Privacy Policy

Your privacy is important to us. This policy explains how we collect, use, and protect your personal and health information.

Last Updated: January 28, 2026

HIPAA Compliant
256-bit Encryption
ISO 27001 Certified

1. Information We Collect

We collect information to provide and improve our healthcare services. The types of information we collect include:

Personal Information

  • Name, date of birth, gender, and contact details (phone, email, address)
  • Government-issued identification numbers (Aadhaar, PAN) for verification
  • Emergency contact information
  • Payment and billing information

Health Information

  • Medical history, current conditions, and symptoms
  • Prescription and medication details
  • Lab test results and diagnostic reports
  • Data from wearable devices (heart rate, steps, sleep patterns)
  • Family health history

Technical Information

  • Device information, IP address, browser type
  • Usage data and interaction patterns
  • Cookies and similar tracking technologies

2. How We Use Your Information

We use the collected information for the following purposes:

  • Healthcare Services: To provide consultations, diagnoses, treatment plans, and follow-up care
  • Personalization: To customize your health recommendations and treatment protocols
  • AI Health Insights: To generate health risk assessments and predictive analytics
  • Communication: To send appointment reminders, health alerts, and service updates
  • Billing: To process payments and generate invoices
  • Quality Improvement: To analyze service effectiveness and improve care quality
  • Legal Compliance: To comply with healthcare regulations and legal obligations
  • Research: To conduct anonymized research for healthcare advancement (with consent)

3. Data Security

We implement robust security measures to protect your personal and health information:

  • Encryption: All data is encrypted in transit (SSL/TLS) and at rest (AES-256)
  • Access Control: Role-based access ensures only authorized personnel can access your data
  • Secure Infrastructure: Our servers are hosted on secure, HIPAA-compliant cloud infrastructure
  • Regular Audits: We conduct regular security audits and vulnerability assessments
  • Employee Training: All staff undergo mandatory data protection training
  • Incident Response: We have protocols for detecting and responding to security incidents

Your Data is Safe: We employ industry-leading security practices to ensure your health information remains confidential and protected.

4. Data Sharing

We may share your information in the following circumstances:

  • Healthcare Providers: With doctors, labs, and pharmacies involved in your care
  • Service Partners: With trusted partners who help deliver our services (under strict confidentiality)
  • Insurance Companies: For claims processing, with your explicit consent
  • Legal Requirements: When required by law, court order, or government regulations
  • Emergency Situations: To protect vital interests in medical emergencies
  • Business Transfers: In case of merger, acquisition, or asset sale (with notification)

We Never Sell Your Data: We do not sell, rent, or trade your personal health information to third parties for marketing purposes.

5. Your Rights

You have the following rights regarding your personal data:

  • Access: Request a copy of your personal data we hold
  • Correction: Request correction of inaccurate or incomplete data
  • Deletion: Request deletion of your data (subject to legal retention requirements)
  • Portability: Receive your data in a structured, machine-readable format
  • Restriction: Request restriction of processing in certain circumstances
  • Objection: Object to processing of your data for certain purposes
  • Consent Withdrawal: Withdraw consent at any time for optional data processing

To exercise any of these rights, please contact our Data Protection Officer at [email protected]

6. Cookies & Tracking

We use cookies and similar technologies to enhance your experience:

  • Essential Cookies: Required for the website to function properly
  • Performance Cookies: Help us understand how visitors use our site
  • Functional Cookies: Remember your preferences and settings
  • Analytics Cookies: Help us measure and improve our services

You can manage your cookie preferences through your browser settings. Note that disabling certain cookies may affect website functionality.

7. Data Retention

We retain your data for the following periods:

  • Health Records: Retained for the duration required by Indian Medical Council regulations (minimum 3 years after last treatment)
  • Account Information: Retained as long as your account is active, plus 2 years
  • Transaction Data: Retained for 7 years as per tax regulations
  • Communication Records: Retained for 2 years for service quality purposes

After the retention period, data is securely deleted or anonymized for statistical purposes.

8. Updates to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons.

  • We will notify you of significant changes via email or in-app notification
  • The "Last Updated" date at the top of this page indicates when the policy was last revised
  • Continued use of our services after updates constitutes acceptance of the revised policy

We encourage you to review this policy periodically to stay informed about how we protect your information.

Questions About Your Privacy?

Our Data Protection team is here to help you understand how we protect your information

Data Protection Officer: Mayura Medical Care LLP
4th Floor, ICON Plaza, Allwyn X Roads, Miyapur, Hyderabad - 500049