Legal & Compliance
Privacy Policy
Last Updated: 13 January 2026
At NaviQure AI Health Tech Private Limited, we treat medical data with the highest level of confidentiality and technical rigor. This policy outlines our commitment to your data privacy in accordance with Indian laws.
1Regulatory Compliance
NaviQure is architected to be "Privacy-First." We strictly adhere to:
- check_smallDigital Personal Data Protection (DPDP) Act, 2023
- check_smallNational Digital Health Mission (NDHM) / Ayushman Bharat Digital Mission (ABDM)
- check_smallInformation Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011
- check_smallInternational Best Practices: While focusing on India, our security protocols are aligned with HIPAA-grade encryption standards to ensure global-level data safety.
2Data We Collect (The "Data Principal")
As the "Data Principal" under Indian law, you provide us with:
Personal Information
Name, age, contact details, and ABHA ID.
Sensitive Personal Data
Medical history, clinical reports, prescriptions, and imaging files.
Consent Logs
Digital records of the permissions you grant us.
4Consent Management
- check_smallSpecified Consent: We only process data for which you have given clear, affirmative consent.
- check_smallRight to Withdraw: You may withdraw your consent at any time via the NaviQure app settings.
- check_smallRight to Erasure: In line with the "Right to be Forgotten," you can request the permanent deletion of your data from our servers.
3Purpose of Processing (The AI Intelligence Layer)
We process your data via our AI-driven platform for specific, consented purposes:
- check_smallLongitudinal Record Creation: Structuring fragmented health data into a single, intelligent timeline.
- check_smallClinical Navigation: Providing AI-driven summaries to help you and your caregivers navigate chronic care.
- check_smallConsent-Based Sharing: Securely sharing specific insights with our medical board (e.g., Major (Dr.) Shrijit Nair or Dr. Kriti Hegde) for clinical validation.
5Data Security & Storage
Led by an engineering team from IIT, Adobe, and Microsoft, we employ:
- check_smallEnd-to-End Encryption: Data is encrypted at rest (AES-256) and in transit (TLS 1.3).
- check_smallLocal Storage: In compliance with Indian data localization preferences, all primary health data is stored on secure servers within India.
- check_smallAccess Control: Only authorized clinical personnel can view your identifiable health information.
6Third-Party Sharing
NaviQure does not sell your personal health data to third-party marketing or pharmaceutical companies. Data is only shared with:
- check_smallHospitals/Clinics: Only when you are part of a B2B2C program through your provider.
- check_smallGovernment/ABDM: For the purpose of linking and fetching records via your ABHA ID.
7Grievance Redressal
In accordance with the DPDP Act, we have a dedicated officer to handle your privacy concerns.
Grievance Officer
NaviQure AI Health Tech Private Limited
Lake Pleasant, Powai, Mumbai.