Privacy Policy

Effective Date: October 02, 2025

VitalPhysio⁺ ("we," "our," or "us") is committed to respecting and protecting the privacy of every individual who interacts with our clinic, website, and online services. This Privacy Policy explains how we collect, use, share, and safeguard your personal information in accordance with Indian law and global privacy standards.

1. Who We Are

VitalPhysio⁺ is an advanced physiotherapy and rehabilitation clinic based in Bengaluru, Karnataka, India. This policy applies to our website, digital portals, and all services offered by VitalPhysio⁺.

2. What Data Do We Collect?

We may collect and process the following personal information:

  • Identity Data: Name, date of birth, gender, medical registration or patient ID
  • Contact Data: Phone number, email address, postal address
  • Health Data: Medical history, diagnosis, treatment details, health records, physical and functional assessments
  • Technical Data: IP address, browser type, device information, usage data, cookies, and similar tracking technologies
  • Payment Data: Transaction records (processed securely via payment gateways; we do not store payment details)
  • Appointment/Portal Data: Information you provide via our booking forms, patient portal, or contact requests

3. How Do We Collect Your Data?

  • Directly from you (e.g., when you register, fill out forms, book appointments, or interact with our clinic/team)
  • Automatically (e.g., website analytics via cookies and technical logs)
  • From third-party sources as authorized by you (e.g., referring providers, integrated health apps, device manufacturers)

4. Why Do We Collect and Use Your Data?

We use your data to:

  • Provide high-quality physiotherapy care and health management
  • Schedule appointments and manage clinic operations
  • Communicate with you (reminders, follow-ups, clinical updates)
  • Maintain accurate health records as required by law
  • Improve our website, patient experience, and clinical services
  • Send newsletters or notifications (only with your explicit consent)
  • Meet our legal and regulatory obligations

5. Legal Basis for Processing

We process your information based on the following:

  • Consent: When you explicitly authorize use (e.g., contact form, newsletter opt-in)
  • Contractual Necessity: To deliver requested physiotherapy or telehealth services
  • Legal Obligation: Compliance with Indian medical and data protection laws
  • Legitimate Interest: To improve clinic operations and ensure safety

6. Data Sharing and Disclosure

Your information is strictly confidential. We do not sell your data. We may disclose it only:

  • To authorized clinic staff and treating physiotherapists, bound by confidentiality
  • To legal/regulatory authorities as mandated by law (e.g., compliance, court order)
  • To third-party service providers (e.g., cloud hosts, analytic platforms), strictly for operating our services and always under data protection agreements
  • With your written consent, to other healthcare providers for referral/continuity of care

7. Security Measures

We implement robust security protections:

  • Encryption of health records and sensitive data in storage and transmission
  • Role-based access and regular audit logs
  • Strong authentication for patient portal access
  • Staff training in data privacy and confidentiality
  • Secure cloud infrastructure compliant with healthcare standards

8. International Users

If you are accessing our website from outside India, your data may be processed and stored in India. We adhere to applicable cross-border data transfer laws and ensure reasonable safeguards in line with GDPR principles for EU/EEA residents.

9. Retention Period

We retain your data only as long as necessary:

  • For the purposes described above
  • As required by Indian law and medical regulations (minimum prescribed periods)
  • After which data is securely deleted or anonymized

10. Your Rights

Subject to Indian law, you have rights to:

  • Access the personal data we hold about you
  • Request correction of inaccurate/obsolete information
  • Withdraw your consent (where processing is based on consent)
  • Request erasure or restriction where legally applicable
  • Raise complaints with the Data Protection Board of India or the relevant authority

11. Children's Privacy

We do not knowingly collect data from children under 18 without parental/legal guardian consent.

12. Cookies & Tracking

Our website uses cookies for technical purposes and to enhance your browsing experience. You can control cookies via your browser settings.

13. Changes to This Policy

We may update this Privacy Policy to reflect changes in the law or our practices. The latest version will always be posted on this page with an updated effective date.

14. Contact Us

For any privacy concerns, data requests, or questions, please contact:

Privacy Officer

VitalPhysio⁺

Bengaluru, Karnataka, India

By using our website or services, you acknowledge and consent to this Privacy Policy as of the effective date. Please read it carefully and retain a copy for your records.