Privacy Policy
Effective Date: 8th April 2026
1. Introduction
Health City Hospital (“we”, “our”, or “us”) is committed to protecting personal data and ensuring compliance with applicable Indian data protection laws, including the Digital Personal Data Protection Act, 2023 and the Information Technology Act, 2000. By accessing or using our website, you agree to the terms of this Privacy Policy.
2. Definitions
- Personal Data: Any data about an individual who is identifiable.
- Sensitive Personal Data (SPDI): Includes health information, medical records, biometric data, etc.
- Processing: Collection, storage, use, sharing, or deletion of data.
3. Data We Collect
a. Personal Data
- Name, age, gender
- Phone number, email address
- Address and identification details
- Appointment and inquiry details
b. Sensitive Personal Data (SPDI)
- Medical history
- Diagnostic reports
- Prescription details
- Health conditions submitted via website
c. Automatically Collected Data
- IP address
- Device and browser details
- Website usage data
4. Purpose of Processing
We process personal data for lawful purposes including:
- Patient registration and appointment scheduling
- Diagnosis, treatment, and healthcare services
- Maintaining electronic medical records
- Communication regarding services and updates
- Compliance with legal and regulatory obligations
5. Legal Basis for Processing
We process your data based on:
- Your consent
- Medical necessity (for treatment and healthcare services)
- Compliance with legal obligations
6. Consent
- Consent is obtained before collecting sensitive personal data.
- Users may withdraw consent at any time by contacting us.
- Withdrawal may affect our ability to provide services.
7. Data Sharing and Disclosure
We may share personal data only in the following cases:
- With doctors, nurses, and healthcare professionals for treatment
- With third-party service providers (IT, cloud, SMS/email vendors) under strict confidentiality agreements
- With insurance companies (with patient consent)
- When required by law, court order, or government authority
- We do not sell or trade personal data.
8. Cross-Border Data Transfer
Personal data may be stored or processed outside India only in compliance with applicable laws and government-notified restrictions under the DPDP Act.
9. Data Retention
- Medical records are retained as per applicable healthcare regulations and legal requirements.
- Other personal data is retained only as long as necessary for the stated purpose.
10. Data Security
We implement reasonable security practices as mandated under applicable law, including:
- Encryption and secure servers
- Access control and authentication
- Regular security audits
Despite safeguards, no system is completely secure.
11. Your Rights (Data Principal Rights under DPDP Act)
You have the right to:
- Access your personal data
- Request correction or erasure
- Withdraw consent
- Nominate another person to exercise rights (where applicable)
- Grievance redressal
12. Cookies Policy
We use cookies to enhance user experience and analyze website traffic. Users can manage cookie preferences through browser settings.
13. Children’s Data
- We process children’s data only with verifiable parental/guardian consent.
- Extra safeguards are applied for minors’ data.
14. Grievance Redressal
In accordance with Indian law, a Grievance Officer is appointed:
Grievance Officer: Parag Jyoti Dutta
Email: parag.dutta@healthcityhospital.com
Phone: 70029 98256
15. Third-Party Links
Our website may contain links to third-party websites. We are not responsible for their privacy practices.
16. Updates to this Policy
We may update this Privacy Policy periodically. Updates will be posted on this page with the revised effective date.
Contact Information
Health City HospitalRoad/Street: NH 37
Locality: Khanapara
City: Guwahati, Assam
District: Kamrup Metropolitan
PIN Code: 781022