PRIVACY POLICY
Effective Date: 3 November 2025
Last Updated: 3 November 2025
PREAMBLE
HealAssist Healthtech Private Limited (hereinafter referred to as "HealAssist", "we", "us", "our", or "the Company"), including its online platform(s), mobile applications, and web applications (collectively referred to as "the Website"), recognizes the paramount importance of maintaining the privacy, confidentiality, integrity, and security of all information and personal data of our users, visitors, and customers.
HealAssist is committed to maintaining the confidentiality, integrity, and security of all information of our users in accordance with applicable laws, rules, and regulations of India and internationally recognized standards.
This Privacy Policy (hereinafter referred to as "Policy") describes, elucidates, and provides complete details of how HealAssist collects, processes, uses, stores, secures, and handles certain information received from users via the use of our Website, mobile applications, telephone interactions, and related digital and non-digital services. This Policy shall make clear what type of information is collected, how such information is used in connection with services offered through the Website, and the circumstances and conditions under which such information may be shared with authorized business partners, namely hospitals, healthcare providers, and other service providers, solely for purposes permissible under applicable law and in accordance with user consent.
This Privacy Policy applies to all current users, former users, visitors, customers, and any person engaging with HealAssist Healthtech Private Limited or its services, whether through the Website, mobile application, telephonic channels, or any other medium through which HealAssist operates.
By visiting, accessing, and/or using the Website or any services offered by HealAssist, you expressly agree to the terms and conditions stipulated in this Privacy Policy. If you do not agree to the terms herein, please refrain from using the Website or any services offered by HealAssist.
This Privacy Policy is published in compliance with and with full adherence to the following statutory provisions:
- The Information Technology Act, 2000 (hereinafter referred to as "IT Act");
- The Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 (hereinafter referred to as "SPDI Rules"), as amended from time to time;
- The Digital Personal Data Protection Act, 2023 (hereinafter referred to as "DPDP Act"), and all rules, regulations, and guidelines issued thereunder;
- Any other applicable laws, regulations, guidelines, and directives issued by statutory authorities in India.
USER CONSENT SUMMARY
By using HealAssist and/or registering on the Website and/or providing your personal information through any medium (including but not limited to online forms, telephonic calls, WhatsApp, SMS, or email), you hereby explicitly consent to and authorize the following:
Collection and Processing of Personal Data:
You authorize HealAssist to collect, process, store, and manage your personal information, including but not limited to name, age, contact number, email address, residential city, insurance information, health-related details, and location data, as more particularly detailed in this Policy.
Sharing with Partner Hospitals and Healthcare Providers:
You authorize HealAssist to share your personal and health information with authorized partner hospitals, healthcare providers, and other healthcare institutions identified by you or matched by HealAssist's automated systems, for the purpose of hospital-patient matching, treatment consultation, cost estimation, and service provision.
Contact and Communication:
You authorize HealAssist Healthtech Private Limited, its representatives, and authorized partner hospitals to contact you via telephone, SMS, WhatsApp, email, or any other communication channel for the purposes of service delivery, hospital matching, treatment assistance, cost estimates, appointment scheduling, follow-up communication, and promotional information. You further authorize such contact even if you have registered your contact details under Do Not Call/Do Not Contact (DNC) or National Consumer Protection Authority (NCPA) registries or any similar service.
Cookies and Automatic Data Collection:
You authorize HealAssist to collect certain information automatically, including but not limited to Internet Protocol (IP) addresses, browser type, device information, and analytics data through cookies, web beacons, pixels, and other similar technologies.
Marketing and Promotional Communication:
You authorize HealAssist and its authorized partners to send you marketing communications, promotional offers, service updates, newsletters, and information regarding new features or services offered by HealAssist or its authorized partners.
Data Retention and Processing:
You authorize HealAssist to retain and process your personal data in accordance with its internal data retention and processing policies, which are formulated in compliance with applicable laws and regulations. Such data shall be stored solely for regulatory, legal compliance, and business operational purposes and shall not be shared or processed beyond the permissible scope under applicable law.
Withdrawal of Consent:
You acknowledge that you may withdraw your consent at any time for non-essential communications or services by sending written communication to care@healassist.in. However, withdrawal of consent shall not affect the lawfulness of processing carried out prior to the withdrawal or shall affect processing of data required for fulfilling existing service requests or compliance with legal obligations.
1. CONTROLLERS OF PERSONAL INFORMATION
Your personal data, sensitive personal data, and any other information shall be collected, processed, managed, stored, and controlled by:
HealAssist Healthtech Private Limited
Innov8 UCP, 9th Floor, Tower D
Unitech Cyber Park
Sector 39, Gurugram
Haryana, 122001, India
The aforementioned entity shall hereinafter be referred to as the "Data Controller" and shall be responsible for the collection, processing, use, disclosure, and security of your personal information in accordance with this Privacy Policy and applicable laws.
2. PURPOSES OF COLLECTION OF YOUR DATA
2.1 Information Collected
HealAssist collects your information when:
- a) You fill out online forms on the Website requesting hospital comparisons, services, or information;
- b) You register or create an account on the Website or mobile application;
- c) You contact HealAssist via telephone, email, WhatsApp, SMS, or other communication channels;
- d) You interact with or use digital tools, diagnostic aids, or analytics systems available on the Website;
- e) You visit the Website and engage with its various pages and features;
- f) You communicate with or respond to communications from HealAssist or its authorized representatives.
2.2 Categories of Information Collected
HealAssist collects the following categories of information:
a) Personal Information:
- Full name (first name and last name)
- Age or date of birth
- Contact telephone number(s)
- Email address
- Residential city and state
- Insurance information (policy details, coverage, provider name, and policy number)
- Optional location data (city/postal code)
- Medical conditions or health-related queries (to the extent voluntarily shared)
b) Sensitive Personal Data or Information (SPDI):
- Health and medical details, medical history, and healthcare conditions voluntarily provided by the user or collected for the purpose of hospital matching and service provision
- Information related to insurance claims or medical requirements
c) Automatically Collected Data:
- Internet Protocol (IP) address
- Device type, model, and operating system
- Browser type and version
- Referring and exit pages
- Date and time of access
- Pages visited and duration of visit
- Analytics data related to user interaction with the Website
- Cookie data
- Device identifiers and unique user identifiers
d) Data Collected Through Telephone Interactions:
- Call recordings (if applicable and where permitted by law)
- Call duration and frequency
- Communication records
- Recorded information shared during calls
3. PURPOSES OF USE AND PROCESSING OF YOUR DATA
HealAssist uses the information and personal data collected from you for the following specific purposes:
3.1 Primary Service Delivery
- a) Hospital Matching and Recommendation: To compare, identify, and match your healthcare requirements with suitable hospitals, healthcare providers, and medical services available across India;
- b) Service Request Processing: To respond to, process, and fulfill your inquiries, requests, and service requirements submitted through the Website, mobile application, or telephonic channels;
- c) Patient-Hospital Connection: To share your information with identified partner hospitals or healthcare providers so that they may directly contact you, provide treatment options, cost estimates, appointment scheduling, and other services;
- d) Communication and Coordination: To coordinate communication between you and hospitals for the purpose of service provision, treatment planning, and healthcare delivery.
3.2 Account and Service Management
- a) Account Creation and Management: To create, maintain, and manage your account on the Website or mobile application;
- b) Service Updates and Notifications: To send you service-related updates, confirmations, clarifications, and notifications regarding your service requests or hospital interactions;
- c) Access to Features: To enable you to access and utilize various features and tools available on the Website or mobile application.
3.3 Analytics, Improvement, and Optimization
- a) Website Analytics: To analyze user behavior, preferences, traffic patterns, and engagement metrics to understand how the Website is being used;
- b) Service Improvement: To improve the Website, mobile application, and services offered by identifying areas of improvement, optimizing user experience, and developing new features;
- c) Performance Monitoring: To monitor the performance and functionality of the Website and identify and resolve technical issues;
- d) Trend Analysis: To analyze trends, patterns, and statistical data (in aggregated or anonymized form) for business intelligence and strategic planning.
3.4 Communication and Marketing
- a) Promotional Communication: To send you promotional offers, discounts, information regarding new services, features, or products offered by HealAssist or its authorized partners (subject to applicable law);
- b) Marketing Materials: To send you marketing communications, newsletters, service updates, and information that may be of interest to you;
- c) Feedback and Surveys: To seek your feedback, conduct surveys, and gather user opinions regarding the Website and services.
3.5 Automated Decision-Making and Profiling
- a) Hospital Matching Algorithm: HealAssist employs automated decision-making systems and algorithms to match your health requirements with suitable hospitals, based on your provided medical information, location, insurance coverage, and service preferences;
- b) User Profiling: To create user profiles based on your interactions, preferences, and healthcare requirements to provide personalized recommendations and services;
- c) Service Optimization: To optimize service delivery and hospital matching by analyzing your profile and healthcare needs.
3.6 Legal Compliance and Fraud Prevention
- a) Legal Compliance: To comply with applicable laws, regulations, court orders, regulatory requirements, and governmental directives;
- b) Fraud Prevention and Detection: To detect, investigate, and prevent fraudulent activities, unauthorized use, and violations of this Policy or applicable laws;
- c) Dispute Resolution: To investigate and resolve disputes, complaints, and claims;
- d) Enforcement: To enforce the terms and conditions of this Policy and any agreements with users.
3.7 Contact Authorization
By submitting your contact details through the Website, mobile application, or telephonic channels, you expressly authorize HealAssist Healthtech Private Limited and its authorized partner hospitals to contact you via telephone, SMS, WhatsApp, email, or any other electronic or non-electronic medium for the purposes of:
- a) Providing hospital matching, comparison, and recommendation services;
- b) Sharing cost estimates, treatment options, and service details;
- c) Scheduling appointments and follow-up consultations;
- d) Providing treatment assistance and medical information;
- e) Sending service updates, promotional information, and healthcare-related communications;
- f) Processing your requests and inquiries.
You further authorize such contact notwithstanding your registration or enrollment under the National Do Not Call Registry, Do Not Contact (DNC) lists, or any similar regulatory framework, to the extent permissible under applicable law.
3.8 Opt-Out and Withdrawal
You may withdraw your consent for promotional or non-essential communications at any time by sending written notification to care@healassist.in with the subject line "Opt-Out Request" or "Withdrawal of Consent." HealAssist shall process such requests within ten (10) business days. However, withdrawal of consent shall not affect:
- a) Essential service-related communications necessary to fulfill your existing service requests;
- b) Legal and regulatory compliance communications;
- c) Data processing required to fulfill contractual obligations.
END OF PRIVACY POLICY
This Privacy Policy has been drafted in compliance with the Information Technology Act, 2000; the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011; and the Digital Personal Data Protection Act, 2023.
For any questions, concerns, or grievances, please contact our Data Grievance Officer at robin@healassist.in or care@healassist.in.