This privacy policy elucidated the information handling practices of AHHPL (hereinafter referred
to as “the Hospital,” “we,” or “our”) in accordance with prevalent Indian legislation, rules,
and regulations, including Information Technology (Reasonable Security Practices and procedures
and Sensitive Personal Data or Information) Rules 2011 under the Information Technology Act,
2000, as well as international standards.
We are committed to protecting the privacy rights of all individuals whose personal data is
provided to us. The instant policy is established by keeping the foremost standards and with the
commitment to protect privacy and personal information. All services provided and any use or
access of the services are subject to the instant privacy policy.
-
CATEGORIES OF DATA COLLECTED:
We collect and process diverse categories of data, encompassing but not limited to:
- Personal Identifiable Information (PII): Including but not limited to name,
date of birth, contact details, addresses and other demographic information/data.
- Health Information (HI): Comprising medical histories, treatment records,
diagnostic reports, and other health-related information.
- Financial Data: This includes payment particulars, insurance information,
billing records, banking partners, etc.
- Electronic Information: This includes IP addresses, cookies, and technical
data generated during the interaction with our online platform.
-
PURPOSE OF DATA PROCESSING:
We undertake data processing for the following lawful purposes:
- Provision of Healthcare Services: To manage appointments, facilitate
treatments and administer healthcare services.
- Administrative Operations: including billing, insurance processing, and
internal record-keeping to maintain the efficiency of hospital functions.
- Legal Compliances: to adhere to statutory and regulatory obligations and
other necessary legal requirements.
- Enhancement of Services: Analysing data to improve the quality and efficacy
of healthcare services provided by the Hospital.
-
DATA DISCLOSURE:
We may disclose data collected to the following entities.
- Healthcare Professionals: Authorised medical personnel directly involved in
your care.
- Business Associates: Third-party service providers who assist in the delivery
and administration of healthcare services.
- Legal Authorities: In instances where we are compelled by law or during the
course of legal proceedings.
-
INFORMATION SECURITY MEASURES:
The Hospital employs robust and reasonable security measures to safeguard data against
unauthorised access, disclosure, alteration, and destruction. Such measures include, but
are not limited to, encryption protocols, access controls and regular security audits as
prescribed by law. We ensure strict compliance with all data protection laws.
-
DATA SUBJECT RIGHTS:
Data subjects have the following rights:
- Access and Copy: The right to access and obtain a copy of their health
information.
- Correction: The right to request correction to any inaccuracies or
incompleteness in their information.
- Objection: The right to object to the processing of their information for
certain purposes.
- Right to be forgotten: The right to request for deletion of data collected.
-
CONSENT MECHANISM:
By availing of the Hospital's services, individuals implicitly consent to the
stipulations delineated in this policy and acknowledge that it is part of the terms of
use of the website and other services. By affirming this policy, you provide your
consent to such collection of data as required under applicable law.
-
POLICY AMENDMENT:
This Privacy Policy may be amended periodically, and any revision will be made effective
and available on the official website of the Hospital on its date of amendment.