Skip to main content

Legal & Compliance

Privacy Policy

How PontiCare handles health data and personally identifiable information, and what a facility and its patients can ask of us.

Grievance Officer (DPDP Act 2023, s.13)

If you have a question or complaint about how your personal data is handled — including a request to access, correct or erase it — you may contact our Grievance Officer directly. Aniket Harishchandra Dhumal, IT Manager. Email: info@pontifexlabs.com. Postal address: Flat 1004 6C, MHADA Colony, Bhandarali, Thane 421204, Maharashtra, India. We will acknowledge your request and respond within the period prescribed under the Digital Personal Data Protection Act, 2023.

Commitment

Pontifex Care ("PontiCare", "we", "us", or "our") is dedicated to protecting the privacy, confidentiality, and security of all Personal Health Information (PHI) and Personally Identifiable Information (PII) processed across our software platforms. Last updated: 3 September 2026.

Data Controller vs. Data Processor

When healthcare institutions (hospitals, clinics, laboratories) utilize PontiCare, the healthcare institution acts as the Data Controller of patient information. PontiCare operates strictly as the Data Processor under the institution's documented instructions.

Scope of Data Processed

Administrative data (provider accounts, staff names, registration IDs, billing credentials) and patient demographics and clinical data (names, ABHA IDs, contact numbers, vitals, histories, diagnoses, lab results, prescriptions, insurance details), processed on the instructions of the healthcare institution that holds the record.

Data Security & Storage Architecture

Data is transmitted over TLS. Access is governed by role-based access control with organisation-level isolation, and sensitive operational actions are written to a hash-chained, append-only audit log. The platform runs on cloud infrastructure whose region is fixed per deployment and recorded in the subscribing institution's order form; some of the sub-processors listed below operate outside India. Encryption-at-rest coverage and hosting certifications are likewise stated per deployment rather than claimed generally here.

Third Parties That Process Data For Us

We use a limited set of sub-processors to deliver the service, and which of them apply depends on what a facility enables in its deployment: Cloudinary and Amazon Web Services (document and file storage), Sentry (error and crash diagnostics from our applications), Razorpay, PhonePe and PayU (subscription and payment processing), a public QR-rendering service that receives payment-link URLs when a QR is displayed at the desk, Google (the AI model provider behind the in-product assistant, which receives what you type or speak to it), MSG91 (SMS delivery), SendGrid (email delivery), Meta Platforms (WhatsApp Business messaging), and the National Health Authority's ABDM network where a facility uses ABDM features. We do not use third-party advertising, marketing-analytics or data-broker services; product usage telemetry is stored on our own infrastructure. Some of these providers process data outside India. A facility can request the sub-processor list applicable to its own deployment, including where each one processes data.

No Commercialization of Health Data

PontiCare never sells, rents, monetizes, or shares patient health records with third-party advertisers or data brokers under any circumstances.

Contact

Questions about privacy or PHI handling: info@pontifexlabs.com.

Run your hospital on one connected system.