Important: Please read this consent form carefully. By providing your consent, you authorize PatientRecordPortal (CARED) to store, process, and use your health information as described below.
What This Consent Covers
By providing your consent, you authorize PatientRecordPortal to:
- Store your health information including medical records, reports, images, prescriptions, vitals, and other health-related data
- Process your data to organize, categorize, and create chronological timelines of your health journey
- Create clinical summaries using automated and AI-powered tools to help you understand your health information
- Provide optional clinician services where you can share your records with verified medical professionals (if you subscribe to premium features)
- Improve our platform by using anonymized, aggregated data for enhancing features and functionality (only with your explicit permission)
Your Rights
You have the following rights regarding your consent and data:
- Right to Withdraw: You can withdraw your consent at any time by emailing [email protected]
- Right to Access: You can request a copy of all your stored data at any time
- Right to Deletion: You can request complete deletion of your data (subject to a 90-day backup retention period)
- Right to Rectification: You can correct or update inaccurate information
- Right to Data Portability: You can request your data in a structured, commonly used format
Data Protection and Security
We protect your health information using:
- AES-256 Encryption: All data is encrypted both in transit and at rest
- Role-Based Access: Only authorized personnel can access specific data
- Audit Logs: We maintain detailed logs of all access and modifications
- Compliance: We adhere to India's Digital Personal Data Protection Act 2023
- No Third-Party Sharing: We do not share your data with third parties without your explicit consent
Data Sharing
Your health data will only be shared:
- When you explicitly initiate a share request (e.g., sending a report to your doctor)
- When required by law or legal process
- To provide premium services you have specifically requested
We will NEVER sell your personal health information to third parties for marketing purposes.
Consent Recording
When you provide consent, we record:
- Timestamp of consent
- IP address from which consent was given
- User agent (browser/device information)
- Version of consent form agreed to
Withdrawal of Consent
To withdraw your consent:
- Send an email to [email protected]
- Use the subject line: "Withdraw Consent"
- Include your registered name and email address
- We will process your request within 7 business days
Note: Withdrawing consent will result in the deletion of your account and all associated data (after a 90-day backup retention period).
Contact Information
Frequently Asked Questions
How long does my consent remain valid?
Your consent remains valid until you withdraw it or close your account.
Can I change my consent preferences?
Yes, you can modify certain consent preferences (like data analytics) in your account settings. For complete withdrawal, please email us.
What happens if I withdraw consent?
Your account will be closed, and your data will be deleted according to our retention policy (90-day backup period, then permanent deletion).
Is my consent legally binding?
Yes, this electronic consent is legally binding under Indian law and equivalent to a written signature.
Can someone else consent on my behalf?
Only if you are under 18 years old. In that case, a parent or legal guardian must provide consent on your behalf.
Last Updated: January 2025