Privacy Policy
Last updated: January 30, 2026
Privacy Policy FAQ
We believe trust is fundamental to healthcare. Our approach to data privacy respects patient autonomy, protects clinical integrity, and supports continuity of care through clear consent and responsible safeguards.
Who owns the patient data on AyurAdhar?
Is patient data ever shared with pharmaceutical or medicine companies?
How is patient consent handled when data is accessed or shared?
Is patient data used for research or analytics?
What rights do patients have over their data?
How is patient data protected on the platform?
Full Privacy Policy
This Privacy Policy explains how AyurAdhar (the platform operated by AyurIntelligence Data Private Limited) collects, uses, shares, and protects personal data when you access our website, mobile app, WhatsApp experiences, and related services (together, the “Services”). We are committed to privacy-by-design, clinical autonomy, and responsible data use aligned with our mission to strengthen Ayurveda through clarity, continuity, and trust.
Regulatory Context (India)
We comply with applicable Indian laws, including the Information Technology Act, 2000 and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 (SPDI Rules), as well as the Digital Personal Data Protection Act, 2023 (DPDP Act), as it becomes effective. Where health data is involved, we follow sectoral medical ethics and data privacy expectations, and align with Telemedicine and clinical confidentiality principles applicable in India.
Who We Are
AyurAdhar is an independent technology platform. Doctors on the platform are independent practitioners who control diagnosis, treatment, and clinical decisions. We do not standardize or override medical judgment.
Personal Data We Collect
We collect personal data that you provide directly, data collected automatically through platform usage, and data generated through healthcare interactions to support continuity of care, record access, and secure communication between patients and doctors.
How We Use Personal Data
We use personal data to provide and improve services, support care coordination, manage account security, send care-related communications, resolve support issues, comply with legal obligations, and improve product quality with privacy safeguards.
Legal Basis and Consent
We process personal data based on your consent, contractual necessity (to deliver the Services), and legitimate uses consistent with the DPDP Act and SPDI Rules. For sensitive personal data such as health information, we obtain explicit consent and provide clear purpose statements. You may withdraw consent as permitted by law, though this may limit service functionality.
Data Sharing and Disclosure
We do not sell personal data. We may share data only in limited circumstances, including with care teams involved in treatment, vetted service providers, lawful authorities when required, and during business restructuring with continued privacy protections.
Data Retention
We retain data only as long as necessary to provide Services, meet legal or medical record requirements, resolve disputes, and enforce agreements. Where feasible, we anonymize data for analytics and research purposes.
Security Measures
We implement reasonable security practices aligned with Indian SPDI Rules, including access controls, encryption in transit, audit logging, and secure infrastructure. No system is 100% secure; users should safeguard credentials and report suspicious activity.
Patient Rights and Choices
Patients can request access, correction, and deletion of data (subject to legal and clinical obligations), withdraw consent for applicable processing, and opt out of non-essential communications through available platform and support channels.
Children and Family Accounts
If a parent or guardian uses the platform for a minor, they represent that they have the authority to provide consent. We do not knowingly solicit data from minors without appropriate guardian involvement.
Data Localization and Cross-Border Transfers
We store and process data in secure environments. If data is transferred outside India, we apply protections consistent with applicable Indian law and ensure contractual safeguards with service providers.
Third-Party Links and Services
Our Services may link to third-party sites or services (for example, pharmacy or payment providers). We are not responsible for their privacy practices; please review their policies directly.
Changes to This Policy
We may update this Privacy Policy from time to time. We will post changes here and update the “Last updated” date. Material changes will be communicated through appropriate channels.
Contact and Grievance
If you have questions, requests, or complaints regarding privacy or data handling, you can contact our privacy team or grievance officer at [email protected], or by post at Sarakki Industrial Layout, Bengaluru, KA 560078.