Equality Healthcare Private Limited, (“Company”,
“we”, “us” or “our”) is the owner of, operates and manages, the www.eVitalRx.in
website and the mobile application eVitalRx
(collectively, the “Site”), which provides online cloud based platform for facilitating
retail pharmacies in India (“user”, “users”,
“you” or “your”) to procure pharmaceutical products, inventory management
including QR codes scanning, lot tracking, expiration date tracking, automating purchase
orders and a wide array of customer management solutions (“Services”) at the Site.
This Privacy Policy (or “Policy”) explains what information is collected
from you (including the nature of the Sensitive Personal Data or Information (defined hereinafter)) when you access and use the
Site. This Policy also explains the the purpose, means and modes of usage of such
information, and the sharing of such information and your legal rights thereto. You may, at
any time withdraw your consent for collection and use of your information including Personal
Information (defined hereinafter) or Sensitive
Personal Data or Information, subject to the terms of this Policy. In such case, we may not
be able to provide you with the corresponding service for which you have withdrawn your
consent. For avoidance of doubt, it is, hereby,
clarified that your decision to withdraw consent will not cease processing of Personal
Information pursuant to your earlier consent, prior to such withdrawal. We are committed to
protecting your privacy. Please note that this Policy does not apply to practices of
companies that we do not own or control, including other companies you might interact with
on or through the Site.
We request you to also read the Terms of Service [please insert hyperlink to the Terms of
Service], which sets out the terms governing the Site and the Services, and for
definition of certain capitalised terms/ expressions used but not specifically defined
herein.
BY USING OUR SITE OR BY OTHERWISE GIVING US YOUR INFORMATION, YOU WILL BE DEEMED TO HAVE
READ, UNDERSTOOD AND AGREED TO THE PRACTICES AND POLICIES OUTLINED IN THIS PRIVACY POLICY
AND AGREE TO BE BOUND BY THIS PRIVACY POLICY. YOU HEREBY CONSENT TO OUR COLLECTION, USE,
SHARING AND DISCLOSURE OF YOUR INFORMATION AS DESCRIBED IN THIS PRIVACY POLICY. WE RESERVE
THE RIGHT TO CHANGE, MODIFY, ADD OR DELETE PORTIONS OF THE TERMS OF THIS PRIVACY POLICY, AT
OUR SOLE DISCRETION, AT ANY TIME. IF YOU DO NOT AGREE WITH THIS PRIVACY POLICY AT ANY TIME,
DO NOT USE THE SITE OR ANY OF THE SERVICES OR GIVE US ANY OF YOUR INFORMATION. IF YOU USE
THE SITE OR THE SERVICES ON BEHALF OF SOMEONE ELSE OR AN ENTITY, YOU REPRESENT THAT YOU ARE
AUTHORISED BY SUCH INDIVIDUAL OR ENTITY TO: (I) ACCEPT THIS PRIVACY POLICY ON SUCH
INDIVIDUAL’S OR ENTITY’S BEHALF; AND (II) CONSENT ON BEHALF OF SUCH INDIVIDUAL OR ENTITY TO
OUR COLLECTION, USE AND DISCLOSURE OF SUCH INDIVIDUAL’S OR ENTITY’S INFORMATION AS DESCRIBED
IN THIS PRIVACY POLICY.
Please read this privacy notice carefully, as it will help you understand what we do
with the information that we collect.
Information Collected
Voluntary
- We collect personal information that you voluntarily provide to us when you register
on the Site, express an interest in obtaining information about us or our products
and the Services, when you participate in activities on the Site or otherwise when
you contact us. The personal information that we collect depends on the context of
your interactions with us and the Site, the choices you make and the Site, the
Services, the products and features you use. The personal information we collect may
include your name, password, contact details (including mobile number, mailing
address, email address), location, date of birth, geographical information, Apple
ID, gender, PAN card/ Adhaar card/ election card/ driving licence, GST number,
identity cards or registration details issued by relevant authorities, drug licence
and pharmacist registration details, photos of your pharmacy store or any other
details (as the case may be). We may collect such information which either directly
or indirectly, in combination with other information available with us, could
identify you (“Personal Information”).
-
We may also collect, receive, process or store certain sensitive personal data or
information consisting of, but not limited to: (i) password; (ii) financial
information (including bank account or credit/ debit card/ virtual wallets/ UPI
information) and inventory data, sales and purchase data, accounting information
(receivables from patients and payables to distributors); (iii) physical,
physiological and mental health condition; (iv) any information relating to Personal
Information provided to us for procuring the Services; (v) any of the information
relating to Personal Information provided to us for processing, storing under lawful
contract or otherwise; and (vi) biometric information (collectively
“Sensitive Personal Data or Information”). In this regard, please
note, any information that is freely available or accessible in public domain or any
other law for the time being in force shall not be regarded as Sensitive Personal
Data or Information, as per Information Technology (Reasonable security practices
and procedures and sensitive personal data or information) Rules, 2011 (as amended from time to time).
- All Personal Information that you provide to us must be true, complete and accurate,
and you must notify us of any changes thereto.
-
We will use the information we receive only for the purposes that are described in
this Privacy Policy or that are otherwise made clear to you on the relevant point in
time of accessing/ using the Site and/ or a particular service. Please note that we
do not control, and are not responsible for, other uses of your Personal Information
by third party(ies) (including Google Analytics, Firebase Analytics, Zoho
Analytics). We recommend that you review their privacy notice and terms of service,
in this regard.
-
Given the nature of the Site, our products and the Services, you may provide
information, that is: (i) on health, disability, health services, medical history,
medical prescriptions, and other health related information about an individual
being your customer; and (ii) name, contact details (including mobile number,
mailing address, email address), specialty/ expertise of doctors mentioned in
medical reports, prescriptions provided by you; (iii) name, contact details
(including mobile number, mailing address, email address), GST number, etc. of
distributors, which will be collected, stored and processed by us for providing you
with relevant Services.
-
We have a legitimate interest in gathering information from the actions you take to
recommend so that we can work on improving our Site, our products and the Services
to you.
From your browser and device
-
We automatically collect certain information when you visit, use or navigate the
Site. This information does not reveal your specific identity (like your name or
contact information) but may include device and usage information, such as your IP
address, browser and device characteristics, operating system, language preferences,
referring URLs, device name, country, location, information about how and when you
use our Site, the Services and other technical information. This information is
primarily needed to maintain the security and operation of the Site and for our
internal analytics and reporting purposes. We use log data for security purposes
(such as preventing content from being improperly accessed) and to improve the
Services.
-
We do not store cookies or similar technologies, as such, we do not collect
information through them.
We may also collect, store and process:
-
the communications/ interactions with you that may occur through chats, emails in
order to support tickets that you may raise while using the Site;
-
feedback/ testimonials that you may provide upon our request in relation to the
Services or your use of the Site which we may reproduce/ publish on our Site.
-
inventory data of retail pharmacies pursuant to consent by such retail pharmacies,
for certain facilitations, including response to query(ies) raised by the partner
company(ies) about the availability of medicines/ pharmaceutical products, which we
endeavor to respond to based on the inventory data of such retail pharmacies.
Use of Information
We use the information (of the nature mentioned above) provided by you to enable us to
provide, operate, improve, understand, customize, support, and market our Site and the
Services.
-
In order to register with us, we need certain information about you. We may use your
email address and/ or contact details to send you information about the Site,
provide customer support or to notify you of additional products and services of the
Company.
-
We collect information to learn about your use of the Site and to enhance your
experience when using the Site, such as help you provide better customer service and
other similar features. Further, we collect information for internal research and
development activities.
-
We use the data we have in our endeavour to continuously improve our Site, the
Services and your experience. We use your interactions on the Site, along with the
other data described in this Privacy Policy: (i) to infer your interests; (ii) to
identify and suggest content, new products and services that you may like; (iii) to
notify you of updates, upcoming events and offers; and (iv) to tailor advertising,
including off-site advertising.
-
We use the data to inform you about our products, the Services, including
information in relation to order confirmations, invoices, technical notices,
security alerts.
-
We use data to identify and respond to potential risks to our users and services
(for example spammers, phishing attempts, screen scraping and other violations of
our Terms of Service), and to resolve any issue/ grievance that you might face in
relation to the Site and the Services.
-
We use data and analytics to improve and enhance the healthcare, pharmaceutical and
allied sectors of India.
-
We also use your information for customer relationship management purposes,
including targeting email and other engagement campaigns, to provide better support
and enhance the functionality of our application based on user feedback and
interactions
Sharing of Information
The Site is a platform for availing the Services and products. You share your information as
you use the Site and the Services and communicate through our Site, and we share your
information to help us operate, provide, improve, understand, customize, support, and market
our Site and the Services.
-
We may share information about you or your use of the Site with our advertisers,
third-party analytics providers (including Google Analytics, Firebase Analytics, Zoho
Analytics), and third-party advertising partners. Such information does not specifically
identify you by name or contact information. These third-party analytics providers use
this data to enhance your experience on our Site and the Services by providing insights
that help us improve our application's functionality and user engagement. Third-party
advertisers may deliver targeted advertisements that they believe will be of most
interest to you, which also helps us refine our service offerings.
-
We recommend that you review the privacy notices and terms of service of these
third-party providers to understand their data practices. We shall neither be liable nor
responsible for any actions or inactions of such third parties or any breach of
conditions, representations, and warranties given by them. We shall also not be
obligated to resolve any dispute arising between you and such third parties.
-
From time to time, we may be required to share information collected from you with
third-party service providers to facilitate the provision of our Services and the
purchase of products on the Site. For example, we may share your information with
third-party payment gateway providers to process transactions on the Site. By using the
Site, you consent to any such disclosure of your information to these third parties. A
third-party payment gateway provider may be required to collect certain financial
information from you, including, but not limited to, your credit/debit card number or
your bank account details (collectively “Financial Information”). Such Financial
Information will be used solely for billing and payment processes, transacted through
secure digital platforms of approved payment gateways, which are encrypted to comply
with reasonably expected technology standards. Verification of such information will
occur only with your authentication. In this regard, we shall have no role to play and
shall not be liable/responsible for such transactions or any actions or inactions of
such third parties or breaches of their conditions, representations, and warranties.
Additionally, we shall not be obligated to resolve any dispute arising between you and
such third parties.
-
We may, from time to time, share information and analytics with the manufacturers of
pharmaceutical products, to enable such manufacturers to learn about their products,
their market share and similar information. This will help improve the healthcare and
allied sectors of India. Such information does not specifically identify you by name or
your contact information.
-
We may share or transfer your information in connection with, or during negotiations of,
any reorganization, merger, sale of assets of the Company, financing, or acquisition of
all or a portion of our business to another company, in the event of an insolvency,
bankruptcy, or receivership, information may also be transferred as a business asset.
To Law Enforcement Agency
We may preserve and disclose your information to regulators, law enforcement, or others, as the
circumstances may demand, in connection with any investigation or complaint, or by law or
regulation, including in response to a court order, regulatory requirement or other legal demand
or request or necessary to protect the safety of any person, address fraud, security or
technical issues, to protect Company's rights or property, and/ or to investigate or assist in
preventing any violation or potential violation of applicable law, this Privacy Policy, or our
Terms of Service
Managing your information and the retention period of information
-
You may request access to the Personal Information we collect from you, change that
information, or delete it in some circumstances. To request to review, update, or
delete your Personal Information, please Contact Us.
-
We retain your information in our server logs, our databases and our records only
for as long as necessary in light of the purposes set out in this Privacy Policy,
unless a longer retention period is required or permitted under the applicable law,
and also subject to any legal obligations to further retain such information. We may
use third party service providers to store and maintain such data.
Data Security Precautions
We have in place appropriate technical and security measures to secure the information
collected by us. Your Personal Information is stored on our database which are either hosted
on a private cloud or public cloud. Although we provide appropriate firewalls and
protections, we cannot warrant the security of any Personal Information transmitted as our
systems are not hack proof. Data pilferage due to unauthorized hacking, virus attacks,
technical issues is possible, and we take no liability or responsibility for it. You are
required to be careful to avoid “phishing” scams, where someone may send you an email that
looks like it is from us asking for your personal information. We use vault and tokenization
services from third party service providers to protect the Sensitive Personal Information
provided by you. Where applicable, we anonymize or pseudonymize personal data to protect the
identity of our users. This process involves transforming data in a manner that prevents it
from being attributed to a specific individual without additional information.
We conduct regular security audits, assessments, and penetration testing to identify and
mitigate vulnerabilities within our systems. These activities are performed by qualified
professionals and adhere to industry best practices. We comply with applicable data
protection laws and standards, including but not limited to [SOC 2, and ISO/IEC 27001]. Our
commitment to these standards demonstrates our dedication to protecting your personal data.
Where we have given you (or where you have chosen) a username and password which enables you
to access certain parts of our Services, you are responsible for keeping these details
confidential. We ask you not to share your password with anyone.
We will do our best to protect your personal data, we cannot guarantee the security of your
data transmitted through the Services. Once we have received your information, we will use
strict physical, electronic, and procedural safeguards to try to prevent unauthorized
access.
Privacy of Children’s Information
The Site and the Services are not intended for any person who has not completed eighteen
years of age (“Child”). We do not knowingly collect information from a Child. If we become
aware that a Child has provided us with their information, we take steps to remove such
information and terminate such accounts with us. In this regard, in the event you are aware
of a Child using our Site, please Contact Us. In the event, a Child uses the Site and/or our
Services in contravention to the Privacy Policy and Terms of Service, we shall not be held
liable for any damage or injury caused/ suffered by such person.
Updating of Privacy Policy
We may update this Privacy Policy from time to time, and the updated version thereof will be
indicated by “Last Updated” and will be effective as soon as it is accessible. Any material
change to this Privacy Policy will be notified to you either by prominently posting a notice
of such change or by directly sending a notification thereto. Kindly review this Privacy
Policy regularly.
Your Privacy Rights
-
This Privacy Policy follows the standards of the Information Technology (Reasonable
security practices and procedures and sensitive personal data or information) Rules,
2011, for the handling of Personal Information under the Section 43A of the Information
Technology Act, 2000; Regulation 4 and 3(1) of the Information Technology
(Intermediaries Guidelines) Rules, 2011 (as amended from time to time).
Account Information and Access
-
You can access most of your information and data by logging into your account on our
Site. Upon your request, under applicable law, we can provide you with a copy of all of
your information which we hold. Please note that, in accordance with applicable law,
information will not be provided to you if this would adversely affect the rights of
others.
Review, Change, information and Terminate Account
-
If you would at any time like to review or change the information in your account or
terminate your account, you can:
1. Update from Profile from Mobile App (Android & iOS)
2. Delete the Account from Mobile App (Android & iOS)
-
Upon your request to terminate your account, we will deactivate or delete your account
and information from our active databases. However, we may retain some information in
our files to prevent fraud, troubleshoot problems, assist with any investigations,
enforce our Terms of Service and/ or comply with applicable legal requirements.
Object Processing
-
In certain cases, you have the right to object to the processing of your information
(processed on our legitimate interests, or in the public interest), accordingly, will
withhold processing your information, however, this is subject to reasonable legitimate
grounds to continue processing or due to legal causes.
Opting Out
-
You can unsubscribe from our and/ or third party and/ or partners/ affiliates marketing
email list, non-essential, promotional, or marketing-related communication at any time
by clicking on the unsubscribe link in the emails sent to you. In case you wish to
unsubscribe from the aforesaid emails issued by us, you may also Contact Us.
-
We may still communicate with you, for example to send you Service-related emails that
are necessary for the administration and use of your account, to respond to service
requests, or for other non-marketing purposes.
Security of Information
-
We have whitelisted our IP and use secure files to access our Amazon Web Services
(“AWS”) account. AWS data protection services provide encryption and key management and
threat detection that continuously monitors and protects accounts and workloads. AWS
identifies threats by continuously monitoring the network activity and account behavior
within the cloud environment. Further, we maintain technical and organisational measures
to protect against accidental or unlawful destruction, loss, alteration, unauthorised
disclosure of, or access to your information. We endeavour to ensure a level of security
appropriate to the risks (like accidental or unlawful destruction, loss, alteration,
unauthorised disclosure of, or access to your information) that are presented by the
processing.
-
None of the methods, employed for transmission over the Internet, or electronic storage,
is absolutely secure. We employ reasonable efforts to protect your Personal Information,
however, we cannot guarantee security of the same.
Complaints and Disputes
-
If an individual has a complaint about our handling of their Personal Information, they
should address their complaint in writing to our grievance officer:
Contact Us
-
Name: Khyati Darji
-
Email address: support@evital.in
-
Phone number: +91 84018 26262
-
Postal address: Office B, 3rd Floor, 4D Square Mall, below PVR
Cinema, Motera, Ahmedabad, Gujarat 380005
-
If we have a dispute regarding an individual's Personal Information, we both must first
attempt to resolve the issue directly between us. If we become aware of any unauthorised
access to an individual's Personal Information we will inform them at the earliest
practical opportunity once we have established what was accessed and how it was
accessed.