Privacy Policy
Last updated: June 2026 · Applies to all users of the Pulse Visit platform
At Pulse Visit (operated by Essara Healthcare Private Limited), your privacy is deeply important to us — especially given the sensitive nature of healthcare. This Privacy Policy explains what information we collect, why we collect it, how we use it, and the rights you have over your data.
This policy complies with the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 under the Information Technology Act, 2000 of India.
Contents
Information We Collect
We collect only what we need to provide you with safe, effective healthcare services. This includes:
| Category | Examples | How Collected |
|---|---|---|
| Identity Data | Full name, date of birth, gender | Registration / Booking form |
| Contact Data | Phone number, email, home address | Registration / Booking form |
| Health Data | Medical history, symptoms, prescriptions, vitals | Provided by you or recorded by clinician |
| Professional Data | Medical registration number, qualifications, specialisation | Clinician onboarding through the Pulse Visit Partner App |
| Usage Data | Pages visited, booking history, device type | Automatically via website analytics |
| Communication Data | WhatsApp messages, support queries, feedback | Via WhatsApp, email, or contact form |
How We Use Your Information
We use your information strictly to operate and improve the Pulse Visit service:
- To process bookings and assign qualified healthcare professionals to your appointment
- To send appointment confirmations, reminders, and follow-up communications via WhatsApp or email
- To maintain electronic patient records accessible to your assigned clinician
- To verify healthcare professional credentials during onboarding
- To process payments and issue receipts
- To improve our services through anonymised analytics and feedback
- To comply with legal obligations under Indian healthcare and data protection laws
We do not use your personal data for advertising, profiling, or sell it to third parties.
Health & Medical Data
Sensitive Personal Data:
Health information is Sensitive Personal Data under Indian law. We treat it with the highest level of care, security, and confidentiality.
Medical data collected during your care (such as diagnosis, prescriptions, vitals, and clinical notes) is:
- Stored securely on encrypted servers
- Accessible only to the healthcare professionals involved in your care and authorised Pulse Visit clinical coordinators
- Never shared with insurers, pharmaceutical companies, or any commercial third party without your explicit consent
- Retained for a minimum period required by Indian medical regulations (typically 3–7 years for clinical records)
You have the right to request access to your clinical records or to request their deletion, subject to legal retention requirements.
Data Security
We implement reasonable security practices and procedures as required by the IT Act, 2000 and its rules, including:
- Encryption of sensitive data in transit (SSL/TLS) and at rest
- Access controls limiting data access to authorised personnel only
- Regular internal audits of data handling practices
- Secure onboarding processes for clinical professionals
While we take every reasonable step to protect your data, no internet transmission is completely secure. In the event of a data breach that affects your rights, we will notify you as required by applicable law.
Data Retention
We retain your data for as long as necessary to deliver our services and comply with legal obligations:
- Patient clinical records: minimum 3 years (as per Indian medical practice guidelines); may be extended for chronic care patients
- Account and booking information: retained for 2 years after last activity, unless deletion is requested
- Healthcare professional credentials: retained for the duration of the partnership and 2 years thereafter
- Payment records: retained for 7 years as required by Indian tax law
After the retention period, data is securely deleted or anonymised.
Your Rights
As a user of the Pulse Visit platform, you have the right to:
- Access: Request a copy of the personal data we hold about you
- Correction: Ask us to update inaccurate or incomplete data
- Deletion: Request deletion of your personal data, subject to legal retention obligations
- Withdrawal of Consent: Withdraw consent for non-essential processing at any time
- Grievance Redressal: Lodge a complaint with our Grievance Officer (see below)
To exercise any of these rights, please write to us at hello@pulsevisit.com. We will respond within 30 days.
Children's Privacy
We do not knowingly collect personal information from children under 18 without verifiable parental or guardian consent. When booking services for a minor, the account holder (parent or guardian) is responsible for providing accurate information and consenting on the child's behalf.
If you believe we have inadvertently collected data from a child without appropriate consent, please contact us immediately at hello@pulsevisit.com.
Changes to This Policy
We may update this Privacy Policy from time to time as our services evolve or as required by law. Material changes will be communicated via a notice on our website or via the contact information you have provided. The “Last updated” date at the top of this page reflects the most recent revision.
Continued use of the Platform after changes are posted constitutes acceptance of the updated policy.
Contact Us
Data Grievance Officer — Pulse Visit
For any privacy concerns, data access requests, or complaints. We will acknowledge your request within 72 hours and resolve it within 30 days.
© 2026 Pulse Visit — An Essara Healthcare Initiative.