Privacy Notice
This deployment template separates platform operations, practice records and patient access. The operator must adapt this notice to the applicable law and actual processing before launch.
Information processed
Account identity, contact details, appointments, SMS/WhatsApp delivery records, clinical encounters, prescriptions, channel and location consent evidence, optional encrypted travel coordinates, support records and audit events may be processed for the service.
Practice isolation
A doctor and their authorised staff can access only that doctor’s relationship records. A patient can see their own released history across practices. Routine platform dashboards do not expose clinical note content.
Security and retention
Sensitive database fields are encrypted and significant actions are audited. The operator must define backups, retention schedules, breach response, staff training, vendor agreements and access reviews.
External processors and assisted drafting
When configured and expressly used, MSG91 processes messaging destinations, Google processes route coordinates, and Claude/OpenAI process doctor-submitted drafting text. The operator must document the actual subprocessors, purposes, locations, retention settings and transfer safeguards. AI text is not inserted without doctor review.
Privileged support
Website Admin may enter a user panel only through a time-limited support session with a recorded reason and prominent banner. The session is audited and cannot finalise doctor-signed clinical documents.
Your requests
Patients can submit access, correction, export, restriction and deletion-review requests from their portal. Some clinical records may need to be retained where law or medical standards require it.
Contact
Email chugh@rajiv.in.