Privacy Policy
Effective Date: 1 April 2025 · Last Updated: 13 April 2025 · Version 1.0
🔒 Your data is yours. Nirogo Assist is built for Indian doctors and is fully compliant with India's Digital Personal Data Protection (DPDP) Act, 2023. We collect only what we need, store it securely, and never sell it.
1. Who We Are
Nirogo Assist ("we", "our", "us") is an AI-powered clinical documentation platform operated by Nirogo Technologies Private Limited, registered in India. Our platform is accessible at assist.nirogo.in.
For the purposes of India's Digital Personal Data Protection (DPDP) Act, 2023, Nirogo Technologies Private Limited is the Data Fiduciary responsible for your personal data.
Contact: privacy@nirogo.in
2. Data We Collect
2.1 Account & Identity Data
- Full name and email address (from Google Sign-In or email registration)
- Mobile phone number (collected during phone verification)
- Medical specialty and professional role (self-declared)
- Profile photo (from Google account, if provided)
2.2 Usage & Technical Data
- Browser type, operating system, and device type
- IP address and approximate location
- Pages visited, features used, and time spent on the platform
- Error logs and performance diagnostics
2.3 Clinical & Patient Data
- Patient details you enter (name, age, gender, chief complaint) — entered manually by you
- Voice recordings of consultations (processed in real-time, not stored as audio)
- AI-generated SOAP notes, diagnoses, prescriptions, and alerts
- Vitals you manually enter during consultation
Important: Audio from voice recordings is processed in real-time by our AI engine and is not stored as an audio file on our servers. Only the resulting text transcript and clinical output are saved.
3. How We Use Your Data
- To create and manage your Nirogo Assist account
- To provide AI-powered clinical documentation services
- To save and display your patients' consultation history
- To send account-related communications (OTP, password reset, important notices)
- To improve our AI models and platform features (using anonymised, aggregated data only)
- To comply with legal obligations under Indian law
- To prevent fraud, abuse, and unauthorised access
We do not use your data for advertising, profiling for marketing, or selling to third parties.
4. Data Sharing
We share your data only with the following categories of trusted service providers who are contractually bound to protect it:
- Google Firebase — Authentication and database (Google LLC, data stored in asia-south1 / Mumbai region)
- OpenAI — AI processing of consultation transcripts (subject to OpenAI's data processing terms; no data is used to train their models per our API agreement)
- Hostinger — Web hosting infrastructure
We do not share your data with hospitals, pharmaceutical companies, insurance providers, or any third party for commercial purposes.
5. Data Storage & Security
- All data is stored in Google Firebase Firestore, with servers in Mumbai (asia-south1)
- Data in transit is encrypted using TLS 1.2+
- Data at rest is encrypted by Google Firebase's default encryption
- Access is controlled via Firebase Security Rules — each doctor can only access their own data
- We conduct periodic security reviews and follow industry best practices
6. Patient Consultation Data
All patient data you enter into Nirogo Assist is:
- Stored under your unique doctor account — no other doctor can access it
- Not shared with patients directly through our platform
- Your responsibility to handle in accordance with Indian medical ethics and applicable laws
- Deleted upon your request (see Your Rights below)
You are the treating physician and remain fully responsible for clinical decisions. Nirogo Assist is a documentation tool, not a medical record system. You should maintain your own records as required by your regulatory body.
7. Your Rights (Under DPDP Act, 2023)
As a Data Principal under India's DPDP Act, you have the right to:
- Access: Request a copy of your personal data we hold
- Correction: Request correction of inaccurate or incomplete data
- Erasure: Request deletion of your account and all associated data
- Grievance Redressal: Raise a complaint with our Data Protection Officer
- Nomination: Nominate a person to exercise rights on your behalf in case of incapacity
To exercise any of these rights, email us at privacy@nirogo.in. We will respond within 30 days.
8. Cookies
We use minimal cookies and browser storage:
- Firebase Auth token — stored in localStorage to keep you logged in
- Session data — temporary data (e.g., active patient) stored in sessionStorage, cleared when you close the tab
- We do not use advertising cookies or third-party tracking pixels
9. Children's Privacy
Nirogo Assist is intended exclusively for licensed medical professionals (18 years or older). We do not knowingly collect data from minors. If you believe a minor has created an account, contact us at privacy@nirogo.in.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via email or a prominent notice within the platform at least 15 days before the change takes effect. Continued use after the effective date constitutes acceptance.
Data Protection Officer
Nirogo Technologies Private Limited
Email: privacy@nirogo.in
Website: assist.nirogo.in
For grievances under the DPDP Act, you may also contact the Data Protection Board of India once constituted by the Government of India.