Privacy Policy for ReOpine
1. Information We Collect
Last Updated: August 25, 2025
This Privacy Policy (“Policy”) explains how ReOpine (“we,” “us,” or “our”) collects, uses, shares, and protects information about users (“you” or “User”) of our website and mobile application (collectively, the “Service”). It supplements our Terms & Conditions and is updated for compliance with the Digital Personal Data Protection Act, 2023 (“DPDP Act”), Information Technology Act, 2000, SPI Rules 2011, IG Rules 2021, and NMC Telemedicine Guidelines.
1. Personal Information
• Name, email, phone, age, gender, address.
• Payment details via third-party gateways.
• NEW: Unique patient identifier generated for DPDP compliance.
2. Health-Related Information
• Medical history, symptoms, prescriptions, reports, images/videos.
• Consultation notes, dates, and times.
• Explicit consent record stored for each health data upload.
3. Technical Information
• IP address, device/browser type, OS, usage data via cookies.
• Location data (if enabled).
• Device metadata retained for 180 days for security audits.
4. Other Information
• Feedback, queries, support communications.
• Third-party consent logs for data sharing with affiliates.
2. How We Collect Information
• Directly from You: Registration, booking, record uploads.
• From Doctors: Consultation notes.
• Automatically: Cookies, log files, analytics.
• Third Parties: Payment gateways, affiliates.
• Data protection officer (DPO) contact records consent changes.
3. How We Use Your Information
• Schedule and deliver Consults.
• Verify identity, process payments.
• Communicate booking/support updates.
• Improve Service via analytics.
• Send promotional offers only with prior consent.
• Comply with legal obligations.
• Use limited to specified purposes, with purpose-wise consent under DPDP Act.
4. Legal Basis & Consent
• For each processing purpose, we record your explicit consent or applicable legal exception
under DPDP Act.
• You may withdraw consent at any time by deleting your account or writing to Support
(support@reopine.com) or DPO (itsupport@reopine.com).
5. Sharing Your Information
• Doctors: Only the data needed for your Consult.
• Service Providers: Bound by confidentiality and DPDP-compliant contracts.
• Affiliates: Within India or abroad, under standard contractual clauses.
• Legal Authorities: When required by law.
• Business Transfers: With notice to you.
• Data transfer impact assessments for cross-border transfers.
6. Security of Your Information
• ENCRYPTION: 256-bit in transit and at rest.
• Access Controls: Role-based with audit logs.
• Annual third-party security audit and penetration testing.
• Breach notification within 72 hours to affected Users and authorities as per DPDP Act.
7. Your Rights Under DPDP Act
• Access & Portability: Obtain copy of your data in machine-readable form.
• Correction & Erasure: Request update or deletion of personal data.
• Objection & Restriction: Object to processing or request restriction.
• Withdraw Consent: At any time without affecting prior lawful processing.
• Right to data grievance escalation via DPO and Data Protection Authority.
8. Cookies & Tracking
• Functional and analytics cookies.
• Cookie consent banner with granular control.
• Manage preferences via browser or account settings.
9. Data Retention
• Personal/health data retained only for the period necessary.
• Consult records: Retained for 5 years per tax/medical regulations.
• De-identified analytics data: Indefinitely.
• Upon account deletion: Identifiable data purged within 30 days, except legally mandated
records.
• Automated retention schedule with audit logging.
10. Children’s Privacy
• Not for users under 13.
• Ages 13–18 require parental consent recorded and verified.
• Parental consent expiration management and re-verification process.
11. International Transfers
• Data primarily stored in India.
• Cross-border transfers under standard contractual clauses.
• Regular audits of third-country data protection equivalence.
12. Third-Party Links
• Links to external sites not covered by this Policy.
• Review their privacy policies separately.
13. Changes to This Policy
• Updates posted on Service; significant changes notified via email/in-app.
• Continued use after changes signifies acceptance.
14. Contact & Grievance
• DPO: itsupport@reopine.com
• Support: support@reopine.com
• Address: ReOpine, C/O Paradocs Healthcare Pvt. Ltd., FF 101–102, KAIROS, Ahmedabad
380054
• Grievance resolution timeline: Acknowledgement in 24 hours, resolution in 30 days.