Equality Healthcare Private Limited, (“Company”, “we”, “us” or “our”) is the owner of, operates and manages, the www.eVitalRx.in website and the mobile application eVitalRx (collectively, the “Site”), which provides online cloud based platform for facilitating retail pharmacies in India (“user”, “users”, “you” or “your”) to procure pharmaceutical products, inventory management including QR codes scanning, lot tracking, expiration date tracking, automating purchase orders and a wide array of customer management solutions (“Services”) at the Site.


This Privacy Policy (or “Policy”) explains what information is collected from you (including the nature of the Sensitive Personal Data or Information (defined hereinafter)) when you access and use the Site. This Policy also explains the the purpose, means and modes of usage of such information, and the sharing of such information and your legal rights thereto. You may, at any time withdraw your consent for collection and use of your information including Personal Information (defined hereinafter) or Sensitive Personal Data or Information, subject to the terms of this Policy. In such case, we may not be able to provide you with the corresponding service for which you have withdrawn your consent. For avoidance of doubt, it is, hereby, clarified that your decision to withdraw consent will not cease processing of Personal Information pursuant to your earlier consent, prior to such withdrawal. We are committed to protecting your privacy. Please note that this Policy does not apply to practices of companies that we do not own or control, including other companies you might interact with on or through the Site.


We request you to also read the Terms of Service [please insert hyperlink to the Terms of Service], which sets out the terms governing the Site and the Services, and for definition of certain capitalised terms/ expressions used but not specifically defined herein.


BY USING OUR SITE OR BY OTHERWISE GIVING US YOUR INFORMATION, YOU WILL BE DEEMED TO HAVE READ, UNDERSTOOD AND AGREED TO THE PRACTICES AND POLICIES OUTLINED IN THIS PRIVACY POLICY AND AGREE TO BE BOUND BY THIS PRIVACY POLICY. YOU HEREBY CONSENT TO OUR COLLECTION, USE, SHARING AND DISCLOSURE OF YOUR INFORMATION AS DESCRIBED IN THIS PRIVACY POLICY. WE RESERVE THE RIGHT TO CHANGE, MODIFY, ADD OR DELETE PORTIONS OF THE TERMS OF THIS PRIVACY POLICY, AT OUR SOLE DISCRETION, AT ANY TIME. IF YOU DO NOT AGREE WITH THIS PRIVACY POLICY AT ANY TIME, DO NOT USE THE SITE OR ANY OF THE SERVICES OR GIVE US ANY OF YOUR INFORMATION. IF YOU USE THE SITE OR THE SERVICES ON BEHALF OF SOMEONE ELSE OR AN ENTITY, YOU REPRESENT THAT YOU ARE AUTHORISED BY SUCH INDIVIDUAL OR ENTITY TO: (I) ACCEPT THIS PRIVACY POLICY ON SUCH INDIVIDUAL’S OR ENTITY’S BEHALF; AND (II) CONSENT ON BEHALF OF SUCH INDIVIDUAL OR ENTITY TO OUR COLLECTION, USE AND DISCLOSURE OF SUCH INDIVIDUAL’S OR ENTITY’S INFORMATION AS DESCRIBED IN THIS PRIVACY POLICY.


Please read this privacy notice carefully, as it will help you understand what we do with the information that we collect.

Information Collected

Voluntary

  • We collect personal information that you voluntarily provide to us when you register on the Site, express an interest in obtaining information about us or our products and the Services, when you participate in activities on the Site or otherwise when you contact us. The personal information that we collect depends on the context of your interactions with us and the Site, the choices you make and the Site, the Services, the products and features you use. The personal information we collect may include your name, password, contact details (including mobile number, mailing address, email address), location, date of birth, geographical information, Apple ID, gender, PAN card/ Adhaar card/ election card/ driving licence, GST number, identity cards or registration details issued by relevant authorities, drug licence and pharmacist registration details, photos of your pharmacy store or any other details (as the case may be). We may collect such information which either directly or indirectly, in combination with other information available with us, could identify you (“Personal Information”).
  • We may also collect, receive, process or store certain sensitive personal data or information consisting of, but not limited to: (i) password; (ii) financial information (including bank account or credit/ debit card/ virtual wallets/ UPI information) and inventory data, sales and purchase data, accounting information (receivables from patients and payables to distributors); (iii) physical, physiological and mental health condition; (iv) any information relating to Personal Information provided to us for procuring the Services; (v) any of the information relating to Personal Information provided to us for processing, storing under lawful contract or otherwise; and (vi) biometric information (collectively “Sensitive Personal Data or Information”). In this regard, please note, any information that is freely available or accessible in public domain or any other law for the time being in force shall not be regarded as Sensitive Personal Data or Information, as per Information Technology (Reasonable security practices and procedures and sensitive personal data or information) Rules, 2011 (as amended from time to time).
  • All Personal Information that you provide to us must be true, complete and accurate, and you must notify us of any changes thereto.
  • We will use the information we receive only for the purposes that are described in this Privacy Policy or that are otherwise made clear to you on the relevant point in time of accessing/ using the Site and/ or a particular service. Please note that we do not control, and are not responsible for, other uses of your Personal Information by third party(ies) (including Google Analytics, Firebase Analytics, Zoho Analytics). We recommend that you review their privacy notice and terms of service, in this regard.
  • Given the nature of the Site, our products and the Services, you may provide information, that is: (i) on health, disability, health services, medical history, medical prescriptions, and other health related information about an individual being your customer; and (ii) name, contact details (including mobile number, mailing address, email address), specialty/ expertise of doctors mentioned in medical reports, prescriptions provided by you; (iii) name, contact details (including mobile number, mailing address, email address), GST number, etc. of distributors, which will be collected, stored and processed by us for providing you with relevant Services.
  • We have a legitimate interest in gathering information from the actions you take to recommend so that we can work on improving our Site, our products and the Services to you.
  • From your browser and device

  • We automatically collect certain information when you visit, use or navigate the Site. This information does not reveal your specific identity (like your name or contact information) but may include device and usage information, such as your IP address, browser and device characteristics, operating system, language preferences, referring URLs, device name, country, location, information about how and when you use our Site, the Services and other technical information. This information is primarily needed to maintain the security and operation of the Site and for our internal analytics and reporting purposes. We use log data for security purposes (such as preventing content from being improperly accessed) and to improve the Services.
  • We do not store cookies or similar technologies, as such, we do not collect information through them.
  • We may also collect, store and process:

  • the communications/ interactions with you that may occur through chats, emails in order to support tickets that you may raise while using the Site;
  • feedback/ testimonials that you may provide upon our request in relation to the Services or your use of the Site which we may reproduce/ publish on our Site.
  • inventory data of retail pharmacies pursuant to consent by such retail pharmacies, for certain facilitations, including response to query(ies) raised by the partner company(ies) about the availability of medicines/ pharmaceutical products, which we endeavor to respond to based on the inventory data of such retail pharmacies.

Use of Information

We use the information (of the nature mentioned above) provided by you to enable us to provide, operate, improve, understand, customize, support, and market our Site and the Services.

  • In order to register with us, we need certain information about you. We may use your email address and/ or contact details to send you information about the Site, provide customer support or to notify you of additional products and services of the Company.
  • We collect information to learn about your use of the Site and to enhance your experience when using the Site, such as help you provide better customer service and other similar features. Further, we collect information for internal research and development activities.
  • We use the data we have in our endeavour to continuously improve our Site, the Services and your experience. We use your interactions on the Site, along with the other data described in this Privacy Policy: (i) to infer your interests; (ii) to identify and suggest content, new products and services that you may like; (iii) to notify you of updates, upcoming events and offers; and (iv) to tailor advertising, including off-site advertising.
  • We use the data to inform you about our products, the Services, including information in relation to order confirmations, invoices, technical notices, security alerts.
  • We use data to identify and respond to potential risks to our users and services (for example spammers, phishing attempts, screen scraping and other violations of our Terms of Service), and to resolve any issue/ grievance that you might face in relation to the Site and the Services.
  • We use data and analytics to improve and enhance the healthcare, pharmaceutical and allied sectors of India.
  • We also use your information for customer relationship management purposes, including targeting email and other engagement campaigns, to provide better support and enhance the functionality of our application based on user feedback and interactions

Sharing of Information

The Site is a platform for availing the Services and products. You share your information as you use the Site and the Services and communicate through our Site, and we share your information to help us operate, provide, improve, understand, customize, support, and market our Site and the Services.

  • We may share information about you or your use of the Site with our advertisers, third-party analytics providers (including Google Analytics, Firebase Analytics, Zoho Analytics), and third-party advertising partners. Such information does not specifically identify you by name or contact information. These third-party analytics providers use this data to enhance your experience on our Site and the Services by providing insights that help us improve our application's functionality and user engagement. Third-party advertisers may deliver targeted advertisements that they believe will be of most interest to you, which also helps us refine our service offerings.
  • We recommend that you review the privacy notices and terms of service of these third-party providers to understand their data practices. We shall neither be liable nor responsible for any actions or inactions of such third parties or any breach of conditions, representations, and warranties given by them. We shall also not be obligated to resolve any dispute arising between you and such third parties.
  • From time to time, we may be required to share information collected from you with third-party service providers to facilitate the provision of our Services and the purchase of products on the Site. For example, we may share your information with third-party payment gateway providers to process transactions on the Site. By using the Site, you consent to any such disclosure of your information to these third parties. A third-party payment gateway provider may be required to collect certain financial information from you, including, but not limited to, your credit/debit card number or your bank account details (collectively “Financial Information”). Such Financial Information will be used solely for billing and payment processes, transacted through secure digital platforms of approved payment gateways, which are encrypted to comply with reasonably expected technology standards. Verification of such information will occur only with your authentication. In this regard, we shall have no role to play and shall not be liable/responsible for such transactions or any actions or inactions of such third parties or breaches of their conditions, representations, and warranties. Additionally, we shall not be obligated to resolve any dispute arising between you and such third parties.
  • We may, from time to time, share information and analytics with the manufacturers of pharmaceutical products, to enable such manufacturers to learn about their products, their market share and similar information. This will help improve the healthcare and allied sectors of India. Such information does not specifically identify you by name or your contact information.
  • We may share or transfer your information in connection with, or during negotiations of, any reorganization, merger, sale of assets of the Company, financing, or acquisition of all or a portion of our business to another company, in the event of an insolvency, bankruptcy, or receivership, information may also be transferred as a business asset.
  • To Law Enforcement Agency

We may preserve and disclose your information to regulators, law enforcement, or others, as the circumstances may demand, in connection with any investigation or complaint, or by law or regulation, including in response to a court order, regulatory requirement or other legal demand or request or necessary to protect the safety of any person, address fraud, security or technical issues, to protect Company's rights or property, and/ or to investigate or assist in preventing any violation or potential violation of applicable law, this Privacy Policy, or our Terms of Service

Managing your information and the retention period of information

Data Security Precautions

We have in place appropriate technical and security measures to secure the information collected by us. Your Personal Information is stored on our database which are either hosted on a private cloud or public cloud. Although we provide appropriate firewalls and protections, we cannot warrant the security of any Personal Information transmitted as our systems are not hack proof. Data pilferage due to unauthorized hacking, virus attacks, technical issues is possible, and we take no liability or responsibility for it. You are required to be careful to avoid “phishing” scams, where someone may send you an email that looks like it is from us asking for your personal information. We use vault and tokenization services from third party service providers to protect the Sensitive Personal Information provided by you. Where applicable, we anonymize or pseudonymize personal data to protect the identity of our users. This process involves transforming data in a manner that prevents it from being attributed to a specific individual without additional information.

We conduct regular security audits, assessments, and penetration testing to identify and mitigate vulnerabilities within our systems. These activities are performed by qualified professionals and adhere to industry best practices. We comply with applicable data protection laws and standards, including but not limited to [SOC 2, and ISO/IEC 27001]. Our commitment to these standards demonstrates our dedication to protecting your personal data.

Where we have given you (or where you have chosen) a username and password which enables you to access certain parts of our Services, you are responsible for keeping these details confidential. We ask you not to share your password with anyone.

We will do our best to protect your personal data, we cannot guarantee the security of your data transmitted through the Services. Once we have received your information, we will use strict physical, electronic, and procedural safeguards to try to prevent unauthorized access.

Privacy of Children’s Information

The Site and the Services are not intended for any person who has not completed eighteen years of age (“Child”). We do not knowingly collect information from a Child. If we become aware that a Child has provided us with their information, we take steps to remove such information and terminate such accounts with us. In this regard, in the event you are aware of a Child using our Site, please Contact Us. In the event, a Child uses the Site and/or our Services in contravention to the Privacy Policy and Terms of Service, we shall not be held liable for any damage or injury caused/ suffered by such person.

Updating of Privacy Policy

We may update this Privacy Policy from time to time, and the updated version thereof will be indicated by “Last Updated” and will be effective as soon as it is accessible. Any material change to this Privacy Policy will be notified to you either by prominently posting a notice of such change or by directly sending a notification thereto. Kindly review this Privacy Policy regularly.

Your Privacy Rights

  • This Privacy Policy follows the standards of the Information Technology (Reasonable security practices and procedures and sensitive personal data or information) Rules, 2011, for the handling of Personal Information under the Section 43A of the Information Technology Act, 2000; Regulation 4 and 3(1) of the Information Technology (Intermediaries Guidelines) Rules, 2011 (as amended from time to time).

  • Account Information and Access
  • You can access most of your information and data by logging into your account on our Site. Upon your request, under applicable law, we can provide you with a copy of all of your information which we hold. Please note that, in accordance with applicable law, information will not be provided to you if this would adversely affect the rights of others.

  • Review, Change, information and Terminate Account
  • If you would at any time like to review or change the information in your account or terminate your account, you can:

    1. Update from Profile from Mobile App (Android & iOS)
    2. Delete the Account from Mobile App (Android & iOS)
  • Upon your request to terminate your account, we will deactivate or delete your account and information from our active databases. However, we may retain some information in our files to prevent fraud, troubleshoot problems, assist with any investigations, enforce our Terms of Service and/ or comply with applicable legal requirements.

  • Object Processing
  • In certain cases, you have the right to object to the processing of your information (processed on our legitimate interests, or in the public interest), accordingly, will withhold processing your information, however, this is subject to reasonable legitimate grounds to continue processing or due to legal causes.

  • Opting Out
  • You can unsubscribe from our and/ or third party and/ or partners/ affiliates marketing email list, non-essential, promotional, or marketing-related communication at any time by clicking on the unsubscribe link in the emails sent to you. In case you wish to unsubscribe from the aforesaid emails issued by us, you may also Contact Us.
  • We may still communicate with you, for example to send you Service-related emails that are necessary for the administration and use of your account, to respond to service requests, or for other non-marketing purposes.

Security of Information

  • We have whitelisted our IP and use secure files to access our Amazon Web Services (“AWS”) account. AWS data protection services provide encryption and key management and threat detection that continuously monitors and protects accounts and workloads. AWS identifies threats by continuously monitoring the network activity and account behavior within the cloud environment. Further, we maintain technical and organisational measures to protect against accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to your information. We endeavour to ensure a level of security appropriate to the risks (like accidental or unlawful destruction, loss, alteration, unauthorised disclosure of, or access to your information) that are presented by the processing.
  • None of the methods, employed for transmission over the Internet, or electronic storage, is absolutely secure. We employ reasonable efforts to protect your Personal Information, however, we cannot guarantee security of the same.

Complaints and Disputes

  • If an individual has a complaint about our handling of their Personal Information, they should address their complaint in writing to our grievance officer:
  • Contact Us
    • Name: Khyati Darji
    • Email address: support@evital.in
    • Phone number: +91 84018 26262
    • Postal address: Office B, 3rd Floor, 4D Square Mall, below PVR Cinema, Motera, Ahmedabad, Gujarat 380005
  • If we have a dispute regarding an individual's Personal Information, we both must first attempt to resolve the issue directly between us. If we become aware of any unauthorised access to an individual's Personal Information we will inform them at the earliest practical opportunity once we have established what was accessed and how it was accessed.