Privacy
Policy
We keep data minimal, use it only for appointments & enquiries, and protect it responsibly. We do not sell your data — and we do not sell medicines online.
Key Commitments
We collect only what’s needed to respond to you.
We do not sell personal data to anyone.
We do not sell medicines online via this website.
Access is limited to authorized staff on a need-to-know basis.
FirstLine Clinics & Pharmacy
Privacy Policy
Overview
Practical, DPDP-aligned, clinic-safe privacy practices.
What this policy covers
This Privacy Policy explains how FirstLine Clinics & Pharmacy (“we”, “us”, “our”) collects, uses, shares, and protects information when you use our website or contact us.
This website is primarily for information, appointment requests, and enquiries. We do not sell medicines online through this website.
Effective date
Effective Date: March 1, 2026. We may update this policy and will revise the Effective Date when we do.
Information We Collect
Practical, DPDP-aligned, clinic-safe privacy practices.
Information you provide directly
When you submit a form (appointment request / enquiry / callback), we may collect:
- Name, phone number, email address (if provided)
- Preferred appointment time/date (if provided)
- Basic reason for visit / enquiry details (only what you choose to share)
- Any message you send to us through the website contact form
Health or medical information via the website
We do not ask you to submit detailed medical records through the website. If you choose to share health-related information in your message, we will treat it with heightened care and restrict access on a need-to-know basis.
For sensitive consultations, we may ask you to share details only during an in-person visit or through an officially communicated channel.
Information collected automatically
Like most websites, we may collect limited technical information automatically:
- Device and browser type, operating system
- Approximate location (city/region level) derived from IP address
- Pages visited, time spent, referral source (basic analytics)
- Log data for security (e.g., suspicious traffic, error logs)
Cookies and similar technologies
We may use cookies or similar technologies for essential site functions, basic performance measurement, and security. You can usually control cookies through your browser settings.
How We Use Your Information
Practical, DPDP-aligned, clinic-safe privacy practices.
Primary purposes
We use your information to:
- Respond to enquiries and callback requests
- Schedule, confirm, reschedule, or cancel appointments
- Provide operational updates (timings, closures, delays, location assistance)
- Improve website performance, usability, and security
- Prevent fraud, abuse, or security incidents
No online medicine sales
We do not use your information to sell medicines online, process online medicine orders, or arrange medicine delivery through this website.
Marketing communications (if any)
If we ever send you clinic updates or service information, we will do so only where lawful and appropriate, and you can opt out anytime by contacting us.
Legal Basis (India DPDP Alignment)
Practical, DPDP-aligned, clinic-safe privacy practices.
Consent and legitimate uses
Where applicable, we process personal information based on your consent (for example, when you submit an appointment request form).
We may also process information for legitimate purposes such as website security, preventing abuse, and responding to your request.
Sensitive information
If any health-related information is shared by you voluntarily through the website, we restrict access and use it only to respond appropriately to your enquiry or appointment request.
Data Retention
Practical, DPDP-aligned, clinic-safe privacy practices.
How long we keep data
We retain personal information only as long as necessary to fulfill the purpose it was collected for, including appointment coordination, responding to enquiries, security, and legal compliance.
- Appointment/enquiry form data: retained for a reasonable operational period to manage follow-ups and dispute resolution
- Security logs: retained for a limited period for threat detection and system integrity
- If you become a patient, clinical records (if created) are maintained as per applicable medical and legal requirements (handled outside the website context)
Deletion
Once the retention period ends, we delete or anonymize information, unless retention is required by law or for legitimate security purposes.
Security Measures
Practical, DPDP-aligned, clinic-safe privacy practices.
How we protect data
We implement reasonable security safeguards appropriate to a clinic environment, which may include:
- HTTPS encryption for website traffic (where configured)
- Access controls and role-based permissions
- Secure hosting and patching best practices
- Monitoring for abuse and suspicious activity
- Limited staff access to patient-related enquiries
No system is 100% secure
While we take security seriously, no online system can be guaranteed fully secure. You should avoid sharing extremely sensitive medical details through general website forms.
Your Choices & Rights
Practical, DPDP-aligned, clinic-safe privacy practices.
Access, correction, and deletion requests
You may request access to or correction of the personal information you submitted via the website. You may also request deletion, subject to legal and operational limitations.
Opt-out
If you do not want to receive non-essential communications, you can opt out by contacting us. Appointment-related messages may still be sent when needed for service delivery.
How to exercise your rights
Email us at hello@firstlineclinics.com with the subject “Privacy Request”. Please include your name and phone number used on the form so we can locate your submission.
Children’s Privacy
Practical, DPDP-aligned, clinic-safe privacy practices.
Minors
This website is not intended for children to use without supervision. If a parent/guardian submits an appointment request for a minor, the parent/guardian should provide the information.
Third-Party Links
Practical, DPDP-aligned, clinic-safe privacy practices.
External websites
Our website may link to third-party sites (for example, Google Maps). We are not responsible for their privacy practices. Please review their privacy policies separately.
Security Incident / Data Breach Handling
Practical, DPDP-aligned, clinic-safe privacy practices.
If something goes wrong
If we become aware of a security incident involving your personal information, we will take reasonable steps to investigate, contain, and remediate the issue.
Where required, we will notify affected individuals and/or relevant authorities in line with applicable laws and reasonable timelines.
Contact & Grievance
Practical, DPDP-aligned, clinic-safe privacy practices.
Contact us
Email: hello@firstlineclinics.com
Phone: +91 9960052422
Jurisdiction: Pune, Maharashtra, India
Grievance handling
If you have concerns about privacy, please email us. We will make reasonable efforts to resolve complaints in a timely manner.
Need access/correction/deletion? Email us with subject “Privacy Request” and your name + phone used on the form.
