Data security

How your data is protected

One rule governs this page: every sentence describes something our system actually does today, not something we aspire to. No borrowed badges, no vague reassurance.

An appointment is treated as sensitive data, because it is

A booking record says an identifiable person consulted a named doctor of a named speciality. Under India's Digital Personal Data Protection Act 2023, that combination is sensitive personal data. Everything below follows from taking that seriously.

Health data never appears in our logs

No appointment record, patient name, phone number or visit reason is ever written to an application log, an error report or an analytics event. When something fails, we log a category and a status code, never the data that was in flight.

There are no trackers here

No advertising pixels, no third-party analytics, no session-replay tools. Our security policy (the Content-Security-Policy header, which your browser enforces) blocks the page from talking to third parties at all. The single exception is Razorpay's payment window, loaded only at the moment you choose to pay online, and it never sees anything about your visit beyond the amount.

Consent is a record, not a checkbox

Every consent you give is stored as its own dated record: what it was for, when you gave it, and against which version of our policy. Withdrawing one consent, say WhatsApp reminders, does not disturb the others. A video consultation records its own separate consent, as telemedicine rules require.

Every look at patient data is written down

When a clinic opens its patient list, that access is recorded: who looked, at what, and when. This is what lets us answer, under the DPDP Act, the question every patient is entitled to ask: who has seen my record?

Clinics see only their own patients

A clinic's access is scoped to appointments at that clinic, enforced inside every database query, not just hidden in the interface. Our own platform administration deliberately does not include browsing patient lists.

There are no passwords to steal

Sign-in uses one-time links, so there is no password database to breach. Session tokens are stored only as one-way hashes; even a copy of our database cannot impersonate you.

Your card and UPI details never touch our servers

Online payments run inside Razorpay's own secure checkout. We receive a confirmation that a payment happened, never the instrument you paid with. Refunds go back to the same account automatically when a paid consultation is cancelled.

Reviews never name you

A review is published as a verified visit with a rating and your words, never your name. And only a completed appointment can leave one, so reviews cannot be planted.

We do not sell data. To anyone. In any form.

Your name, number and appointment history are not for sale, not for rent, and not for 'sharing with partners'. The only party who receives your details is the clinic you chose to book, because they need them to see you.


What we do not claim

We do not currently hold an ISO 27001 certification, and we do not display a HIPAA badge, because HIPAA is a United States law that does not apply to Indian healthcare and wearing its logo here would be decoration. The law that binds us is India's DPDP Act 2023, and the protections above are how we meet it. When we obtain a formal certification, it will appear here with the certificate itself, not just the logo.

Questions about your data, or a request to see or erase it, are handled through the contact on our privacy policy page. We answer those personally.