Privacy Policy

DIGICARE HEALTH SOLUTIONS PRIVATE LIMITED PRIVACY POLICY

Digicare Health Solutions Private Limited (“DHSPL”, “PillUp”, “Company”, “we”) takes the privacy of your information seriously. This Privacy Policy (“Privacy Policy”) describes what information we, Digicare Health Solutions Private Limited (“DHSPL”, “PillUp”, “Company”, “we”, “us” or “our”) collect, use, share, and process your information, that you provide to us through your use of the app, PillUp and Website www.pillup.com in the course of providing services (“Services”) as defined in the Terms and Conditions: https://www.pillup.com /terms to you.

DHSPL website and app (“Website”/“App” respectively), respects your privacy, and seeks to comply with applicable legal requirements in respect of data collection, processing and transfer.

By using, browsing, accessing, or purchasing from the “Website” you agree to be bound by the terms of this Privacy Policy and consent to the collection, storage, possession, dealing, handling, sharing, disclosure or transfer of your information in accordance with the terms of the Privacy Policy. We shall not use the User's information in any manner except as provided under this Privacy Policy. Please take a moment to familiarize yourself with our Privacy Policy. If you do not agree with any provisions of the Terms or this Privacy Policy, we advise you to not use or access the “Website”/ App.

GENERAL
  1. By accessing or using the Platform or the Service, or by otherwise giving Us Your information, You confirm that You have the capacity to enter into a legally binding contract under Indian law, in particular, the Indian Contract Act, 1872, and have read, understood and agreed to the practices and policies outlined in this Privacy Policy and agree to be bound by the Privacy Policy.
  2. You hereby consent to Our collection, use, sharing, and disclosure of Your information as described in this Privacy Policy. We reserve the right to change, modify, add or delete portions of the terms of this Privacy Policy, at Our sole discretion, at any time, and any continued use of the App, the Services or the Platform, following any such amendments to the Privacy Policy, will be deemed as an implicit acceptance of the Privacy Policy in its amended form. You are requested to review the Privacy Policy from time to time to keep yourself updated with any changes; modifications made to the terms hereof.
  3. If You are accessing or using Services on the App or the Site from an overseas location, You do so at Your own risk, and shall be solely liable for compliance with any applicable local laws.
  4. If You do not agree with any of the terms and conditions of this Privacy Policy, please do not proceed further to use this Site or the App or any Services. This Privacy Policy is subject to change at any time without notice. To make sure You are aware of any changes, please review this policy on this Site or the App periodically.
DEFINITIONS

In this Privacy Notice, the following definitions are used:

  1. Cookies - A small file placed on your device by our website or mobile application when you either visit or use certain features of our website or mobile application. A cookie generally allows a website to remember your actions or preference for a certain period of time.
  2. Data - Includes non-personal information, personal information and sensitive personal information about you, which either directly or indirectly in combination with other information, could allow you to be identified when you visit our stores, website and/or mobile application.
  3. Data Protection Laws - Any applicable law for the time being in force relating to the processing of Data.
  4. Digicare Health Solutions Private Limited (DHSPL) - A company duly incorporated under the provisions of the Companies Act, 2013, having its registered office at 8th Floor, Astron Tower,Nr.Iscon Cross Road, Satellite,Ahmedabad, Gujarat-380015 India
  5. User or you the natural person who accesses our website or mobile application.
  6. The Agreement applies to you whether you are a patient, his/her representatives or legal heirs, heirs or legal guardian or parent of the patient and registered through the Website (“End User”, “you” or “User (s)”, as the context permits).
PERSONAL INFORMATION

Personal information is that information which can be used to directly or indirectly identify you. It includes de-identified data that, when linked to other information available to us, would enable us to identify you. Personal data does not include data that has been irreversibly anonymised or aggregated so that we cannot identify you through it, even in conjugation conjunction with other information. We may collect a variety of information from you, including your name, mailing address, phone number, email address and contact preferences, including any other usage and interaction details with us or our affiliates. We may collect such information which when combined with other pieces of information available with us could reasonably allow you to be identified (“Personal Information”). Personal Information shall include but is not limited to your full name, personal contact numbers, residential address, email address, gender or date of birth.

SENSITIVE PERSONAL DATA OR INFORMATION

“Sensitive Personal Data or Information” means personal information of any individual relating to password; financial information such as bank account or credit card or debit card or other payment instrument details; physical, physiological and mental health condition; sexual orientation; health information such as medical records and history; biometric information; any detail relating to the above as provided to or received by us for processing or storage. However, any data / information relating to an individual that is freely available or accessible in public domain or furnished under the Right to Information Act, 2005 or any other law shall not qualify as Sensitive Personal Data or Information.

By signing up on the App or proceeding to the Website, and/or using our Services you represent that you voluntarily, expressly, and explicitly provide your consent us with personal information including protected health information, sensitive personal data, medical and financial information, and consent to their collection, use, and disclosure in accordance with this Privacy Policy. You also represent that you are duly authorised by any third party (including a child or an DHSPLoyee) whose information you share with us. We shall act as per your representation of authority and shall not make any independent enquiries to ascertain the veracity of your authorisation. In the event you do not have sufficient authorisation you shall be solely responsible for your acts and omissions including sharing of information with us by you and the consequential processing and actions taken by us in accordance with this Privacy Policy.

COLLECTION, USE AND DISCLOSURE OF INFORMATION WHICH HAS BEEN DESIGNATED AS PERSONAL INFORMATION OR SENSITIVE PERSONAL DATA OR INFORMATION' UNDER THE INFORMATION TECHNOLOGY (REASONABLE SECURITY PRACTICES AND PROCEDURES AND SENSITIVE PERSONAL DATA OR INFORMATION) RULES, 2011, AND APPLICABLE DATA PROTECTION LAW IN INDIA REQUIRES YOUR EXPRESS CONSENT. BY AFFIRMING YOUR ASSENT TO THIS PRIVACY POLICY, YOU PROVIDE YOUR CONSENT TO SUCH USE, COLLECTION AND DISCLOSURE AS REQUIRED UNDER ANY APPLICABLE LAW.

TYPE OF DATA/INFORMATION COLLECTED
  1. You may be asked to provide your information anytime you visit, access, use or browse the “Website”/ App. We may share information and use it consistent with the provisions of this Privacy Policy. We may also combine it with other information to provide and improve our Products, services, content and advertising.
  2. You agree to provide information, which shall be true, correct, up to date and accurate.

    Account Deletion:

    Users have the right to delete their account and personal information at any time, in line with Pillup's commitment to data privacy and applicable laws. Pillup will delete the user's data within 45 days of the account deletion request, and no further communications will be sent. Retrieval of deleted data will not be possible, except upon specific user request for account reactivation. Pillup will mark the phone number as 'inactive' after account deletion, allowing subsequent logins without data retrieval. Users can refer to an FAQ on the entire process, including how to delete an account and how to restore it on Pillup's website.

  3. The Website is not directed towards minors. We do not knowingly collect Personal Information from any User who is under 18 (Eighteen) years. If we are made aware that we have collected the Personal Information of a person below the age of 18 (Eighteen) years, we will take steps to delete the information within a reasonable time. If a parent or guardian becomes aware that his or her child has provided his/ her information on the Website without their consent, he or she shall contact us for the deletion of such information. In the event of a person below the age of 18 (Eighteen) uses the services in contravention to the Privacy Policy and Terms, we shall not be held liable or responsible for any damage or injury suffered by such person.
  4. We may collect a variety of information from you, including your name, password, mailing address, phone number, email address and contact preferences, including any other usage and interaction details with us or our affiliates. We may collect such information which when combined with other pieces of information available with us could reasonably allow you to be identified (“Personal Information”). Personal Information shall include but is not limited to your full name, personal contact numbers, residential address, email address, gender or date of birth.
  5. We may also collect, receive, process or store certain sensitive personal data or information consisting of, but not limited to:
    1. Contact information: first and last name, email address, postal address, country, DHSPLoyer, phone number and other similar contact data.
    2. Financial information: payment instrument information, transactions, transaction history, preferences, method, mode and manner of payment, spending pattern or trends, and other similar data.
    3. Technical information: website, device and mobile app usage, Internet Protocol (IP) address and similar information collected via automated means, such as cookies, pixels and similar technologies.
    4. Transaction information: the date of the transaction, total amount, transaction history and preferences and related details.
    5. Health related information: This includes any information or records relating to Your medical/ health history, health status, details of treatment plans and medication prescribed by a Medical Practitioner, dosage details such as frequency of dosage, alternative medication, medicines ordered by You through the Platform, laboratory testing results and any other information inferred there from
    6. Product and service information: Your account membership number, registration and payment information, and program-specific information, when you request products and/or services directly from us, or participate in marketing programs.
    7. Personal information: Age, sex, date of birth, marital status, nationality, details of government identification documents provided, occupation, ethnicity, religion, travel history or any other personal information provided in responses to surveys or questionnaires.
    8. Membership information: Your membership information, account details, profile or password details.
    9. Billing information that you provide to us, such as credit card/ debit card/ net banking/ other payment information
    10. Information about the computer or mobile device you are using, such as what internet browser you use, the kind of computer or mobile device you use, and other information about how you use the Website
    11. Other information you input into the Website or related services. Website usage details or transaction data
WHERE DO WE COLLECT YOUR DATA FROM

For end users:

  1. Any information that you voluntarily choose to provide to us through the App, Website, email, or certain digital therapeutics or digital health value-added service provided by us during interaction with us on call or chat, and other modes of communication.
  2. Information that we collect from healthcare service providers such as doctors, hospitals, diagnostic centres, chemists, etc. to whom you have permitted the sharing of your personal information.
  3. Data you have provided to any group company of the DHSPL, affiliates, associates, subsidiary, holding company of DHSPL, associates, and subsidiaries of holding company of DHSPL, to whom you have given consent for sharing of such information.
WHERE DO WE COLLECT YOUR DATA FROM

We collect Data in the following ways:

  1. Information You Give Us: We receive and store any information you enter on our website or mobile application or give us in any other way.
  2. Automatic Information We Collect: We use "cookies", and similar technologies to receive and store certain types of information whenever you interact with us. Please see the section below, titled "Data that is Collected Automatically" for more information.
  3. E-mail Communications: To help us make e-mails more relevant and interesting, we often receive a confirmation (if your device supports such capabilities) when you open e-mail from us or click on a link in the e-mail. You can choose not to receive marketing emails from us by clicking on the unsubscribe link in any marketing email.
  4. Automatic Information: We Collect from Other Websites: We receive and store certain types of information when you interact with third-party websites that use our technology or with whom we have a specific agreement. Because we process this information on behalf of the applicable website operators, collection, processing, and use of such information is subject to the applicable website operators' privacy policies and is not covered by our Privacy Notice.
  5. Information Collected via Technology:
    1. As you use our Website or the Service, certain information may be automatically and passively collected by Cookies, navigational data like Uniform Resource Locators (URLs) and third party tracking services, including:
    2. Website Activity Information: We may keep track of some of the actions you take on our Website, such as the content of searches you perform on the Website.
    3. Access Device and Browser Information. When you access our Website from a computer or other device, we may collect anonymous information from that device, such as your Internet protocol address, browser type, connection speed and access times (collectively, “Anonymous Information”).
    4. Cookies. Our cookies may collect information about how visitors use the Website and allow the Website to remember choices made by a User such as language, content categories accessed and language. We may use both session Cookies (which expire once you close your web browser) and persistent Cookies to make our Website and Service easier to use, to make our advertising personalised, deliver targeted messages/ alerts, and to protect both you and Zydus. You can change your browser settings (if such an option is available), to stop accepting Cookies or to prompt you before accepting a Cookie from the websites you visit. If you do not accept Cookies, however, you will not be able to stay logged in to our Website. We presently do not honor “Do Not Track” requests across all part of our Website.
    5. Real-Time Location. Certain features of the Website use GPS technology to collect real-time information about the location of your device so that the Website can assist in connecting you to a supplier who is registered on the Website to provide Services under this Agreement.
    6. Mobile Services. We may also collect non-personal information from your mobile device or computer. This information is generally used to help us deliver the most relevant information to you. Examples of information that may be collected and used include how you use the Website and information about the type of device or computer you use.

      Google Analytics. We may use Google Analytics to help analyze how users use the Website. Google Analytics uses Cookies to collect information such as how often Users visit the Website, what pages they visit, and what other sites they used prior to coming to the Website. We use the information we get from Google Analytics only to improve our Website and Services. Google Analytics collects only the IP address assigned to you on the date you visit the Website, rather than your name or other personally identifying information. Although Google Analytics plants a persistent Cookie on your web browser or device to identify you as a unique user the next time you visit the Website, the Cookie cannot be used by anyone but Google. Google's ability to use and share information collected by Google Analytics about your visits to the Website is restricted by the Google Analytics Terms of Use and the Google Privacy Policy.

You can make choices about our collection and use of your Data. For example, you may want to access, edit or remove your Data on our website or mobile application. When you are asked to provide Data, you may decline.
USE OF DATA/INFORMATION COLLECTED

Any or all the above-mentioned Data which is collected may be required by us from time to time to provide information relating to “PillUp” and to work on the experience when using our website or mobile application. Specifically, Data may be used by us for the following reasons:

  1. Carry out our obligations arising from any contract entered into between you and us;
  2. Provide medicines as requested by you through registered prescribed prescription and/or services and communicate with you about such products and/or services offered by us;
  3. Provide you with offers, personalized services and recommendations and improve your experience on our website and mobile application;
  4. Operate, evaluate and improve our business, website and mobile application;
  5. Generate aggregated data to prepare insights to enable us to understand customer behaviour, patterns and trends with a view to learning more about your preferences or other characteristics;
  6. Provide privileges and benefits to you, marketing and promotional campaigns based on your profile;
  7. Communicate with you (including to respond to your requests, questions, feedback, claims or disputes) and to customize and improve our services;
  8. Enforce the terms of use of our website and mobile application;
  9. Protect against and prevent fraud, illegal activity, harm, financial loss and other legal or information security risks; and
  10. Serve other purposes for which we provide specific notice at the time of collection, and as otherwise authorized or required by applicable law.
  11. Creation and maintenance of health records in electronic form in the Personal Health Record (PHR) database for use by us and DHSPL & its affiliates, etc., to provide relevant services;
  12. Create your unified profile with analytics and insights generated through processing your personal information;
  13. For sharing with your chosen Health care service provider like doctors, hospitals, diagnostic centers, and chemists who may provide you services under the App or Website;
  14. Processing any orders/requests you may place using our Services.

You hereby provide your explicit consent use of your protected health information or sensitive personal data in order to provide personalized services such as in the case of pre-sorted medicines, and digital health, we will use your data for the purpose of prompt and personalized user experience and services

We treat these inferences as personal information (or sensitive personal information, as the case may be), where required under applicable law. Some of the above grounds for processing will overlap and there may be several grounds which justify our use of your personal information.

Where required under applicable law, we will only use your personal information (including sensitive personal information) with your consent; as necessary to provide you with products and/or services; to comply with a legal obligation; or when there is a legitimate interest that necessitates the use.

RETENTION OF DATA/INFORMATION

We store your personal information in accordance with applicable laws, which means we keep your data for as long as necessary to provide you with our Services or as may be required under any law. We shall store your personal information for lawful purposes only. We keep de-identified data for research and statistical purposes for a longer period.

In the event that you decide to close your account, we will respect your choice and undertake the necessary steps to delete your personal information from our systems. Please note that upon account closure, we are not obligated to retain any of your data, and we hold no liability for the deletion of all or any portion of your data. However, we may retain data related to you if we believe it may be necessary to prevent fraud or future abuse if required by law, or for other legitimate purposes. We may continue to store your data in anonymized or de-identified form for analytical, research, or other purposes for which your information is collected as previously indicated.

TRANSFER OF DATA/INFORMATION

Information about You and the other Users of the Platform forms an integral part of Our business. By using the Site or the App, You accept the terms hereof and hereby consent to the storage and processing of the personal information and Sensitive Personal Data or Information (hereinafter referred to as SPDI) by third parties. We have arrangements with third parties such as service providers, payment gateways, logistics partners who are the intended recipients and may have access to the personal information and SPDI who are bound by contractual obligations to keep Personal Information confidential and use it only for the purposes for which we disclose it to them not disclose such information including SPDI further to any other individual / entity. Some of the third parties include:

  1. Retail partners: Some of Your personal information or SPDI will be shared with affiliated retailers, the Retail Pharmacies who supply and service Your order and with the Medical Practitioners. You can identify when a third party is involved in Your transactions, and We share customer information related to those transactions with that third party;
  2. Third Party Service Providers: Some of Your personal information or SPDI may be shared with third party service providers, such as logistics providers for the fulfillment of Services and delivery of Your order(s). Examples include fulfilling orders, delivering packages, sending e-newsletters and e-mail, removing repetitive information from customer lists, analyzing data, providing marketing assistance, processing card payments and providing customer service. The tools used by such third party service providers to provide the Services, may also collect Your personal information or SPDI during the process of providing such Services. Further, they must process the personal information in accordance with this Privacy Policy and as permitted by applicable law. It is clarified that We will not be responsible and liable for the acts of omissions and commissions of such third parties associated with Us.
  3. Our Legal obligations: We may release account and other personal information when We believe in good faith that such release is appropriate to comply with applicable law including to: (i) conform to legal requirements or comply with legal process; (ii) protect rights or property or affiliated companies; (iii) prevent a crime or in interest of national security; or (iv) protect personal safety of Our Users or the public. We may also disclose Your personal information to enforce or apply Our Terms and other agreements; or protect the rights, property or Our safety, safety of Our Users or others. This includes exchanging information with other companies, organizations, government or regulatory authorities for fraud protection and credit risk reduction; (IV)As required by law, which can include providing information as required by a court order.To a buyer or other successor who is bound by contractual obligations to keep Personal Information confidential in the event of a merger, divestiture, restructuring, reorganization, dissolution or other sale or transfer of some or all of DHSPL's assets, whether as a going concern or as part of bankruptcy, liquidation or similar proceeding, in which Personal Information maintained by the Website is among the assets transferred. To the third parties who are subject to confidentiality obligations and that you have elected to establish integrations with, or who seek to establish Integrations with you, and to facilitate, maintain and monitor the utilization of such Integrations.

    For commercial purposes and in an aggregated or non-personally identifiable form for research, statistical analysis and business intelligence purposes, and we may sell or otherwise transfer such research, statistical or intelligence data in an aggregated or non- personally identifiable form to third parties and its affiliates for a consideration or for providing services to the Users or for the advancement of scientific knowledge about health and disease.

    1. In response to legal process, such as a search warrant, court order, or subpoena, or when we have a good faith belief that the law requires us to do so.
    2. Any other purposes described in this Privacy Policy or Terms of Use. When we otherwise have your consent.
  4. Improving Our business: You acknowledge that We have a right to use a recorded copy of Your telephonic conversation, and e-prescription for improving Our Services, marketing and promotional efforts and customize Your experience. These uses improve the Site, the App, and the Services, and better tailor it to meet Your needs, so as to provide You with an efficient, safe and customized experience.
PROTECTING AND SECURING DATA

We are committed towards maintaining the privacy of the information uploaded by you on the website and comply with the industry standard security safeguards for the purpose of securing the website and the information provided/uploaded by you. We use reasonable technical, administrative, and physical security measures for the purpose of safeguarding all data you share with us. We also have comprehensive internal policies in place to prevent unauthorized access to your data. We take adequate steps to ensure that third parties we share data with also adopt reasonable levels of security practices and procedures to ensure the privacy and security of your information.

Although we make best possible efforts to transmit and store all the information provided by you in a secure operating environment that is not open to the public, you understand and acknowledge that there is no such thing as complete security and we do not guarantee that there will be no unintended disclosures of any information and potential security breaches. Further, We shall not be responsible for any breach of security or for any actions of any third parties or events that are beyond Our reasonable control including but not limited to acts of government, computer hacking, unauthorized access to computer data and storage device, computer crashes, breach of security and encryption, poor quality of internet service or telephone service of the User, etc.

  1. Limitations on Deletion of Information: You may request deletion of your Personal Information by us, but please note that we may be required (by law or otherwise) to keep this information and not delete it (or to keep this information for a certain time, in which case we will comply with your deletion request only after we have fulfilled such requirements). When we delete Personal Information, it will be deleted from the active database, but may remain in our archives and we may also retain Anonymous Information for our usage. Once we disclose some of your Personal Information to third parties, we may not be able to access that Personal Information any longer and cannot force the deletion or modification of any such information by the parties to whom we have made those disclosures. After we delete Personal Information, we will retain De- Identified Data and will continue to use De-Identified Data as permitted under this Privacy Policy and applicable law.
RIGHTS

When we process Data about you, we do so with your consent and/or as necessary to operate our business, meet our contractual and legal obligations, protect the security of our systems and our customers, or fulfill other legitimate interests of PillUp as described in this Privacy Notice. You have the following rights in relation to your sensitive personal information and you can exercise it by submitting a request as described in the "How to Contact Us" section below.

  1. Right to Access, Review and Modify: You have a right to access, review, inspect and modify your protected health information. The designated record set will usually include prescription and billing records. You have a right to request the protected health information in the designated record set for as long as we maintain your records. You have a right to have requested records provided to you in a timely fashion in order to review and modify if needed.
  2. Right to Correction: If you believe that your protected health information is incomplete or incorrect, you may request an amendment to any of your records for as long as we maintain your records. Requests must be submitted in writing to us. This request must include a reason that supports your request for amendments to your records. We have the right to deny an amendment to your records in certain cases. In case of a denial of amendment, you have the right to submit a Statement of Disagreement. We have a right to provide a rebuttal to your statement.
  3. Right to Withdraw Consent: You may, at any time withdraw your consent for collection and use of your information including Personal Information (defined above) or Sensitive Personal Data or Information. Such withdrawal of the consent shall be sent in writing at https://www.tatvacare.in/. However, please note that if you withdraw your consent, we may no longer be able to provide you with the corresponding service for which you have withdrawn your consent. It is hereby clarified that your decision to withdraw your consent will not affect the processing of Personal Information based on your previous consent prior to the withdrawal.

It is important that the Data we hold about you is accurate and current. Please keep us informed if your personal information changes during the period for which we hold it.

SEVERABILITY

Each clause of this Privacy Policy shall be and remain separate from and independent of and severable from all and any other clauses herein except where otherwise expressly indicated or indicated by the context of the Privacy Policy. The decision or declaration that one or more clauses are null and void shall have no effect on remaining clauses of this Privacy Policy. In the event that any provision is held to be prohibited or invalid, such provision shall be ineffective only to the extent of such prohibition or invalidity, without invalidating the remainder of such provision or other remaining provisions of this Privacy Policy.

CONSENT

By using the Website and/ or App by providing your information, you consent to the collection and use of the information you disclose on the Website/App in accordance with this Privacy Policy, including but not limited to your consent for sharing your information as per this privacy policy. If we decide to change our privacy policy, we reserve the right but not obligated to post those changes on this page so that you are always aware of what information we collect, how we use it, and under what circumstances we disclose it. However, as advised above, please go through our Privacy Policy at regular intervals.

CONTACT US - GRIEVANCE OFFICER

You are free to not share any medical or other information that you consider confidential and withdraw consent for us to use data that you have already provided. In the event that you refuse to share any information or withdraw consent to process information that you have previously given to us, we reserve the right to restrict or deny the provision of our services for which we consider such information to be necessary. To request to access, review, update, or withdraw your consent for your personal information or to otherwise reach us, please submit a request by emailing us at hello@pillup.com You may contact us for information on +919818360666 with whom we may share your Data in compliance with this Privacy Notice and applicable law.

If you have any concern about privacy or grievances on the Site or the App, please contact us with a thorough description and we will try to resolve the issue for You. If you have any concerns or questions in relation to this Privacy Policy, you may address them to our grievance officer at:

Name: Rahul

Phone number: +919818360666

E-mail: hello@pillup.com