Legal
Privacy Policy
Last updated · May 15, 2026
Your health data is sensitive. This Policy explains what we collect, why, how we protect it, and what choices you have. We follow Indian data protection law (including the DPDP Act, 2023) and reasonable global best practices.
1. What we collect
Contact details: full name, email address, phone number, city.
Health context you share during booking or during the call: age range, primary concern, cycle history, lab markers, lifestyle and stress information.
Marketing context: UTM parameters from the ad you came through (e.g. utm_source, utm_campaign, fbclid), used only to attribute and improve our marketing.
Payment metadata: order ID, payment ID and amount. Card numbers are processed by Razorpay and never stored by us.
2. Why we collect it
To deliver the service you booked (the assessment call and any subsequent programme).
To send you confirmation, prep notes, calendar invites, and follow-up communications relevant to your booking.
To run our automations (e.g. Pabbly) so legitimate communications reach you on time.
To measure ad performance in aggregate and improve targeting.
To meet legal, tax and regulatory obligations.
3. How we store it
We store your data on access-controlled systems. Health information is treated with sensitivity and limited to the clinical team working on your case. Payments are tokenised by Razorpay; we never have access to your full card details.
4. Who we share it with
Razorpay, for payment processing.
Pabbly Connect, for transactional and follow-up automations.
Our calendar/scheduling provider (e.g. Calendly), to confirm and remind you of your call.
We never sell your data. We never share your health information with advertisers.
5. Cookies and tracking
We use minimal cookies and browser storage to remember your form state across pages, to attribute the ad that brought you, and to keep the site secure. We do not run third-party advertising trackers on protected pages (checkout, book-a-call, thank-you).
6. Your rights
You have the right to access, correct or delete your personal data. To exercise any of these rights, email hello@akhila.example.com from the address you used to book. We'll respond within 14 working days.
7. Retention
We retain your data for as long as we have an active clinical relationship and for a reasonable period after, to meet legal and clinical-recordkeeping obligations. You can request earlier deletion at any time, subject to those obligations.
8. Children
This service is intended for adults aged 18 and over. We do not knowingly collect information from anyone under 18.
9. Security
We use HTTPS, signed payment verification, and limited internal access controls. No system is perfectly secure. Please use a strong, unique password if/when you create an account, and notify us immediately of any suspected unauthorised access.
10. Updates
We may update this Policy. The "Last updated" date at the top reflects the latest revision.
11. Contact
Privacy questions: hello@akhila.example.com.