Privacy Policy Recommendations for E-Pharmacy
- Definition of Personal Information: It includes any information which can be used to identify the user directly or indirectly and rejects any data which has been irreversibly anonymised or aggregated.
- Definition of Sensitive Personal Data or Information: personal information of any individual relating to password; financial information such as bank account or credit card or debit card or other payment instrument details; physical, physiological and mental health condition; sexual orientation; health information such as medical records and history; biometric information; any detail relating to the above as provided to or received by us for processing or storage. However, any data / information relating to an individual that is freely available or accessible in public domain or furnished under the Right to Information Act, 2005 or any other law shall not qualify as Sensitive Personal Data or Information.
- Type of Data collected: When you sign up or register on the App or Website to use our Services, and during the course of actual usage of our Services, the types of information that will be collected by us include the following:
- Contact information: Name, Address, Contact details, Email ID, Phone Number;
- Demographic information: Gender, Date of Birth, Nationality;
- Data regarding your usage of the Services such as search history and history of the appointments made by you through the use of Services;
- Financial information such as bank account or other payment instrument details and billing information other than credit card or debit card or payment account number, subject to applicable laws;
- Your browsing history including the URL of the site that you visited prior to visiting the Website as well as the Internet Protocol (IP) address of your computer (or the proxy server you used to access the World Wide Web),your computer operating system and type of web browser you are using, the name of your ISP;
- Any additional information that you provide to us during the use of the Services, through any mode of communication or during any interaction with our employees, doctors, technicians, consultants, etc., of or any other entity in the Apollo Group including while availing its services;
- Health information such as your medical records and history which you voluntarily provide or is generated on usage of any of the services availed by you from any entity in the Apollo Group;
- Information regarding your insurance coverage (such as your insurance carrier and insurance plan) which you voluntarily provide or is generated on availing any of the Services;
- Information regarding your physical, physiological and mental health condition which you voluntarily provide or is generated on usage of the Services including information such as (i) inpatient and emergency department data; (ii) outpatient registration, scheduling, and encounter data; (iii)laboratory data; (iv)radiology data; (v)pharmacy orders data; (vi)e-prescribing data;(vii) pharmacy dispensing data; (vii) medical administration data; (ix) administrative and operational data; (x) transaction data;
- Any other information that is collected or generated in the course of availing the Services;
- Data regarding your medical qualifications, registrations and certifications;
- Information including users’ Images which will be uploaded to https://blob.play.vitacloud;
- Any other detail relating to the above as voluntarily provided to us by you, for providing value added service; and
- Any other information relating to the above which you may have shared with us prior to this Privacy Policy for availing any of the Services.
- Data processing purposes:
Following are the General (end users and doctors) purposes:
- Offering you personalized Services and targeted advertisements of various healthcare and wellness plans and offering you customised health insights;
- Addressing your requests, queries and complaints, if any, pertaining to our Services; taking feedback, assisting you with completion of transactions or other issues relating to the use of Services and other customer care related activities;
- Leveraging services from Apollo group companies and customising suggestions for appropriate medical products and services;
- Creating insights for corporate / business strategy and marketing operations of Apollo group companies;
- Developing machine learning algorithms and tools to improve targeting of services, diagnostics and treatment protocols and other products and services;
- Contacting you to provide information on new Services, features, products, special promotions or offers, both of the Apollo group entities and affiliates as well as third-party offers or products with whom we have a tie-up and which are relevant to use of the Services;
- Technical administration and customization of Website, and other general administrative and business purposes;
- Research (internal or otherwise), fraud, security, risk management and analysis for the development and improvement of products and services including the provision of tokenisation services offered by Payment Aggregators/ Card Networks etc. as per Card Networks Rules;
- Disclosure as required to government authorities in compliance with applicable law;
- Carrying out our obligations in relation to any agreement with affiliate companies, Apollo group companies, our business partners or contractors including, but not limited to, for the provision of tokenisation services to Payment Aggregators / Card Networks / Card Issuers, on global basis as necessary to provide the tokenisation services, or for compliance of applicable laws, regulatory requirements or investigations;
- Investigating, enforcing and resolving any disputes or grievances; and
- Any other purpose required by applicable law.
For end-users only:
- Creation and maintenance of health records in electronic form in the Personal Health Record (PHR) database for use by us and the Apollo group companies, affiliates, etc., to provide relevant services;
- Create your unified profile with analytics and insights generated through processing your personal information;
- For sharing with your chosen HSP in the Apollo Group like doctors, hospitals, diagnostic centres, chemists who may provide you services under the App or Website;
- Processing any orders/requests you may place using our Services.
For doctors only:
- For verifying your professional credentials and any representations you have made to us;
- For processing any payments made to you;
- For providing recommendations to end users based on your expertise and specialisations ;
- For providing any other service to you.
- Liability of users: By signing up on the App or proceeding to the Website, and / or using Apollo 24/7 Services you represent that you voluntarily provide us with personal information including medical and financial information and consent to their collection, use and disclosure in accordance with this Privacy Policy. You also represent that you are duly authorised by any third party (including a child or an employee) whose information you share with Apollo 24/7. The Apollo 24/7 shall act as per your representation of authority and shall not make any independent enquiries to ascertain the veracity of your authorisation. In the event you do not have sufficient authorisation you shall be solely responsible for your acts and omissions including sharing of information with us by you and the consequential processing and actions taken by us in accordance with this Privacy Policy.
- Disclosure and transfer of your data
We may share, disclose and in some cases transfer your personal information to such entities as required to provide Services to you, improve our Services, and to provide value added services or other third party products and services, to the extent permitted by applicable law. These entities may be located outside India, which you hereby consent to. We require such entities to protect your information through equivalent security measures as what we would adopt. An indicative list of entities we may disclose or transfer information to, are provided below:
- Service Providers: We share personal information with companies that provide Services on our behalf, such as website hosting, data storage, software services, email services, marketing, fulfilling customer orders, providing payment related services including payment aggregation, data analytics, data mining, providing customer services, and conducting surveys, as permitted by applicable law. These companies may be located within or outside India, but in any case are obligated to protect your data. We may also share information with employees, data processors, consultants, business partners and technology partners on a need to know basis. Such entities would be contractually obligated to maintain confidentiality in relation to your data. If you are an end user, your personal information will also be shared with your chosen HSPs.
- Business Affiliates: We may disclose or transfer some of your information to entities in the Apollo group companies, affiliates, associates, subsidiary, holding company of the Company, associates and subsidiary of holding company of the Company including foreign entities, and in particular group companies and affiliates who are involved in the provision of products and services, to the extent permitted by applicable law. In the event of a merger, reorganization, acquisition, joint venture, assignment, spin-off, transfer, asset sale, or sale or disposition of all or any portion of our business, including in connection with any bankruptcy or similar proceedings, we may transfer any and all personal information to the relevant third party with the same rights of access and use.
- Law Enforcement Agencies: We may share information with law enforcement agencies pursuant to lawful requests for information, and otherwise as required under any law applicable at the given time, both in India and outside India.
- Other Third Parties: We may also disclose personal information if we determine in good faith that disclosure is reasonably necessary to protect our rights and pursue available remedies, enforce our terms and conditions, investigate fraud, or protect our operations or users. We may disclose personal information to any third party if necessary to provide or improve our Services, fulfill any lawful contractual obligation we are bound by, and any other activity related to the purposes identified in this privacy policy and the terms and conditions you agree to when you use our Services. Anonymised, aggregated data may be shared with advertisers, research firms and other partners.