity, duplicate control, route operation, and first-party operational measurement | MindBridge and providers that process the site request or event on its behalf | Session duration or until local browser storage is cleared, as listed in the storage policy |
| Interaction information | Page open, communications-link click, automatic WS redirect, invalid-entry redirect | Understand whether pages and routes function, identify broken paths, and evaluate aggregate communications operation | MindBridge and the first-party event endpoint or infrastructure provider | According to operational value, security need, and documented retention practice |
| Contact and request information | Email address, request category, message, supporting material, authority or verification information | Respond to questions, privacy requests, corrections, security reports, complaints, and accessibility feedback | Authorized personnel and service providers needed to review or communicate about the request | Time needed to resolve the request, maintain a record, prevent abuse, and meet applicable obligations |
| Third-party interaction information | Information sent when a person opens a market widget, font service, company website, or messaging service | Provide the requested external function | The selected third-party provider under its own policies | Determined independently by the provider and any applicable account settings |
The map describes the current public publication. It must be revised if a new form, account, payment flow, marketing program, sensitive-data use, or independent optional measurement service is introduced.
Sale, sharing, targeted advertising, and sensitive information
The current site does not describe its operation as selling personal data, sharing personal data for cross-context behavioral advertising, or using personal data for targeted advertising. It does not present paid advertising, sponsored content, or affiliate links in the current site.
The publication does not intentionally collect precise geolocation, government identifiers, account passwords, private keys, seed phrases, or financial account credentials through the standard page experience. It does not use sensitive personal information to infer characteristics or make automated decisions that produce legal or similarly significant effects.
If these practices change, the page, notice, control, and relevant policy must be updated before the new processing begins, and consent or opt-out mechanisms must be implemented where applicable.
Automated decision-making and profiling
Operational systems may automatically determine whether a page route is valid, whether an external communication link can open, whether a duplicate event should be reduced, or whether a network request should be allowed. These operational decisions support delivery and security.
The current site does not use personal data to make automated decisions that determine eligibility for credit, employment, housing, insurance, education, financial services, or another legal or similarly significant effect. It does not create an individualized investment suitability profile.
Retention
Information is retained only as reasonably needed for the stated purposes, security, integrity, troubleshooting, legal obligations, and dispute handling. Exact periods can vary by system, event type, provider, and whether a record is needed to address an active request.
| Record type | Typical retention approach |
|---|---|
| Operational visitor identifier | Remains in browser localStorage until cleared. Associated server-side operational records are retained only as reasonably needed for measurement, integrity, security, and troubleshooting. |
| Session identifier and communication lock | Normally lasts for the current browser session. |
| Optional measurement preference | Remains until changed or cleared. |
| Contact and rights requests | Retained for the time reasonably needed to verify, respond, document the outcome, prevent fraud, and satisfy legal obligations. |
| Security and dispute records | Retained according to severity, investigation needs, legal obligations, limitation periods, and risk. |
Providers may retain information under their own schedules. A request to delete may be limited by legal exceptions, security needs, recordkeeping duties, or information that cannot reasonably be linked to the requester.
Security
MindBridge uses administrative, technical, and organizational measures intended to reduce unauthorized access, disclosure, alteration, loss, and misuse. Measures include data minimization, use of established service providers, browser storage separation, operational monitoring, access control appropriate to the system, and review of reported incidents.
No security measure is perfect. Email, browsers, networks, third-party services, and devices can be compromised. The Security page explains official identity, impersonation risks, sensitive information warnings, and reporting.
Your privacy rights
Depending on where you reside and whether a privacy law applies to the processing, you may have the right to:
- confirm whether personal data is processed and request access to categories or specific information;
- correct inaccurate personal data;
- request deletion, subject to exceptions;
- obtain a portable copy of certain information;
- request information about sources, purposes, categories of recipients, sales, sharing, or targeted advertising;
- opt out of sale, sharing, targeted advertising, or certain profiling where those activities occur;
- limit certain uses or disclosures of sensitive personal information where applicable;
- withdraw consent for processing based on consent;
- appeal a refusal of a request where an appeal right applies;
- use an authorized agent where permitted; and
- exercise rights without unlawful discrimination.
These rights are not absolute. An applicable law may limit a right based on identity verification, legal privilege, security, fraud prevention, free expression, research, legal obligations, inability to link the record, or another recognized exception.
Submitting and verifying a request
Send a request to with the subject line Privacy Request. Identify the right, jurisdiction, relevant email or identifier, and information reasonably needed to locate the record.
Verification is matched to the sensitivity of the request and the information reasonably available. We may ask you to confirm control of an email address, identify the page or interaction, provide details previously associated with the request, or supply proof of authority. Excess information should not be requested.
An authorized agent may need to provide signed permission or other legally recognized authority. We may also confirm the request directly with the consumer when permitted. Requests that cannot be verified may be denied or limited.
Response, appeals, and complaints
Requests are handled within the period required by applicable law. A lawful extension may be used when the request is complex or numerous, and the requester will be informed when required. A fee may be charged or a request may be refused when permitted for excessive, repetitive, manifestly unfounded, fraudulent, or abusive requests.
If a request is denied, the response will explain the basis to the extent required and available. Where an appeal right applies, submit an appeal through the same email channel with the subject line Privacy Appeal and include the earlier request and response. You may also contact the privacy or consumer-protection authority available in your jurisdiction.
Request outcomes and records
A completed request record may include the request category, date received, verification steps, scope, decision, information provided or changed, reason for a limitation, appeal or complaint, and final response. The record helps demonstrate consistent handling and prevent unauthorized disclosure.
A request may be limited when identity or authority cannot be reasonably verified, the information is not held, an exemption applies, the request would disclose another person's information, or the request is fraudulent, abusive, or technically impossible. Any explanation is subject to the rights and procedures that apply to the requester.
Global Privacy Control and opt-out signals
Global Privacy Control and similar recognized mechanisms can communicate an opt-out from sale, sharing, or targeted advertising. The current site does not describe its practices as including those activities. The current optional measurement preference is separate and does not claim to be a universal legal opt-out.
If a future activity makes recognition legally required, the signal, data flow, user notice, and control must be implemented consistently before the activity begins. More detail appears in Privacy Choices.
Cross-border processing
MindBridge and its providers may process information in the United States and other countries where they operate. Privacy laws, government access rules, and remedies may differ from those in your location. Where an applicable law requires a legal basis, transfer mechanism, consent, or contract, the processing should be handled according to that requirement.
Children
The publication is not directed to children and does not knowingly seek personal information from children through the standard site experience. A parent or guardian who believes a child submitted personal information can contact us with enough detail to locate and review the information.
Do not send a child's identity document or sensitive information unless the official contact channel requests the minimum information needed for a lawful verification process.
Changes and contact
This policy may change when the site, providers, data practices, business model, or legal requirements change. Material changes should be reflected in the current policy and any necessary page notice or control. The current version remains available through the Policy Center.
Questions and requests can be sent to . The mailing address is 2831 Bonanza Dr, Erie, CO 80516, United States.