Preamble
HealAssist Healthtech Private Limited (hereinafter referred to as "HealAssist", "we", "us", "our", or "the Company"), including its online platform(s), mobile applications, and web applications (collectively referred to as "the Website"), recognizes the paramount importance of maintaining the privacy, confidentiality, integrity, and security of all information and personal data of our users, visitors, and customers.
HealAssist is committed to maintaining the confidentiality, integrity, and security of all information of our users in accordance with applicable laws, rules, and regulations of India and internationally recognized standards.
This Privacy Policy (hereinafter referred to as "Policy") describes, elucidates, and provides complete details of how HealAssist collects, processes, uses, stores, secures, and handles certain information received from users via the use of our Website, mobile applications, telephone interactions, and related digital and non-digital services.
This Privacy Policy applies to all current users, former users, visitors, customers, and any person engaging with HealAssist Healthtech Private Limited or its services, whether through the Website, mobile application, telephonic channels, or any other medium through which HealAssist operates.
By visiting, accessing, and/or using the Website or any services offered by HealAssist, you expressly agree to the terms and conditions stipulated in this Privacy Policy. If you do not agree to the terms herein, please refrain from using the Website or any services offered by HealAssist.
This Privacy Policy is published in compliance with and with full adherence to the following statutory provisions:
- The Information Technology Act, 2000 (hereinafter referred to as "IT Act");
- The Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 (hereinafter referred to as "SPDI Rules"), as amended from time to time;
- The Digital Personal Data Protection Act, 2023 (hereinafter referred to as "DPDP Act"), and all rules, regulations, and guidelines issued thereunder;
- Any other applicable laws, regulations, guidelines, and directives issued by statutory authorities in India.
User consent summary
By using HealAssist and/or registering on the Website and/or providing your personal information through any medium (including but not limited to online forms, telephonic calls, WhatsApp, SMS, or email), you hereby explicitly consent to and authorize the following:
Collection and processing of personal data
You authorize HealAssist to collect, process, store, and manage your personal information, including but not limited to name, age, contact number, email address, residential city, insurance information, health-related details, and location data, as more particularly detailed in this Policy.
Sharing with partner hospitals and healthcare providers
You authorize HealAssist to share your personal and health information with authorized partner hospitals, healthcare providers, and other healthcare institutions identified by you or matched by HealAssist's automated systems, for the purpose of hospital-patient matching, treatment consultation, cost estimation, and service provision.
Contact and communication
You authorize HealAssist Healthtech Private Limited, its representatives, and authorized partner hospitals to contact you via telephone, SMS, WhatsApp, email, or any other communication channel for the purposes of service delivery, hospital matching, treatment assistance, cost estimates, appointment scheduling, follow-up communication, and promotional information.
Cookies and automatic data collection
You authorize HealAssist to collect certain information automatically, including but not limited to Internet Protocol (IP) addresses, browser type, device information, and analytics data through cookies, web beacons, pixels, and other similar technologies.
Marketing and promotional communication
You authorize HealAssist and its authorized partners to send you marketing communications, promotional offers, service updates, newsletters, and information regarding new features or services offered by HealAssist or its authorized partners.
Data retention and processing
You authorize HealAssist to retain and process your personal data in accordance with its internal data retention and processing policies, which are formulated in compliance with applicable laws and regulations.
Withdrawal of consent
You acknowledge that you may withdraw your consent at any time for non-essential communications or services by sending written communication to care@healassist.in. However, withdrawal of consent shall not affect the lawfulness of processing carried out prior to the withdrawal or shall affect processing of data required for fulfilling existing service requests or compliance with legal obligations.
1. Controllers of personal information
Your personal data, sensitive personal data, and any other information shall be collected, processed, managed, stored, and controlled by:
HealAssist Healthtech Private Limited
CIN: U86900HR2026PTC140418
Innov8 UCP, 9th Floor, Tower D
Unitech Cyber Park
Sector 39, Gurugram
Haryana, 122001, India
The aforementioned entity shall hereinafter be referred to as the "Data Controller" and shall be responsible for the collection, processing, use, disclosure, and security of your personal information in accordance with this Privacy Policy and applicable laws.
2. Purposes of collection of your data
2.1 Information collected
HealAssist collects your information when:
- a) You fill out online forms on the Website requesting hospital comparisons, services, or information;
- b) You register or create an account on the Website or mobile application;
- c) You contact HealAssist via telephone, email, WhatsApp, SMS, or other communication channels;
- d) You interact with or use digital tools, diagnostic aids, or analytics systems available on the Website;
- e) You visit the Website and engage with its various pages and features;
- f) You communicate with or respond to communications from HealAssist or its authorized representatives.
2.2 Categories of information collected
a) Personal information:
- Full name (first name and last name)
- Age or date of birth
- Contact telephone number(s)
- Email address
- Residential city and state
- Insurance information (policy details, coverage, provider name, and policy number)
- Optional location data (city/postal code)
- Medical conditions or health-related queries (to the extent voluntarily shared)
b) Sensitive personal data or information (SPDI):
- Health and medical details, medical history, and healthcare conditions voluntarily provided by the user or collected for the purpose of hospital matching and service provision
- Information related to insurance claims or medical requirements
c) Automatically collected data:
- Internet Protocol (IP) address
- Device type, model, and operating system
- Browser type and version
- Referring and exit pages
- Date and time of access
- Pages visited and duration of visit
- Analytics data related to user interaction with the Website
- Cookie data
- Device identifiers and unique user identifiers
d) Data collected through telephone interactions:
- Call recordings (if applicable and where permitted by law)
- Call duration and frequency
- Communication records
- Recorded information shared during calls
3. Purposes of use and processing of your data
HealAssist uses the information and personal data collected from you for the following specific purposes:
3.1 Primary service delivery
- a) Hospital matching and recommendation: match healthcare requirements with suitable hospitals across India;
- b) Service request processing: respond to, process, and fulfill your inquiries and service requirements;
- c) Patient-hospital connection: share your information with identified partner hospitals for treatment options, cost estimates, and appointment scheduling;
- d) Communication and coordination: coordinate communication between you and hospitals for service provision and care delivery.
3.2 Account and service management
- a) Account creation and management on the Website or mobile application;
- b) Service-related updates, confirmations, clarifications, and notifications;
- c) Enabling you to access and utilize various features and tools.
3.3 Analytics, improvement, and optimization
- a) Website analytics: user behavior, preferences, traffic patterns, and engagement metrics;
- b) Service improvement: identify areas of improvement and develop new features;
- c) Performance monitoring and technical issue resolution;
- d) Trend analysis in aggregated or anonymized form for business intelligence.
3.4 Communication and marketing
- a) Promotional communication from HealAssist or its authorized partners (subject to applicable law);
- b) Marketing communications, newsletters, service updates;
- c) Feedback and surveys to gather user opinions.
3.5 Automated decision-making and profiling
- a) Hospital matching algorithm based on medical information, location, insurance coverage, and service preferences;
- b) User profiling based on interactions, preferences, and healthcare requirements;
- c) Service optimization through profile and healthcare needs analysis.
3.6 Legal compliance and fraud prevention
- a) Compliance with applicable laws, regulations, court orders, and regulatory requirements;
- b) Fraud prevention and detection of unauthorized use or policy violations;
- c) Investigation and resolution of disputes, complaints, and claims;
- d) Enforcement of these Terms and any user agreements.
3.7 Contact authorization
By submitting your contact details, you authorize HealAssist and partner hospitals to contact you via telephone, SMS, WhatsApp, email, or any other electronic or non-electronic medium for the purposes described in this Policy. You further authorize such contact notwithstanding your registration under the National Do Not Call Registry, Do Not Contact (DNC) lists, or any similar regulatory framework, to the extent permissible under applicable law.
3.8 Opt-out and withdrawal
You may withdraw your consent for promotional or non-essential communications at any time by writing to care@healassist.in with the subject line "Opt-out request" or "Withdrawal of consent." HealAssist shall process such requests within ten (10) business days. Withdrawal shall not affect:
- a) Essential service-related communications necessary to fulfill existing service requests;
- b) Legal and regulatory compliance communications;
- c) Data processing required to fulfill contractual obligations.
End of privacy policy
This Privacy Policy has been drafted in compliance with the Information Technology Act, 2000; the IT (SPDI) Rules, 2011; and the Digital Personal Data Protection Act, 2023.
For any questions, concerns, or grievances, please contact our Data Grievance Officer at robin.singh@healassist.in or care@healassist.in.