Privacy Policy

Effective Date: August 4, 2025

Last Updated: April 28, 2026

ExpressAid Technologies Pvt. Ltd. ("ExpressAid", "we", "our", "us") is committed to protecting your privacy and ensuring the security of your personal and health-related data. This Privacy Policy explains how we collect, use, store, process, and disclose your information when you use our mobile application, website, or services ("Services").

By accessing or using ExpressAid, you consent to this Privacy Policy.

1. Legal Framework

This Privacy Policy is governed by:

  • Information Technology Act, 2000 (India)
  • IT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011
  • IT (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021

We follow reasonable security practices for handling Sensitive Personal Data or Information (SPDI), including health-related data.

2. Scope of Policy

This policy applies to:

  • Patients and caregivers using ExpressAid
  • Nurses and healthcare professionals onboarded on the platform
  • Visitors to our website and app

3. Information We Collect

3.1 Personal Information

  • Full name
  • Phone number and email address
  • Date of birth and gender
  • Residential address and location
  • Profile photo (optional)

3.2 Health & Medical Information (Sensitive Data)

  • Symptoms and service-related notes
  • Medication history, allergies, chronic conditions
  • Vitals (BP, sugar, temperature, etc.)
  • Consultation-related details (if applicable)

3.3 Technical & Usage Data

  • IP address and device identifiers
  • App usage behavior and interaction logs
  • Booking history and preferences
  • Chat interactions and support communication

3.4 Permissions We Use

We may request the following permissions:

  • Location: To match users with nearby healthcare professionals and enable faster service delivery
  • Phone: To facilitate communication between users and service providers
  • Notifications: To send booking updates and service alerts

We only request permissions necessary for core functionality and do not use them for unrelated purposes.

4. Purpose of Data Collection

We collect and process personal and sensitive data only for legitimate service-related purposes, including:

  • Connecting users with verified healthcare professionals
  • Facilitating home healthcare services
  • Enabling bookings and service coordination
  • Processing payments and generating invoices
  • Providing customer support
  • Sending service-related notifications and reminders
  • Improving platform performance and user experience
  • Preventing fraud and ensuring platform security

We do not use health data for advertising or marketing purposes.

5. Consent & User Control

By using ExpressAid, you provide consent to collect and process your data as described in this policy.

You may:

  • Withdraw consent by discontinuing use
  • Request deletion of your account and data
  • Opt out of non-essential communications

Certain services may not function without required data.

6. Data Sharing & Disclosure

We do not sell, rent, or trade your personal or health data.

We may share data only in the following cases:

  • With healthcare professionals (nurses/doctors) to provide requested services
  • With payment partners to process transactions securely
  • With service providers (cloud hosting, analytics) under strict confidentiality agreements
  • With legal authorities when required by law

All third-party partners are required to handle data securely and only for the intended purpose.

7. Data Security Measures

We implement industry-standard safeguards including:

  • Encryption of sensitive data
  • Secure cloud infrastructure
  • Role-based access control (RBAC)
  • OTP-based authentication
  • Regular security monitoring

We follow reasonable security practices; however, no system is completely secure.

Users are responsible for maintaining confidentiality of their login credentials.

8. Data Retention Policy

We retain data:

  • As long as your account is active
  • As required by applicable legal and regulatory obligations

After deletion requests:

  • Data is deleted or anonymized within a reasonable timeframe
  • Some data may be retained if legally required

9. User Rights

You have the right to:

  • Access your data
  • Correct inaccurate information
  • Request deletion of your data
  • Withdraw consent
  • Opt out of communications

To exercise your rights, contact: support@expressaid.in

10. Children's Privacy

Our services are intended for users aged 18 and above.

  • Guardians may provide information on behalf of minors under their responsibility
  • We do not knowingly collect data directly from children

11. Third-Party Services

ExpressAid may integrate with third-party services such as:

  • Payment gateways
  • External service providers

We are not responsible for third-party privacy practices. Users should review their policies separately.

12. Data Breach Protocol

In case of a data breach, we will:

  • Take immediate corrective action
  • Notify affected users where required
  • Comply with applicable legal reporting requirements

13. Platform Role Clarification

ExpressAid is a technology platform that facilitates connections between users and independent healthcare professionals.

  • ExpressAid does not provide medical treatment directly
  • Healthcare professionals are responsible for services delivered
  • ExpressAid does not make independent medical decisions

14. Updates to This Policy

We may update this Privacy Policy periodically.

Changes will be communicated via:

  • App notifications
  • Website updates

Continued use of the Services implies acceptance of the updated policy.

15. Contact & Grievance Officer

For any privacy concerns, contact:

Email: support@expressaid.in

16. Account Deletion & Data Removal

Users can request account deletion by:

Upon request:

  • Personal data will be deleted or anonymized
  • Certain data may be retained if legally required

17. Medical Disclaimer

ExpressAid does not provide medical advice, diagnosis, or treatment.

All services are provided by independent licensed healthcare professionals.

Users should consult qualified professionals for medical decisions.