novoemr.com

Privacy Policy – NOVO EMR

Effective Date: 30 March 2026

NOVO EMR (“we”, “our”, “us”) is committed to protecting the privacy and security of patient and healthcare data. This Privacy Policy explains how we collect, use, store, and protect information when you use our platform.

1. Information We Collect

We may collect the following types of data:

  • Personal Information: Name, phone number, email address, age, gender

  • Health Information: Medical history, prescriptions, reports, diagnosis details

  • Doctor Information: Name, specialization, registration details

  • Device Information: IP address, browser type, device type

  • Usage Data: Interaction with the platform

2. Purpose of Data Collection

We collect and use data to:

  • Provide electronic medical record (EMR) services

  • Enable doctors to manage patient records

  • Improve platform performance and user experience

  • Maintain records for clinical and administrative purposes

  • Prepare for future integration with ABDM (Ayushman Bharat Digital Mission)

3. Data Security

We implement reasonable security measures including:

  • Encryption of data during transmission (SSL)

  • Secure cloud storage infrastructure

  • Restricted access to authorized personnel only

  • Regular monitoring and system updates

4. Data Sharing

We do not sell or rent user data.

We may share data only in the following cases:

  • With authorized healthcare providers for treatment purposes

  • With service providers (hosting, SMS, etc.) under strict confidentiality

  • When required by law or regulatory authorities

5. ABDM / ABHA Integration (Future Readiness)

NOVO EMR is in the process of preparing for integration with the Ayushman Bharat Digital Mission (ABDM).

Once integrated:

  • Patient data will be shared only with explicit consent

  • Users will have full control over their health data

  • Data access will be time-bound and purpose-specific

6. User Rights

Users have the right to:

  • Access their personal data

  • Request correction of inaccurate data

  • Request deletion of data (subject to legal requirements)

  • Withdraw consent where applicable

Requests can be made via contact details below.

7. Data Retention

We retain data only as long as necessary for operational, medical, or legal purposes.

8. Third-Party Services

We may use third-party services for hosting, communication, and analytics. These providers are obligated to maintain data confidentiality.

9. Changes to Policy

We may update this Privacy Policy from time to time. Changes will be updated on this page.