Privacy Policy

23Bmi is an internet and mobile application based platform (hereinafter referred to as “Website”) operated by 23BMI Life Sciences Private Limited (hereinafter to be referred as “Company” or “we” or “our” or “us”), a company duly incorporated under the provisions of the Companies Act, 2013.

By accessing the website, or by seeking to avail of certain Products and Services (as defined in the Terms and Conditions), or by otherwise providing or accessing any information through the Website, you are required to agree to our Terms and Conditions (“Terms”) and acknowledge that your information will be stored, used and accessed in accordance with this Privacy Policy. For the purposes of this privacy policy, unless defined hereunder, all capitalized terms shall have the meaning ascribed to them under the Terms of the Use.

This Privacy Policy (“Privacy Policy”) is published in compliance with inter alia:

(a) Section 43A of the Information Technology Act, 2000 (“IT Act”);

(b) Regulation 4 of the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Information) Rules, 2011 (“SPDI Rules”); and

(c) Regulation 3(1) of the Information Technology (Intermediaries Guidelines) Rules, 2011 (“Intermediaries Guidelines”).

Our Privacy Policy explains: (a) what information we receive from you; (b) how we collect and use that information; (c) how you can provide information selectively, access and update the information; and (d) how we process, share and protect your information.

This Privacy policy is applicable to all Users accessing or using our Website.

1.GENERAL

BY ACCESSING OR USING OUR WEBSITE OR BY OTHERWISE GIVING US YOUR INFORMATION, YOU CONFIRM THAT YOU HAVE THE CAPACITY TO ENTER INTO A LEGALLY BINDING CONTRACT UNDER INDIAN LAW, IN PARTICULAR, THE INDIAN CONTRACT ACT, 1872, AND HAVE READ, UNDERSTOOD AND AGREED TO THE PRACTICES AND POLICIES OUTLINED IN THIS PRIVACY POLICY AND AGREE TO BE BOUND BY THE PRIVACY POLICY.

YOU HEREBY CONSENT TO OUR COLLECTION, USE, SHARING, AND DISCLOSURE OF YOUR INFORMATION AS DESCRIBED IN THIS PRIVACY POLICY. WE RESERVE THE RIGHT TO CHANGE, MODIFY, ADD OR DELETE PORTIONS OF THE TERMS OF THIS PRIVACY POLICY, AT OUR SOLE DISCRETION, AT ANY TIME, AND ANY CONTINUED USE OF THE WEBSITE BY YOUR USE OF THE WEBSITE, FOLLOWING ANY SUCH AMENDMENTS TO THE PRIVACY POLICY, WILL BE DEEMED AS AN IMPLICIT ACCEPTANCE OF THE PRIVACY POLICY IN ITS AMENDED FORM. IF YOU ARE ACCESSING OR USING THE WEBSITE FROM AN OVERSEAS LOCATION, YOU DO SO AT YOUR OWN RISK, AND SHALL BE SOLELY LIABLE FOR COMPLIANCE WITH ANY APPLICABLE LOCAL LAWS.

IF YOU DO NOT AGREE WITH THIS PRIVACY POLICY AT ANY TIME, IN PART OR AS A WHOLE, WRITE TO US ON info@23bmi.com, DO NOT USE THE WEBSITE OR SERVICES PROVIDED ON THE WEBSITE, OR PROVIDE US WITH ANY OF YOUR INFORMATION. 

2.INFORMATION COLLECTED AND MEANS OF COLLECTION

We collect the following information about you:

(a) Registration Information: When you register to use our Website, we collect your registration details including phone number, email address and name. We verify your phone number with the help of a one-time password sent to your phone number.

(b) Order Information: We may collect information necessary for us to process your order on the Website including, items you place in the cart, your postal address and specific payment information such as payment transaction details. However, we do not collect any bank account information, debit or credit information or any other payment instrument details. 

(c) Usage Information: We may collect information about how you use our Website, your device and software including usage statistics, traffic data, including source of traffic, your IP address, browser, operating system type, domain names, login status, history of payment methods used, access times, locations, previous consultations, order status, previous orders and transactions including product pricing details, transaction information and payment and browsing history. Your usage of certain third-party services on our Website also requires us to collect such information as is considered necessary for that purpose.

(Registration Information, Order Information and Usage Information to be collectively referred to as “Personal Information”) 

(d) Diagnosis Information: We may collect information about the symptoms you are facing if you the fill questionnaire available on the Website or when you share the information with when you consult with a nutritional professional (“Health Coach”) through the Website. This may include information and sensitive personal data or information relating to your health condition including hair loss, metabolic data, weight, hygiene, lifestyle, etc. Collection of diagnosis information may also include collection of sensitive personal data or information in the nature of physical, physiological health condition and sexual orientation.

(e) Consultation Information: We may further collect information related to the appointments you make on the Website, your health and wellness during your consultation with the health coach. This may include sensitive personal data or information in the nature of medical records and history, in addition to physical, physiological and mental health condition and sexual orientation. 

(f) Prescription and Medication: We store and process the prescription generated by the health coach on the Website and use the same to process your order. We may store such prescription for our records for the duration permitted by applicable law.

(Diagnosis Information, Consultation Information and Prescription and Medication information to be collectively referred to as “SPDI”)

The IT Act and the SPDI Rules regulate the collection, usage, retention and disclosure of personal information, which is defined under the SPDI Rules as any information that relates to a natural person, which, either directly or indirectly, in combination with other information available or likely to be available to a body corporate, is capable of identifying such person. The SPDI Rules further define sensitive personal data or information of a person as personal information about that person relating to:

(a) Passwords;

(b) Financial information such as bank accounts, credit and debit card details or other payment instrument details;

(c) Physical, physiological and mental health condition;

(d) Sexual orientation;

(e) Medical records and history; 

(f) Biometric information;

(g) Any detail relating to the above clauses as provided to the body corporate for providing services; and

(h) Any of the information received under above clauses by body corporate for processing, stored or processed under lawful contract or otherwise.

You provide all information to us voluntarily. Collection, use and disclosure of Personal Information and SPDI require your express consent. You are providing us with your consent to our use, collection and disclosure of the Personal Information and SPDI. You may choose to not provide us with Personal Information and SPDI, but in the event that you do so, we will be unable to provide you access to our Website or purchase Products or provide Services through our Website.

3.USE OF INFORMATION

We use your Information for the following purposes:

(a) To operate and improve the Website in order to foster a positive User experience and to improve our business as a whole;

(b) To process and deliver your order with us; 

(c) To enable your access to our Website to purchase Products and provide you Services;

(d) To enable you to initiate and consultation with the health coach;

(e) Analyzing data, tracking trends, building algorithms, creating databases for rating systems, recommendations engines, etc.;

(f) Research; 

(g) For non-targeting reasons such as frequency capping, compliance, billing, ad reporting or delivery, market research or product development purposes;

(h) To comply with applicable law; 

(i) To conduct audits and quality assessment procedures; 

(j) To analyze the use of our resources, troubleshooting problems and improving our Products and Services, by using the information regarding your mobile device and software. 

(k) Contacting Users, both during and after an order, for updates, resolution of queries, order details, consultations, follow-up consultations or offering new products or services;

(l) To investigate, prevent, or take action regarding illegal activities, suspected fraud, situations involving potential threats to the safety of any person, violations of our Terms, or as otherwise required by law;

(m) To respond to any queries that you may have, and to communicate information to you, including notifications of any promotions or alerts, any changes/updates to the Website, or the introduction of any future fees or charges that we may collect at the time for purchasing Products or provision of our Services to you; or

(n)To contact you, by way of SMS, Whatsapp, email and phone calls, from time to time to record your valuable feedback on our Products and Services, as they currently stand, and/or any potential Products and Services that may be offered in the future.

(Collectively, the above constitute “the Purposes”).

If you wish to opt out of receiving non-essential communications such as promotional and marketing-related information regarding our Products and Services, please email us at the details provided below in the contact section.

4.DISCLOSURE OF INFORMATION

We may disclose your Personal Information and SPDI, as the case may be, to third parties in the manner and for the purposes specified below.

(a) We may disclose your Personal Information and SPDI to Doctors and health experts for diagnostic, or therapeutic purposes or to otherwise track or improve our Products, Services or Business. ;

(b) We may disclose your Personal Information to our logistics partners for processing of orders placed by you on the Website; 

(c) We may disclose your Personal Information and SPDI to pharmacies, wherever applicable, for arranging dispatch of your order;

(d) We may disclose information to our partners, affiliates, investors, stakeholders or potential associates in an anonymized and aggregate manner, so that they too may understand how Users use our Website and enable us to create a better overall experience for you.

(e) We also share aggregated anonymous information about Users with our clients, partners, other Users, and other third parties so that they may be aware of the nature and number of Users, in order for them to be able to serve advertisements and other kinds of marketing information that may be relevant for you on our Website. 

(f) We may disclose and transfer your Personal Information and SPDI to a third party who acquires, or may potentially acquire, our business, whether such acquisition is by way of a merger, consolidation or purchase of all or a substantial portion of our assets or investment in Us;

(g) We may transfer Personal Information and SPDI to a third party, including persons outside India, to improve our Products and Services; and 

(h) We will disclose your Personal Information and SPDI if legally required to do so, pursuant to an order from a governmental entity or in good faith. We will disclose the Information to: (i) conform to legal requirements or comply with legal process; (ii) protect our rights or property or our affiliated companies; (iii) prevent a crime or national security; or (iv) protect personal safety of our Users or the public.

Transfer to third parties and outside India

Subject to applicable law, we may at our sole discretion, transfer Personal Information and SPDI to any other body corporate (as defined under the Information Technology Act, 2000) that ensures at least the same level of data protection as is provided by us under the terms hereof, located in India or any other country.

By using the Website, you accept the terms hereof and hereby consent to the storage and processing of Personal Information and SPDI by third parties and in any of location outside India. The Company will make best efforts to ensure that the third party or the location to which the SPDI is transferred affords same level of data protection as would be afforded under Indian law.

By continuing to use the Website, you provide your consent for transfer, sharing and disclosure of such Personal Information or SPDI by us in accordance with this Privacy Policy.

Any third party to which we transfer or sell our assets, merge or consolidate with, will have the right to continue to use the Personal Information or SPDI provided to us by you, in accordance with the Terms and this Privacy Policy.

5.THIRD-PARTY LINKS

The Website may include hyperlinks to various external websites, and may also include advertisements, and hyperlinks to applications, content or resources (“Third Party Links”). We have no control over such Third Party Links present on the Website, which are provided by persons or companies other than us. You acknowledge and agree that we are not responsible for any collection or disclosure of your information by any external sites, applications, companies or persons thereof. The presence of any Third Party Links on our Website, cannot be construed as a recommendation, endorsement or solicitation for the same, or any other material on or available via such Third Party Links.

You further acknowledge and agree that we are not liable for any loss or damage which may be incurred by you as a result of the collection and/or disclosure of your information via Third Party Links, as a result of any reliance placed by you on the completeness, accuracy or existence of any advertising, products services, or other materials on, or available via such Third Party Links. This will include all transactions, and information transmitted therein, between you and any such third party sites or applications or resources, such transactions are strictly bi-partite. We shall not be liable for any disputes arising from or in connection with such transactions between you and the aforementioned third parties.

Such third party websites, and external applications or resources, accessible via the Third Party Links may have their own privacy policies governing the collection, storage, retention and disclosure of your information that you may be subject to. We recommend that you exercise reasonable diligence, as you would in traditional offline channels and practice judgment and common sense before committing to any transaction or exchange of information, including but not limited to reviewing the third party website or application’s privacy policy.

6.CHANGES TO YOUR INFORMATION

You may review, correct, update, change or delete your Personal Information relating to Registration Information and Order Information on the Website by writing to us at the contact details specified below. You can delete any part of the Personal Information or request us to delete the same, and we will comply with such requests within a reasonable time, unless we are required to keep certain information for legal purposes. You may update your SPDI at any point by writing to us at the details indicated below in the contact section.

Should you choose to delete your Personal Information or SPDI or modify it in a way that is not verifiable by us, or leads to such information being incorrect, we will be unable to provide you with access to our Website or our Services, as described under the Terms, and such a deletion or modification may be regarded as the User seeking to discontinue his or her access to our Website and Services.

We reserve the right to verify and authenticate your identity and your Personal Information in order to ensure accurate delivery of Products and Services. Access to or correction, updating or deletion of your Personal Information or SPDI may be denied or limited by us if it would violate another person’s rights and/or is not otherwise permitted by applicable law.

7.SECURITY AND RETENTION OF INFORMATION

Security of your information

we endeavor to maintain physical, technical and procedural safeguards that are appropriate to protect your Information against loss, misuse, copying, damage or modification and unauthorized access or disclosure. Some of the security measures adopted by us are:

(a) We review our information collection, storage and processing practices, including physical security measures, to guard against unauthorized access to systems; and

(b) We restrict access to Personal Information, to our employees and agents who need to know that information in order to process it for Us, and who are subject to strict contractual confidentiality obligations, and may be disciplined or whose relationship with us may terminate if they fail to meet these obligations.

No employee or administrator of the Company will have knowledge of your password of your account on the Website. It is important for you to protect against unauthorized access to your password and your mobile phone, as detailed in the ‘User Account, Password and Security’ section of the Terms. You must be sure to log off from the Website when you have finished use thereof. We do not undertake any liability for any unauthorized use of your account and password.

If you suspect any unauthorized use of your account, you must immediately notify us by sending an email to the contact details indicated in the contact section. You shall be liable to indemnify us due to any loss suffered by us due to such unauthorized use of your account or password.

Further, we shall not be responsible for any breach of security or for any actions of any third parties or events that are beyond our reasonable control including but not limited to acts of government, computer hacking, unauthorized access to computer data and storage device, computer crashes, breach of security and encryption, poor quality of internet service or telephone service of the User, etc.

Retention of Information

(a) We also have measures in place such that your SPDI which is in our possession or under our control, is destroyed and/or anonymized as soon as it is reasonable to assume that: (i) the Purposes for which your SPDI has been collected have been fulfilled; and (ii) retention is no longer necessary for any other reason. 

(b) We may, however, reserve the right to retain and store your Personal Information for our business purposes, whether such Personal Information has been deleted or not. After a period of time, your data may be anonymized and aggregated and then may be held by us as long as necessary, to enable purchases of Products and provision of Services or for analytics purposes.

If you wish to withdraw your consent for processing your Personal Information and SPDI, cancel your account, or request that we no longer use your Personal Information and SPDI to deliver our Products or provide you Services, please contact us at details indicated in the contact section below. Please note, however, that your withdrawal of consent or cancellation of account may result in us not being able to deliver you Products or provide you with our Services, or terminate any existing relationship that we may have with you.

Please note that uninstalling our mobile application will not result in deletion of your Personal Information or SPDI.

8.COOKIES AND OTHER TRACKING TECHNOLOGIES

We utilize “cookies” and other tracking technologies, having session or local variables. A “cookie” is a small text file that may be used, for example, to collect information about activity on the Website. Some cookies and other technologies may serve to recall information previously indicated by a User. Most browsers/mobile settings allow you to control cookies, including whether or not to accept them and how to remove them. You may set most browsers/mobile application to notify you if you receive a cookie, or you may choose to block cookies with your browser/mobile applications.

Tracking technologies may record information such as internet domain and host names, internet protocol (IP) addresses, browser software and operating system types, stream patterns, and dates and times that our Website are accessed. Our use of cookies and other tracking technologies allows us to improve our Website and your experience.

At all times, you may refuse all cookies on your browser or mobile application by changing your settings to the extent permissible on your device. However, by doing so, you may not be able to use certain features on the Website or take full advantage of all the offerings and interest-based advertising. You can remove cookies by following directions provided in your mobile’s “help” file or the browser. 

9.CHANGES TO THE POLICY

We reserve the right to update, change or modify this Privacy Policy at any time. The Privacy Policy shall come to effect from the date of such update, change or modification. If you continue to access or use the Website even after any such changes have been made, it would be deemed to be your implied consent to the changed Privacy Policy.

10.MISCELLANEOUS

(a) Disclaimer: We cannot ensure that all of your Personal Information and SPDI will never be disclosed in ways not otherwise described in this Privacy Policy. Therefore, although we are committed to protecting your privacy, we do not promise, and you should not expect, that your Information or private communications will always remain private. As a User of the Website, you understand and agree that you assume all responsibility and risk for your use of the Website, the Internet generally, and the information you post or access and for your conduct on and off the Website.

(b) Indemnity: You agree and undertake to indemnify us in any suit or dispute by any third party arising out of disclosure of information by you to third parties either through our Website or otherwise and your use and access of websites, applications and resources of third parties. We assume no liability for any actions of third parties with regard to your Personal Information or SPDI which you may have disclosed to such third parties.

(c) Severability: Each clause of this Privacy Policy shall be and remain separate from and independent of and severable from all and any other clauses herein except where otherwise expressly indicated or indicated by the context of the Privacy Policy. The decision or declaration that one or more clauses are null and void shall have no effect on remaining clauses of this Privacy Policy.

11.CONTACT OUR GRIEVANCE OFFICER

In accordance with the IT Act and the SPDI Rules, the name and contact details of the Grievance Officer are provided below:

Name: Kuonal Lakhapati
Email:  info@23bmi.com

Any feedback or comments about this Privacy Policy will be welcome, and can be sent to info@23bmi.com. We will employ all commercially reasonable efforts to address the same.

info@23bmi.com