Legal

Privacy Policy

How JMA Strategy Group handles the information you share with us.

Overview

JMA Strategy Group ("JMA," "we," "us") respects your privacy. This policy explains what we collect and how we use it. This is a starter template — replace with your reviewed legal copy before launch.

Information we collect

Contact details you submit through our forms (name, email, organization, message) and standard analytics data such as pages visited and general location.

How we use it

To respond to your inquiry, schedule calls, and improve our services. We do not sell your personal information.

Accessibility

We follow WCAG 2.1 Level AA standards. If you encounter any barrier, contact info@jmasg.com.

Contact

Questions about this policy? Email info@jmasg.com.

TerminalFlow

Data Retention Addendum

Addendum to the TerminalFlow Privacy Policy · Effective date: July 17, 2026

This Addendum records the retention terms for passenger information captured by the TerminalFlow application, following the request of the airport client (the "Client") to collect and retain passenger-level operational data. It supplements, and is governed by, this Privacy Policy.

1. Data covered

Captured by scanning boarding-pass barcodes and stored in the operational record:

FieldType
Passenger namePersonal information
Booking reference (PNR)Personal information
Flight number, origin/destination, seatOperational
Scan timestamp, bus number, gate/terminalOperational

2. Purpose & basis

Passenger information is retained solely for the Client's ground-operations purposes — passenger-level reconciliation and operational reporting. It is not used for advertising and is never sold or shared for any third party's own purposes.

3. Retention period

Passenger information (name and PNR) is retained for the period agreed with the Client (recommended: 12 months) from the date of capture, after which it is automatically deleted or anonymized. Non-identifying operational data (flight numbers, airports, counts, times, bus numbers) may be retained longer for analytics.

Technical control: retention is enforced by TerminalFlow's scheduled purge job, which nulls passenger name and PNR on records older than the configured window. The purge window is set to the period agreed with the Client.

4. Storage & security

  • Encrypted at rest (Microsoft Azure) and in transit (HTTPS/TLS).
  • Access restricted to authenticated, authorized personnel of JMA Strategy Group and the Client.

5. Deletion & erasure requests

Individual deletion / erasure requests (including under CCPA and GDPR) are honored within 30 days of a verified request. Requests may be directed to privacy@jmasg.com. On termination of the engagement, retained passenger data is deleted or returned to the Client per the governing agreement.

6. Review

These retention terms are reviewed at least annually, or upon any change to the Client's requirements or applicable law.

© 2026 JMA Strategy Group. This Addendum applies to the TerminalFlow application and forms part of the TerminalFlow Privacy Policy.