Last updated: January 15, 2025 · Effective date: January 15, 2025
1. Overview
Ginger Healthcare ("we," "us," or "our") is committed to protecting the privacy and security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website (ginger.healthcare), mobile applications, and services.
By using our services, you consent to the data practices described in this policy. If you do not agree with the terms of this Privacy Policy, please do not access our website or use our services.
Registered Office: 108, Himalaya Palace, 65 Vijay Block, Laxmi Nagar, New Delhi 110092, India.
2. Information We Collect
2.1 Information You Provide
- Personal identifiers: Name, email address, phone number, country, age, nationality
- Medical information: Medical reports, diagnosis, treatment history, prescriptions, lab results, imaging scans, and doctor's notes
- Travel information: Passport details, visa information, travel dates, accommodation preferences
- Financial information: Payment details (processed securely through third-party payment processors — we do not store full card numbers)
- Communication records: Emails, WhatsApp messages, phone call records, and consultation notes
2.2 Information Collected Automatically
- Device information: IP address, browser type, operating system, device identifiers
- Usage data: Pages visited, time spent, referring URLs, click patterns
- Location data: Approximate location derived from IP address
- Cookies and tracking technologies: As described in Section 6 below
3. How We Use Your Information
We use the information we collect for the following purposes:
- Provide our services: Coordinate your medical treatment, connect you with hospitals and doctors, facilitate visa and travel arrangements
- Medical coordination: Share your medical reports with partner hospitals to obtain treatment plans and cost estimates
- Communication: Respond to your enquiries, send appointment confirmations, treatment updates, and follow-up reminders
- Improve our services: Analyse usage patterns, conduct satisfaction surveys, and enhance our website and processes
- Legal compliance: Comply with applicable laws, regulations, and legal processes
- Marketing: Send newsletters and health-related content (only with your explicit consent; you can opt out at any time)
4. Sharing & Disclosure
We do not sell your personal information. We may share your information with:
- Partner hospitals and doctors: Your medical reports and personal details necessary for obtaining treatment opinions and cost quotes. This is shared only with hospitals you have expressed interest in or that we recommend for your specific condition.
- Service providers: Trusted third parties who assist us in operating our website, conducting business, or servicing you (e.g., cloud hosting, payment processors, email services). These parties are contractually obligated to keep your information confidential.
- Travel partners: Visa agencies, airlines, and accommodation providers as necessary to arrange your travel (only with your consent).
- Legal requirements: When required by law, court order, or governmental regulation.
We will never share your medical information with insurance companies, employers, or any third party not directly involved in your treatment coordination without your explicit written consent.
5. Medical Data — Special Provisions
We recognise that medical information is among the most sensitive categories of personal data. We apply additional safeguards to your health information:
- Medical reports are shared with hospitals only after you submit an enquiry or give explicit consent
- Medical data is transmitted using encrypted channels (TLS 1.2 or higher)
- Access to medical files is restricted to authorised medical coordinators on a need-to-know basis
- Medical records are not used for marketing purposes under any circumstances
- You may request deletion of your medical records at any time (subject to legal retention requirements)
6. Cookies & Tracking
Our website uses cookies and similar technologies to enhance your experience:
- Essential cookies: Required for the website to function (session management, security). Cannot be disabled.
- Analytics cookies: Help us understand how visitors interact with our website (e.g., Google Analytics). Can be opted out.
- Marketing cookies: Used to deliver relevant advertisements (e.g., Facebook Pixel, Google Ads). Only activated with your consent.
You can manage cookie preferences through your browser settings or our cookie consent banner. Disabling certain cookies may affect website functionality.
7. Data Security
We implement industry-standard security measures to protect your information:
- SSL/TLS encryption for all data transmission
- Encrypted storage for medical records and sensitive personal data
- Access controls and role-based permissions for staff
- Regular security audits and vulnerability assessments
- Secure, access-controlled physical premises
While we strive to protect your personal information, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security but are committed to implementing best practices.
8. Data Retention
We retain your personal information for as long as necessary to fulfil the purposes outlined in this policy:
- Active patient records: Retained for the duration of your treatment and 5 years following your last interaction with us
- Medical records: Retained for 7 years as required by applicable healthcare regulations
- Marketing data: Retained until you unsubscribe or withdraw consent
- Website analytics: Retained for 26 months
After the retention period, data is securely deleted or anonymised.
9. Your Rights
Depending on your jurisdiction, you may have the following rights:
- Access: Request a copy of the personal data we hold about you
- Correction: Request correction of inaccurate or incomplete data
- Deletion: Request deletion of your personal data (subject to legal obligations)
- Portability: Request your data in a structured, machine-readable format
- Restriction: Request limitation of processing in certain circumstances
- Objection: Object to processing based on legitimate interests or for direct marketing
- Withdraw consent: Withdraw previously given consent at any time
To exercise any of these rights, please contact us at [email protected]. We will respond within 30 days.
10. International Data Transfers
As a medical tourism facilitator, your data may be transferred to and processed in countries outside your home country, including India, Turkey, Thailand, UAE, and Singapore. By using our services, you acknowledge and consent to such transfers. We ensure that adequate safeguards are in place through contractual agreements with our partners to protect your data regardless of where it is processed.
11. Children's Privacy
Our services may be used to coordinate medical treatment for minors. In such cases, all data collection and processing is done with the explicit consent of a parent or legal guardian. We do not knowingly collect personal information from children under 16 without parental consent.
12. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy on our website with a revised "Last updated" date. We encourage you to review this page periodically. Continued use of our services after changes constitutes acceptance of the updated policy.
If you have questions or concerns about this Privacy Policy or our data practices, please contact us:
Data Protection Contact
Ginger Healthcare
108, Himalaya Palace, 65 Vijay Block, Laxmi Nagar,
New Delhi 110092, India
Email: [email protected]