Privacy Policy
Last updated: January 14, 2026
Introduction
RX Pro ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our healthcare practice management platform.
We comply with applicable data protection laws, including HIPAA (Health Insurance Portability and Accountability Act) for Protected Health Information (PHI) and the Information Technology Act, 2000 for data processed in India.
Information We Collect
Personal Information
- Name, email address, and contact information
- Professional credentials and license information (for healthcare providers)
- Organization and practice details
- Billing and payment information
- Login credentials and authentication data
Protected Health Information (PHI)
- Patient demographics and contact information
- Medical history and health records
- Appointment and treatment information
- Prescriptions and medication data
- Lab results and diagnostic information
- Teleconsultation recordings (with consent)
Technical Information
- IP address and device information
- Browser type and operating system
- Usage patterns and analytics data
- Session logs and audit trails
How We Use Your Information
- To provide and maintain our healthcare management services
- To process appointments, prescriptions, and patient care workflows
- To facilitate teleconsultation services
- To generate analytics and insights for practice management
- To process billing and payments
- To send service-related communications and notifications
- To improve our services and develop new features
- To comply with legal obligations and healthcare regulations
- To detect and prevent fraud or security incidents
Data Sharing and Disclosure
We may share your information with:
- Healthcare providers within your organization for patient care
- Service providers who assist in operating our platform (under strict confidentiality agreements)
- Payment processors for billing transactions
- Legal authorities when required by law or to protect our rights
- Business partners for integrated services (with your consent)
We do NOT sell personal information or PHI to third parties.
Data Security
We implement comprehensive security measures to protect your data:
- Encryption: All data is encrypted in transit (TLS 1.3) and at rest (AES-256)
- Access Controls: Role-based access controls and multi-factor authentication
- Audit Logging: Comprehensive logging of all data access and modifications
- Regular Assessments: Periodic security audits and vulnerability assessments
- Employee Training: Regular privacy and security training for all staff
- Incident Response: Documented procedures for handling security incidents
Your Rights
You have the right to:
- Access: Request a copy of your personal data
- Correction: Request correction of inaccurate data
- Deletion: Request deletion of your data (subject to legal retention requirements)
- Portability: Receive your data in a structured, commonly used format
- Restriction: Request limitation of processing in certain circumstances
- Objection: Object to certain types of processing
- Withdraw Consent: Withdraw consent where processing is based on consent
Data Retention
We retain data for as long as necessary to:
- Provide our services and maintain your account
- Comply with legal and regulatory requirements (medical records must be retained as per applicable healthcare laws)
- Resolve disputes and enforce our agreements
Upon account termination, we will retain data for the minimum period required by law, typically 7-10 years for medical records in India.
Cookies and Tracking
We use cookies and similar technologies to:
- Maintain your session and authentication
- Remember your preferences
- Analyze usage patterns to improve our service
- Ensure security of your account
You can control cookie settings through your browser, though some features may not function properly without cookies.
International Data Transfers
Our primary data centers are located in India (Mumbai region). If data is transferred internationally, we ensure appropriate safeguards are in place, including standard contractual clauses and compliance with applicable cross-border data transfer regulations.
Children's Privacy
Our Service is intended for healthcare professionals and organizations. We do not knowingly collect personal information directly from children under 13. Patient data for minors is handled through their healthcare providers and guardians in accordance with applicable laws.
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by posting the new policy on this page and updating the "Last updated" date. For material changes affecting PHI, we will provide additional notice as required by law.
Contact Us
For privacy-related questions or to exercise your rights:
- Privacy Officer: contactrxpro@aivn.online
- General Inquiries: contactrxpro@aivn.online
- Phone: +91 858-077-2890
- Address: RX Pro Healthcare Solutions, India