top of page
Privacy Policy
Introduction
AyurNirvana ("we," "us," or "our") is committed to protecting your privacy and maintaining the confidentiality of your personal and health information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our healthcare services.
Information We Collect
Personal Information
-
Name, email address, phone number, and postal address
-
Date of birth and age
-
Emergency contact information
-
Referral codes and source information
Health Information
-
Medical history and current health conditions
-
Symptoms, concerns, and treatment goals
-
Consultation notes and treatment plans
-
Prescription details and medication history
-
Follow-up communications and progress reports
Technical Information
-
IP address, browser type, and operating system
-
Website usage patterns and page views
-
Cookies and similar tracking technologies
-
Device information and location data (if permitted)
Payment Information
-
Billing address and payment method details
-
Transaction history and invoice records
-
We do not store complete credit card numbers on our servers
How We Use Your Information
Primary Purposes
-
Providing Ayurvedic consultations and treatments
-
Developing personalized treatment plans
-
Communicating about appointments and follow-ups
-
Processing payments for services
-
Improving our healthcare services
Secondary Purposes
-
Sending educational content about Ayurveda and wellness
-
Notifying you about new services or special offers
-
Conducting research to improve treatment outcomes
-
Complying with legal and regulatory requirements
Information Sharing and Disclosure
We Do Not Sell Your Information
We never sell, rent, or trade your personal or health information to third parties for marketing purposes.
Limited Sharing Scenarios
-
Healthcare Providers: With your explicit consent, we may share information with other healthcare professionals involved in your care
-
Legal Compliance: When required by law, court order, or regulatory authorities
-
Emergency Situations: To protect your vital interests or public safety
-
Service Providers: With trusted third-party vendors who assist in providing our services (bound by confidentiality agreements)
Anonymized Data
We may use anonymized, aggregated data for research, quality improvement, and educational purposes without identifying individual patients.
Data Security Measures
Technical Safeguards
-
SSL encryption for all data transmission
-
Secure servers with firewall protection
-
Regular security audits and vulnerability assessments
-
Access controls and user authentication systems
Administrative Safeguards
-
Staff training on privacy and security protocols
-
Limited access to patient information on a need-to-know basis
-
Regular privacy policy updates and compliance monitoring
-
Incident response procedures for potential breaches
Physical Safeguards
-
Secure storage of physical records
-
Controlled access to facilities and equipment
-
Proper disposal of confidential documents
-
Backup systems for data protection
Your Privacy Rights
Access and Control
-
View and request copies of your personal information
-
Correct inaccurate or incomplete information
-
Request deletion of your data (subject to legal requirements)
-
Withdraw consent for marketing communications
Communication Preferences
-
Opt-out of promotional emails and messages
-
Choose your preferred communication methods
-
Update contact information and preferences
Data Portability
-
Request your health information in a portable format
-
Transfer your records to another healthcare provider
Cookie Policy
Types of Cookies We Use
-
Essential Cookies: Required for website functionality
-
Analytics Cookies: Help us understand website usage
-
Preference Cookies: Remember your settings and choices
-
Marketing Cookies: Personalize content and advertisements
Cookie Management
You can control cookie settings through your browser preferences. Disabling certain cookies may affect website functionality.
Third-Party Services
Integrated Platforms
We use trusted third-party services for:
-
Video consultation platforms (with end-to-end encryption)
-
Payment processing (PCI DSS compliant)
-
Email and SMS communication
-
Website analytics and improvement
External Links
Our website may contain links to external sites. We are not responsible for the privacy practices of third-party websites.
Children's Privacy
Our services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children without parental consent.
International Data Transfers
Your information is primarily processed and stored within India. If data is transferred internationally, we ensure appropriate safeguards are in place.
Data Retention
Retention Periods
-
Active patient records: Maintained during treatment relationship
-
Inactive records: Retained for 7 years as per medical standards
-
Marketing communications: Until you opt-out
-
Website analytics: Anonymized after 2 years
Secure Disposal
All information is securely destroyed when no longer needed, following established protocols for confidential data disposal.
Regulatory Compliance
We comply with applicable privacy laws and healthcare regulations, including:
-
Information Technology Act, 2000 (India)
-
Personal Data Protection Bill (when enacted)
-
Medical Council of India guidelines
-
AYUSH Ministry regulations
Privacy Policy Updates
Notification of Changes
We may update this Privacy Policy periodically. Significant changes will be communicated through:
-
Email notifications to registered users
-
Website banner notifications
Updated effective date at the top of this policy
Complaint Resolution
Internal Process
-
Contact our privacy team with your concern
-
We will acknowledge receipt within 48 hours
-
Investigation and response within 30 days
-
Follow-up to ensure resolution
External Recourse
If unsatisfied with our response, you may file complaints with:
-
Cyber Crime Investigation Cell
-
Consumer Protection Authorities
-
Relevant Healthcare Regulatory Bodies
Special Considerations
Telehealth Privacy
Video consultations are conducted through secure, encrypted platforms. We recommend using private internet connections and ensuring confidential environments during consultations.
WhatsApp Communications
While we may use WhatsApp for appointment reminders and basic communication, sensitive health information is not shared through this platform.
Emergency Situations
In medical emergencies, we may need to share your information with emergency services or healthcare providers to protect your health and safety.
Consent Management
Initial Consent
By using our services, you provide consent for data processing as described in this policy.
Ongoing Consent
-
Explicit consent is obtained for sensitive health information sharing
-
You may withdraw consent at any time with written notice
-
Withdrawal may affect our ability to provide certain services
Record of Consent
We maintain records of your consent preferences and any changes you make to these preferences.
Data Breach Response
Our Commitment
In the unlikely event of a data breach:
-
Immediate assessment and containment
-
Notification to affected individuals within 72 hours
-
Coordination with relevant authorities
-
Implementation of additional safeguards
Your Role
Please notify us immediately if you suspect unauthorized access to your account or information.
Conclusion
Your privacy and trust are fundamental to our healthcare mission. We are committed to maintaining the highest standards of data protection while providing exceptional Ayurvedic care. This policy reflects our dedication to transparency and accountability in handling your personal information.
For the most current version of this Privacy Policy, please visit our website regularly or contact us directly.
Introduction
AyurNirvana ("we," "us," or "our") is committed to protecting your privacy and maintaining the confidentiality of your personal and health information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our healthcare services.
Information We Collect
Personal Information
-
Name, email address, phone number, and postal address
-
Date of birth and age
-
Emergency contact information
-
Referral codes and source information
Health Information
-
Medical history and current health conditions
-
Symptoms, concerns, and treatment goals
-
Consultation notes and treatment plans
-
Prescription details and medication history
-
Follow-up communications and progress reports
Technical Information
-
IP address, browser type, and operating system
-
Website usage patterns and page views
-
Cookies and similar tracking technologies
-
Device information and location data (if permitted)
Payment Information
-
Billing address and payment method details
-
Transaction history and invoice records
-
We do not store complete credit card numbers on our servers
How We Use Your Information
Primary Purposes
-
Providing Ayurvedic consultations and treatments
-
Developing personalized treatment plans
-
Communicating about appointments and follow-ups
-
Processing payments for services
-
Improving our healthcare services
Secondary Purposes
-
Sending educational content about Ayurveda and wellness
-
Notifying you about new services or special offers
-
Conducting research to improve treatment outcomes
-
Complying with legal and regulatory requirements
Information Sharing and Disclosure
We Do Not Sell Your Information
We never sell, rent, or trade your personal or health information to third parties for marketing purposes.
Limited Sharing Scenarios
-
Healthcare Providers: With your explicit consent, we may share information with other healthcare professionals involved in your care
-
Legal Compliance: When required by law, court order, or regulatory authorities
-
Emergency Situations: To protect your vital interests or public safety
-
Service Providers: With trusted third-party vendors who assist in providing our services (bound by confidentiality agreements)
Anonymized Data
We may use anonymized, aggregated data for research, quality improvement, and educational purposes without identifying individual patients.
Data Security Measures
Technical Safeguards
-
SSL encryption for all data transmission
-
Secure servers with firewall protection
-
Regular security audits and vulnerability assessments
-
Access controls and user authentication systems
Administrative Safeguards
-
Staff training on privacy and security protocols
-
Limited access to patient information on a need-to-know basis
-
Regular privacy policy updates and compliance monitoring
-
Incident response procedures for potential breaches
Physical Safeguards
-
Secure storage of physical records
-
Controlled access to facilities and equipment
-
Proper disposal of confidential documents
-
Backup systems for data protection
Your Privacy Rights
Access and Control
-
View and request copies of your personal information
-
Correct inaccurate or incomplete information
-
Request deletion of your data (subject to legal requirements)
-
Withdraw consent for marketing communications
Communication Preferences
-
Opt-out of promotional emails and messages
-
Choose your preferred communication methods
-
Update contact information and preferences
Data Portability
-
Request your health information in a portable format
-
Transfer your records to another healthcare provider
Cookie Policy
Types of Cookies We Use
-
Essential Cookies: Required for website functionality
-
Analytics Cookies: Help us understand website usage
-
Preference Cookies: Remember your settings and choices
-
Marketing Cookies: Personalize content and advertisements
Cookie Management
You can control cookie settings through your browser preferences. Disabling certain cookies may affect website functionality.
Third-Party Services
Integrated Platforms
We use trusted third-party services for:
-
Video consultation platforms (with end-to-end encryption)
-
Payment processing (PCI DSS compliant)
-
Email and SMS communication
-
Website analytics and improvement
External Links
Our website may contain links to external sites. We are not responsible for the privacy practices of third-party websites.
Children's Privacy
Our services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children without parental consent.
International Data Transfers
Your information is primarily processed and stored within India. If data is transferred internationally, we ensure appropriate safeguards are in place.
Data Retention
Retention Periods
-
Active patient records: Maintained during treatment relationship
-
Inactive records: Retained for 7 years as per medical standards
-
Marketing communications: Until you opt-out
-
Website analytics: Anonymized after 2 years
Secure Disposal
All information is securely destroyed when no longer needed, following established protocols for confidential data disposal.
Regulatory Compliance
We comply with applicable privacy laws and healthcare regulations, including:
-
Information Technology Act, 2000 (India)
-
Personal Data Protection Bill (when enacted)
-
Medical Council of India guidelines
-
AYUSH Ministry regulations
Privacy Policy Updates
Notification of Changes
We may update this Privacy Policy periodically. Significant changes will be communicated through:
-
Email notifications to registered users
-
Website banner notifications
Updated effective date at the top of this policy
Complaint Resolution
Internal Process
-
Contact our privacy team with your concern
-
We will acknowledge receipt within 48 hours
-
Investigation and response within 30 days
-
Follow-up to ensure resolution
External Recourse
If unsatisfied with our response, you may file complaints with:
-
Cyber Crime Investigation Cell
-
Consumer Protection Authorities
-
Relevant Healthcare Regulatory Bodies
Special Considerations
Telehealth Privacy
Video consultations are conducted through secure, encrypted platforms. We recommend using private internet connections and ensuring confidential environments during consultations.
WhatsApp Communications
While we may use WhatsApp for appointment reminders and basic communication, sensitive health information is not shared through this platform.
Emergency Situations
In medical emergencies, we may need to share your information with emergency services or healthcare providers to protect your health and safety.
Consent Management
Initial Consent
By using our services, you provide consent for data processing as described in this policy.
Ongoing Consent
-
Explicit consent is obtained for sensitive health information sharing
-
You may withdraw consent at any time with written notice
-
Withdrawal may affect our ability to provide certain services
Record of Consent
We maintain records of your consent preferences and any changes you make to these preferences.
Data Breach Response
Our Commitment
In the unlikely event of a data breach:
-
Immediate assessment and containment
-
Notification to affected individuals within 72 hours
-
Coordination with relevant authorities
-
Implementation of additional safeguards
Your Role
Please notify us immediately if you suspect unauthorized access to your account or information.
Conclusion
Your privacy and trust are fundamental to our healthcare mission. We are committed to maintaining the highest standards of data protection while providing exceptional Ayurvedic care. This policy reflects our dedication to transparency and accountability in handling your personal information.
For the most current version of this Privacy Policy, please visit our website regularly or contact us directly.
bottom of page