PRIVACY POLICY
4basecare Onco Solutions Private Limited (“Us”, “We”, “4basecare”, “Company” or “Our”) owns, operates and manages the websites having domain names https://4basecare.com and www.oncobuddy.app and a mobile/hand held device based application under the name and style of “OncoBuddy” and the operating under the logo Platform”). In accordance with the terms and conditions of use of the Platform available at https://4basecare/terms-of-use (“Terms of Use”), the Platform provides the Services (as defined below) to its end-users/customers who visits, accesses or uses the Platform, is registered with the Platform and/or avails the Services offered through the Platform. For the purpose of the Privacy Policy, wherever the context so requires, the terms “User”, “You” or “Your”, shall mean: (i) a patient, and/or his/her representatives or affiliates (“Patient Care Giver”); (ii) any person who visits, browses, uses or accesses the Platform or avails any of the Services (as defined below) on the Platform. In the event, the User is a Patient Care Giver, then the User hereby confirms and undertakes that he has requisite authorization under the Applicable Laws to give consent and receive documentations and records on behalf of the patient.
The Platform offers a variety of content, services and products in relation to cancer diagnostic services and other allied services to the Users, which include, inter alia, the following services (“Services”):
- facilitating the User in availing the interaction, communication, dealing and transaction with their healthcare service provider or medical practitioner who are permitted to practice medicine by the MCI or any concerned State Medical Council as a ‘registered medical practitioner’ and who are enlisted and registered on the Platform through the User itself (“Partner Doctor”) by way of tele-communication, video-conferencing or online chat (or any other means that the Platform may provide at its discretion) to efficiently communicate, interact and receive consultation from such Partner Doctor (“Consultation Facility”);
- providing the User with a facility to digitize and store their Medical and Health Records (as defined below) and organize such records in a structured way;
- providing the User access to a forum for general discussion related to precision oncology and cancer care (“Forum”), wherein the User can directly participate at his/her sole discretion
- facilitating the User in interaction, transaction, communication and dealing with the laboratories operated by the Company or third party diagnostic centres (“Partner Diagnostic Labs”) so as to enable the User in availing the diagnostic services of the Partner Diagnostic Labs and the Company operated laboratories (“Diagnostic Facility”); and
- enabling the User in availing and purchasing certain specified pharmaceuticals or healthcare related products, services, benefit-based subscription packages etc., (“Third Party Products and Services”) enlisted in the Platform from the Third Party Suppliers (as defined below).
Please note that the term “Medical and Healthcare Records” means and includes the health or medical data of any individual/ User, such as, past medical history and conditions, past and present diseases, allergies, previous treatments, diagnostic reports, lab and test results, prescriptions and medication history, or such other data or information related to the consent of such individuals/ Users/ third parties in respect of availing any treatment or consultation and the authorization to disclose medical information; and the term “Third Party Suppliers” shall mean and include persons who advertises and feature their products, goods, services, benefit based subscription packages and offerings on the Platform for the purchases to be made by the Users.
This privacy policy (“Privacy Policy” or “Policy”), inter alia, states the following:
- The type of information collected from the Users, including Personal Information (as defined below) and Sensitive Personal Data or Information (as defined below) relating to an individual;
- The purpose, means and modes of collection, usage, processing, retention and destruction of such information; and
- How and to whom We will disclose such information.
This Policy shall apply to any person who visits, browses, uses or accesses the Platform or uses any Service(s) on the Platform. This Policy is an electronic record in terms of the Information Technology Act, 2000 and rules made thereunder. Further, this electronic record is generated by a computer system and does not require any physical or digital signatures. This Policy is published in compliance with section 43A of the Information Technology Act, 2000, regulation 4 of the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Information) Rules, 2011 (the “SPDI rules”), regulation 3(1) of the Information Technology (Intermediary Guidelines and Digital Media Ethics Code) Rules, 2021. Any new features and/or services that are added to Our current service at any point in the future shall also be subject to the terms set out in this policy. All the Users who access the Platform will be bound by the Privacy policy to the extent applicable to them and by accepting the terms of this Policy during registration on the Platform, You expressly accept this Privacy Policy and agree to be legally bound by the same.
“Personal Information”, as defined under the SPDI Rules, means any information that relates to a natural person, which, either directly or indirectly, in combination with other information available or likely to be available to a body corporate, is capable of identifying such person. The SPDI rules, further, define “Sensitive Personal Data or Information”, as “ of a person to mean personal information about that person relating to: (i) passwords; (ii) financial information such as bank accounts, credit and debit card details or other payment instrument details; (iii) physical, physiological and mental health condition; (iv) sexual orientation; (v) medical records and history; (vi) biometric information; (vii) information received by body corporate under lawful contract or otherwise; (viii) visitor details as provided at the time of registration or thereafter; and (ix) call data record. Note that any data/ information relating to an individual that is freely available or accessible in public domain or furnished under the Right to Information Act, 2005 or any other law shall not qualify as Sensitive Personal Data or Information.
In order to have access to all the features and benefits on Our Platform, a User must first create an account on the Platform. To create an account and avail our Services, the Company may collect information from You which may constitute ‘personal information’ or ‘sensitive personal data or information’ of a person under the SPDI Rules. As part of the registration process and in order to all the features and benefits on the Platform, We may collect the following categories of Personal Information from the Users: Your name, User ID, email address, gender, country, ZIP/postal code, age, phone number, location; and, in addition, at the time of a registered User availing of the Services through the Platform, the User is also be required to provide certain Sensitive Personal Data or Information which includes Medical And Health Records, call records data and bank account or card details for undertaking transactions on the Platform for availing the Services. Other information requested on the account registration page, including the ability to receive promotional offers from Us, is optional. We may, in future, include other optional requests for information from the User to help Us to customize the Platform to deliver personalized information to the User. Further, for the purposes of availing the Services, You may be additionally asked to provide the details about previous medical history, medical records and prescriptions for the medications that have been issued to You by any registered medical practitioner. In addition, the information provided by the User, User’s medical and health records, medical history and related information uploaded/provided by the User on the Platform, diagnostic reports from Partner Diagnostic Labs and the Company operated Laboratories, logs and details of the exchanges between the Partner Doctor and the Users through any medium or on the Platform and the prescription issued by the Partner Doctor will be stored by Us for the purposes of facilitating and providing Services to the Users, ensuring improvement and quality in the Services.
DISCLAIMER– BY USING AND ACCESSING THE PLATFORM AND BY AVAILING THE SERVICES OR BY OTHERWISE GIVING US YOUR INFORMATION, YOU WILL BE DEEMED TO HAVE READ, UNDERSTOOD AND AGREED TO THE PRACTICES AND POLICIES OUTLINED IN THIS PRIVACY POLICY AND AGREE TO BE BOUND BY THE PRIVACY POLICY. YOU HEREBY CONSENT TO OUR COLLECTION, USE AND SHARING, DISCLOSURE OF YOUR INFORMATION AS DESCRIBED IN THIS PRIVACY POLICY. WE RESERVE THE RIGHT TO CHANGE, MODIFY, ADD OR DELETE PORTIONS OF THE TERMS OF THIS PRIVACY POLICY, AT OUR SOLE DISCRETION, AT ANY TIME. IF YOU DO NOT AGREE WITH THIS PRIVACY POLICY AT ANY TIME, DO NOT USE ANY OF THE SERVICES OR GIVE US ANY OF YOUR INFORMATION. IF YOU USE THE SERVICES ON BEHALF OF SOMEONE ELSE, YOU REPRESENT THAT YOU ARE AUTHORIZED BY SUCH PERSON TO ACCEPT THIS PRIVACY POLICY ON SUCH PERSON’S BEHALF, AND (II) HAVE OBTAINED THE CONSENT OF OR ARE AUTHORISED TO PROVIDE CONSENT ON BEHALF OF SUCH PERSON TO OUR COLLECTION, USE AND DISCLOSURE OF SUCH INDIVIDUAL’S INFORMATIONIN IN ACCORDANCE WITH THE TERMS CONTAINED HEREIN. YOU MAY NOTE THAT THIS PRIVACY POLICY IS BASED ON THE APPLICABLE LAWS OF INDIA AND GOOD DATA PRIVACY PRACTICES ADOPTED BY THE COMPANY IN INDIA AND MAY BE FOUND DEFICIENT WITH RESPECT TO CERTAIN PRIVACY LAWS OF SOME OTHER COUNTRIES. BY VISITING THE PLATFORM, YOU AGREE TO BE BOUND BY THE TERMS AND CONDITIONS OF THIS PRIVACY POLICY. IF YOU DO NOT AGREE WITH THE TERMS CONTAINED HEREIN, PLEASE DO NOT USE OR ACCESS OUR PLATFORM OR AVAIL ANY SERVICES ON THE PLATFORM. BY MERE USE OF THE PLATFORM, YOU EXPRESSLY CONSENT TO OUR USE AND DISCLOSURE OF YOUR PERSONAL INFORMATION IN ACCORDANCE WITH THIS PRIVACY POLICY.
PURPOSE OF THIS PRIVACY POLICY
We respect your need to understand how and why information is being collected, used, disclosed, transferred and stored. Thus, We have developed this policy to familiarize You with Our practices and demonstrate Our commitment to the protection of Your privacy and Your personal information. This Privacy Policy sets out the way in which We process Your information when You visit the Platform or use the Services in accordance with applicable data protection laws. By accessing Our website, application and services, You agree to be bound by the terms of this Policy. It is important that You read this policy together with any other policies We may provide on specific occasions when We are collecting or processing your personal data, so that You are fully aware of how and why We are using your personal data. This policy supplements the other notices and is not intended to override them.
The information contained on this Platform and the personal information collected by using/ login and or accessing this Platform are stored at a secured server. It is stated by the server service provider that they have all the best security practices required for the server. The Platform is owned by Us and is located in India. Hence, We are bound by duty to abide by the laws, including but not limited to, regulations, rules, circulars and notifications governing privacy in India.
SCOPE OF THIS PRIVACY POLICY
We provide this Privacy Policy to inform You of Our policies and procedures regarding collection, storage, and processing and sharing of personal data that We receive from Users of the Platform or those which are stored or accessed by Us at the time of availing the Services on the Platform.
With regard to this Privacy Policy, the terms “using” and “processing” information include, without limitation; the use of cookies; and the collection, storage, transfer, evaluation, deletion, disclosure, management, handling, modifying and use of personal data.
This Privacy Policy applies only to personal data that You provide Us via the Platform. We reserve the right to update this Privacy Policy from time to time to reflect any changes to Our Services through the Platform. We will do this by amending the Privacy Policy on the Platform. The changes will take effect automatically, as soon as they are posted on the Platform.
This Privacy Policy is applicable to all Users of this Platform. By using the Services through the Platform, registering with Us or by otherwise giving Us Your information, You will be deemed to have read, understood and agreed to the practices and policies outlined in this Privacy Policy and agree to be bound by the terms hereof. You hereby consent to Us collecting, using and sharing and disclosing Your information as described in this Privacy Policy. We reserve the right to change, modify, add or delete portions of the terms of this Privacy Policy, at Our sole discretion, at any time. If You do not agree with this Privacy Policy at any time, do not use any of the services, use or access the Platform or give Us any of Your information. Any User that does not agree with any provisions of the Privacy Policy has the option to discontinue the availing the Services provided by Us and the use of the Platform immediately.
This Privacy Policy does not apply to any third-party website(s) and mobile app(s). You are requested to take note that information and privacy practices of Our business partners, advertisers, sponsors or other sites to which We may provide hyperlink(s), may be different from this policy, Hence, it is recommended that You review the Privacy Policy of any such third parties before You interact with such interfaces.
COLLECTION AND PROCESSING OF PERSONAL DATA
We may collect and process your personal data for, including without limitation, the following purposes:
Providing Our Services: We might process your personal data including your Medical and Health Reports to provide Services so as to facilitate the Users to avail various services from third party service providers of the Company, including, inter alia, the Third Party Sellers, Partner Diagnostic Labs, Partner Doctors, etc. For example, personal data is processed in order to set up your account/user profile/assessment page on the Platform, allow You to place orders for the purchase/avail the Third Party Products and Services, allow You to schedule/book appointments or consultation sessions with the Partner Doctors, etc. We process the following personal data: (i) name; (ii) phone number; (iii) home address; (iv) IP address; (v) location; (vi) your medical and health data; (vii) particulars about your account/ user profile/ assessment page on the Platform.
Customer service: We need to process personal data for this purpose because it enables Us to adequately respond to Users’ questions/ concerns, to verify the correctness of various requests placed by the User on the Platform (For example scheduling of appointment with the Partner Doctor, placing of order for the purchase of Third Party Products and Services, etc.) and to ensure the quality of the Services availed by a User. Further, we shall manage your Medical and Health Records and store it on Our cloud platform for easy access by the Partner Doctors, Patient Care Givers and any other person authorized by You. Additionally, We may use your genetic sample to identify any abnormal genomic changes and design a specific treatment which is customized/advised particularly for your genomic variants.
Marketing (Direct): We process Users’ data for (direct) marketing purposes. This means that We can contact customers to draw attention to Our services. For this purpose, We process the following personal data: (i) website behaviour; (ii) IP address;(iii) email address; (iv) postal address; (v) phone number (vi) online identifiers; (viii) location; and (ix) and account/user profile information.
Commercial Use: All the information provided to Us by a User, including personal information or any sensitive personal data or information, is provided voluntarily. You understand that We may use certain information provided by You, which may include your personal information or sensitive personal data or information for (i) the purpose of providing the Services offered through the Platform to You; (ii) commercial purposes and in an aggregated and anonymized form for research, statistical analysis and/or business intelligence purposes; (iii) sale or transfer of such research, statistical or intelligence data in an aggregated or non-personally identifiable form to third parties and affiliates; (iv) communication purposes to enhance your experience for Services provided on the Platform and obtaining feedback in relation to the Services; (v) customer support related issues; and (vi) and enabling you to complete any transaction through the Platform.
In addition to the above, We may also use Your personal data for several reasons, including but not limited to; (i) keep You informed of the transaction status; (ii) send You verification messages or confirmations via SMS or WhatsApp or any other messaging services in relation to provisions of Services such as scheduling of appointment with the Partner Doctor, placing of order for the purchase of Third Party Products and Services etc. and send You any send reminders, updates or changes in relation to the same; (iii) allow Our customer service to contact You, if necessary; (iv) customize the content of Our website and mobile app; (v) request You for reviews of the Services; (vi) validate/authenticate Your account/user profile and to prevent any misuse or abuse of the same; (vii) contact You on Your birthday/anniversary to inform You of any special offers; (viii) send You important notices and communications regarding Our services availed or changes to the terms and conditions and/or policies; (ix) to administer Our business and Platform; (xii) to send You marketing related communications; (x) to deal with enquiries and complaints raised by You and to troubleshoot problems; (xi) ensure compliance with all applicable laws and to ensure safety of the Platform and all Users; (xii) to obtain your Know Your Customer (KYC) details; and/or (xii) to prevent fraud, errors and/or any illegal activity on the Platform.
DISCLOSURE OF DATA
It may be necessary for Us to disclose Your personal data whether by law, legal process and/or by request from public and/or governmental authorities within or outside of your country of residence. We may also disclose Your personal information if We determine that disclosure is necessary or appropriate for the purposes of law enforcement, national security or to prevent or stop any activity We may consider to be, or to pose a risk of being, illegal, unethical or legally actionable.
Some sections on the Platform are freely accessible by all Users and visitors and require no prior registration. Further, certain sections on the Platform are accessible by Users only after entering their details, username and password. Therefore, We request You to use a safe and secure server to access the Platform to ensure the safety of Your username, password and other information. We do not guarantee the security and/or privacy of any information, which may be available to all Users and visitors of the Platform publicly. Further, the Platform may contain links to other websites. Please note that We do not endorse any links or websites and are not responsible for the privacy practices of such third-party websites.
We automatically receive the URL of the site from which anyone visits. We also receive the Internet Protocol (IP) address of each User’s computer/device (or the proxy server a User used to access the World Wide Web), device IDs or other unique identifiers, User’s computer/device operating system and type of web browser the User is using, email patterns, as well as the name of User’s ISP. This information is used to analyze overall trends to help Us improve Our Services. The linkage between User’s IP address and User’s personally identifiable information is not shared with or disclosed to third parties. Notwithstanding the above, We may share and/or disclose some of the aggregate findings (not the specific data) in anonymized form (i.e., non-personally identifiable) with advertisers, sponsors, investors, strategic partners, and others in order to help grow Our business.
Note that We maintain a strict no-spam policy and do not rent, sell, disclose or share personal information belonging to You with other people or non-affiliated companies without Your consent, except to provide Services which You have requested/placed ordered for or otherwise as specifically provided for in this Policy.
You agree that in addition to as may be provided in this Policy and Terms of Use, We may also disclose Your personal information to third-parties under the following circumstances and You provide Your express consent to the same:
Third party service providers: We engage, retain or might, as per requirement and business needs of the Company, employ, engage, contract with third party service providers to work with Us, under agreements containing confidentiality obligations and in accordance with law, in relation to the Services provided by Us on the Platform. These third party service providers may use Your personal information in assisting Us to communicate with You about Our offers, scheduling of appointments with Partner Doctors, availing the Diagnostic Facility from Partner Diagnostic Labs, purchasing and/or availing the Third Party Products and Services from Third Party Suppliers, feedback of Services, assisting in payment facilities, verification of payment information to process payment, providing customer support relating to the Services, obtaining your KYC etc. We may employ third party companies and/or individuals to help improve or facilitate and to provide the Service on Our behalf, to perform platform-related services, including but not limited to: payment processing, maintenance services, fraud detection services, database management, web analytics, monitoring, evaluation services etc.. In this event, Your information may be shared with such third-party companies and/or individuals;
Compliance with laws and protection of Users: We may release your personal information when the same is required in order to comply with the law, in response to court orders, court summons, judgments, decrees, injunctions, arbitral awards, administrative orders, governmental investigation or orders of any government authority or any other legal process, to establish/exercise Our legal rights or defend against legal claims or in the event We reasonably believe that doing so is legally required or is in your interest to protect Your property or other legal rights or property or rights of others. We may also share your personal information in order to enforce and fully comply with Our terms of service and other Company policies;
Business transfer and mergers: We may transfer Your personal information if the Company is acquired by or merged with another Company, to the extent permitted by applicable law and/or required under the scheme/arrangement of merger, etc. In such an event We will notify You before Your personal information is transferred/shared with the other entity and hence becomes subject to a different Privacy Policy;
Contracting parties: We transfer/share Your information with Our third-party contractors to facilitate the availing of Services by You or payment gateways etc. to You in order to consummate the transaction.
With Your consent: In addition to the aforementioned circumstances, We may share Your personal information with third parties with Your prior consent and/or at Your request.
COLLECTION AND USE OF NON-PERSONAL DATA
Non-personal data is data that can never be used to identify an individual. We may collect information regarding customer activities on Our Platform. This aggregated information shall be used by Us in research, analysis, to improve and monitor Our Services. Such non-personal data may be shared in aggregated, non-personal form with third party to enhance customer experience, offerings or services.
COOKIES
The Platform uses cookies, and while using the Platform You will be prompted to accept all cookies. We may place text files in the browser files of Your computer system. A cookie itself does not contain personal information and it will only enable Us to relate Your use of the Platform and Your behaviour on the Platform to information that You have specifically and knowingly provided. The only personal information that a cookie can contain is the information You supply to the cookie. A cookie can’t read data off Your hard disk or read cookie files created by other websites.
We may place both permanent and temporary cookies. A permanent cookie will remain on your web browser until its expiry date, unless deleted prior to such expiry date. However, most cookies are “session cookies” meaning that they automatically get deleted from your computer system at the end of the session. You can refuse cookies by turning them off in Your browser or alternatively You can also set your browser to warn You before accepting any cookies. Therefore, You are always free to decline Our cookies if Your browser permits, however We use certain cookies to authenticate Users on each page after the User logs on to the Platform or accesses any Services. If you, as a casual visitor, have inadvertently browsed any other page of this Website prior to reading this Privacy Policy, and You do not agree with the manner in which such information is obtained, collected, processed, stored, used, disclosed or retained, merely quitting this browser application should ordinarily clear all temporary cookies installed by Us. All visitors, however, are encouraged to use the “clear cookies” functionality of their browsers to ensure such clearing / deletion, as We cannot guarantee, predict or provide for the behavior of the equipment of all the visitors of the Platform. Note that You are not a casual visitor if You have willingly submitted any personal data or information to Us through any means, including email, post or through the registration process on the Platform. All such visitors will be deemed to be, and will be treated as Users for the purposes of this Privacy Policy, and in which case, this Privacy Policy applies in its entirety to such persons.
The data that cookies collect will be used to process and/or analyse information by third parties to help improve or facilitate Our services, to provide Service on Our behalf, to Platform-related services including but not limited to maintenance services; fraud detection services; database management; web analytics; monitoring; and evaluation services. If You have any questions about Our cookie usage, please contact Us at the contact details/information mentioned below.
YOUR RIGHTS AND HOW TO EXERCISE THEM
We respect the exercise of the rights You have in relation to the personal data We process or use. You can request access to or a copy of your personal data collected and processed by Us. You may also request to withdraw Your consent provided hereunder at any point in time, rectification and removal of personal data or the restriction of the processing of Your personal data. Users have the right to unilaterally change their e-mail and contact preferences at any time by logging into their account/user profile on the Platform and changing the account/user profile settings. You also have the right to data portability. If You have an objection to use of Your data under this policy, please write to Our privacy team at info@4basecare.com . To prevent misuse, We will ask You to identify yourself. Please note that Your request for withdrawal of consent, cancellation of account, removal of data or restriction of the processing data may result in the Company being unable to provide You the Services or to terminate any existing relationship the Company may have with You.
NOTE FOR ALL USERS
We do not control or endorse the content, messages or information found in any Services and, therefore, We specifically disclaim any liability with regard to the Services and any actions resulting from Your participation in any Services, and You agree that you waive any claims against Us relating to same, and to the extent such waiver may be ineffective, you agree to release any claims against Us relating to the same.
You are responsible for maintaining the accuracy, truthfulness, correctness and completeness of the information You submit or provide to Us, on the Platform; and shall hold harmless and indemnify Platform from and against all claims arising out of or in relation to the wrongful information posted, provided by You to Us, on the Platform.
If Your personal information changes, You may correct, delete inaccuracies, or amend information by making the change on information page of Platform or by contacting Us on Our contact information as detailed below. There may be circumstances where We will not correct, delete or update Your personal data, including; (i) where the personal data is opinion data that is kept solely for evaluative purpose; and (ii) the personal data is in documents related to a prosecution if all proceedings relating to the prosecution have not been completed. If you wish to cancel your account or request that We no longer use your information to provide you Services, contact Us on Our contact information as detailed below.
SECURITY
We understand the serious implications of data security and take extensive measures to ensure Your data and information is secured. We take extensive technical, and legal measures to safeguard Your personal data. The Platform uses a reliable SSL certificate to ensure Your personal data is not misused in any manner whatsoever. We use SSL encryption when transmitting certain kinds of information, such as financial services information or payment information. An icon resembling a padlock is displayed on the bottom of most browser windows during SSL transactions that involve debit/credit cards and other forms of payment. In case We ask You for Your debit/credit card number for payment or for verification purposes, the same will be SSL encrypted. The information You provide will be stored securely on Our servers. Once You choose to store or enter Your debit/credit card number, it will not be displayed back to You in its entirety when You retrieve or edit it in the future. Instead of the entire number, You will only see asterisks and either the first four digits or the last four digits of your debit/credit card number.
We also work with third party service providers/experts/trainers/professional who provide services on Our behalf or to Us. We enter into agreements with such third-party service providers, experts, trainers, professional to ensure complete security and safety of the User information. Such third-party service providers do not have any independent right to the information provided by Us to them.
Our employees and data processors, who have access to, and are associated with the processing of sensitive personal data or information, are obliged to respect the confidentiality of every User’s personal information or sensitive personal data and information. We have put in place procedures and technologies as per good industry practices and in accordance with the applicable laws, to maintain security of all personal data from the point of collection to the point of destruction. Any third-party data processor to which We transfer Personal Data shall have to agree to comply with those procedures and policies, or put in place adequate measures on their own.
No administrator of the Platform will have knowledge of Your password. It is important for You to protect against unauthorized access to Your password, Your computer and Your mobile phone. Ensure You log off from the Platform when finished. We do not undertake any liability for any unauthorized use of Your account and password. If You suspect any unauthorized use of Your account, you must immediately notify Us by sending an email to Us on Our contact information as detailed below. You shall be liable to indemnify Us due to any loss suffered by Us due to such unauthorized use of Your account and password. Note that We make all User information accessible to Our employees, agents or partners and third parties only on a need-to-know basis and bind only its employees to strict confidentiality obligations. However, We are not responsible for the confidentiality, security or distribution of Your personal information by Our partners and third parties outside the scope of Our agreement with such partners and third parties.
In case there is any breach of security, We will make all legally required disclosures concerning the breach and the confidentiality, or integrity of Your unencrypted electronically stored “personal data” to You via email or by posting it on Platform without unreasonable delay, in as far as is consistent with any legitimate needs of law enforcement and any measures required to determine the scope of the breach and to safeguard the integrity of data.
APPLICABLE LAWS AND REGULATIONS
We ensure that your data and information shall be protected under the provisions of General Data Protection Regulation (“GDPR”), Information Technology Act, 2000 and Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 along with any amendments made to these acts, rules and regulations.
RETENTION PERIODS
We shall keep your personal data for the purpose of the processing, until You send Us a mail at optout@4basecare.com, pertaining to not storing such personal data, after the termination of your agreement with the Company. This includes, for example, for the purposes of satisfying any legal, regulatory, accounting, reporting requirements, to carry out legal work, for the establishment or defence of legal claims. We may aggregate and anonymize your personal data (so that it can no longer be associated with you) for research or statistical purposes, in which case We may use this information indefinitely without further notice to you.
DATA PROTECTION
Under certain circumstances, You have rights under GDPR and applicable data protection laws in relation to Your personal data. It is Our policy to respect Your rights and We will act promptly and in accordance with any applicable law, rule or regulation relating to the processing of Your personal data. Details of Your rights are set out below:
- Right to be informed about how personal data is used – You have a right to be informed about how We will use and share Your personal data. This explanation will be provided to You in a concise, transparent, intelligible and easily accessible format and will be written in clear and plain language;
- Right to access personal data – You have a right to obtain confirmation of whether We are processing Your personal data, access to Your personal data and information regarding how Your personal data is being used by Us;
- Right to have inaccurate personal data rectified – You have a right to have any inaccurate or incomplete personal data rectified. If We have disclosed the relevant personal data to any third parties, We will take reasonable steps to inform those third parties of the rectification where possible;
- Right to have personal data erased in certain circumstances – You have a right to request that certain personal data held by Us is erased. This is also known as the ‘right to be forgotten’. This is not a blanket right to require all personal data to be deleted. We will consider each request carefully in accordance with the requirements of any laws relating to the processing of your personal data;
- Right to restrict processing of personal data in certain circumstances – You have a right to block the processing of your personal data in certain circumstances. This right arises if You are disputing the accuracy of personal data, if You have raised an objection to processing, if processing of personal data is unlawful and You oppose erasure and request restriction instead or if the personal data is no longer required by Us but You require the personal data to be retained to establish, exercise or defend a legal claim;
- Right to data portability – Under certain circumstances, You have the right to request to receive a copy of Your personal data in a commonly used electronic format. This right only applies to personal data that You have provided to Us (for example by completing a form or providing information through the Platform). Information about You which has been gathered by monitoring Your behaviour will also be subject to the right to data portability. The right to data portability only applies if the processing is based on Your consent or if the personal data must be processed for the performance of a contract and the processing is carried out by automated means (i.e. electronically);
- Right to object to processing of personal data in certain circumstances (including where personal data is used for marketing purposes) – You have a right to object to processing being carried out by Us if (a) We are processing personal data based on legitimate interests or for the performance of a task in the public interest (including profiling), (b) if We are using personal data for direct marketing purposes, or (c) if information is being processed for scientific or historical research or statistical purposes. You will be informed that You have a right to object at the point of data collection and the right to object will be explicitly brought to Your attention and be presented clearly and separately from any other information; and
- Right not to be subject to automated decisions where the decision produces a legal effect or a similarly significant effect – You have a right not to be subject to a decision which is based on automated processing where the decision will produce a legal effect or a similarly significant effect on You.
You may exercise any of the above-mentioned rights by sending a request to Us on Our contact information as detailed below. You will not have to pay a fee to access Your personal data (or to exercise any of the other rights). However, to the extent permitted under the applicable data protection laws, We may refuse to comply with Your request if Your request is clearly unfounded, repetitive or excessive.
We may need to request specific information from You to help Us confirm Your identity and ensure Your right to access Your personal data (or to exercise any of Your other rights). This is a security measure to ensure that personal data is not disclosed to any person who has no right to receive it. We may also contact You to ask You for further information in relation to Your request to speed up Our response.
We try to respond to all legitimate requests within one month. Occasionally it may take Us longer than one calendar month if Your request is particularly complex or You have made a number of requests. In this case, We will notify You and keep You updated.
CONTACT INFORMATION
If you have any question about the processing of your personal data or you have any other queries, you can reach out to us. Our team will be happy to assist you. Our contact information is as follow:
Address:
Vaishnavi Signature, 1st Floor,
No. 78/9, Outer Ring Road, Bellandur Village
Varthur Hobli Bengaluru East Ground Floor,
Bengaluru, Karnataka – 560103
Email: info@4basecare.com
Customer Support: +918105171596
GRIEVANCE OFFICER
In accordance with the provisions of the Information Technology Act, 2000, and rules made thereunder, the name and contact details of the grievance officer are provided below:
Attn: Kshitij Rishi
Address:
Vaishnavi Signature, 1st Floor,
No. 78/9, Outer Ring Road, Bellandur Village
Varthur Hobli Bengaluru East Ground Floor,
Bengaluru, Karnataka – 560103
Email: info@4basecare.com