Privacy Policy
Our Commitment to Privacy
At Pontifex Care, we take privacy seriously. Our healthcare operations platform is designed so hospital and patient data stay protected within your organization tenant, with DPDPA-aware controls and clear consent where applicable.
Data Collection and Usage
- We collect essential information to provide and improve the service, including account details, organization settings, and operational usage needed to run Pontifex Care for your hospital.
- Patient and clinical records stay within your organization tenant and are never shared with third parties without explicit consent or a legal requirement.
- Anonymous product analytics help us improve reliability, AI assists, and platform performance.
Your hospital & patient data
Clinical and billing records stay inside your organization. AI assists are designed to operate within your tenant boundary. We implement strict isolation between customers so your hospital data remains private.
Data Security
- All data is encrypted in transit (TLS 1.3) and at rest (AES-256).
- We implement security reviews, access controls, and continuous hardening appropriate for healthcare SaaS.
- Secrets and credentials are stored using industry-standard encryption, with stricter controls available on Enterprise plans.
Your Rights and Controls
- Access and export organization data and supported patient-data exports (including SAR-oriented flows) as enabled in your plan.
- Control privacy settings, staff access, integrations, and consent preferences from Hospital setup.
- Request complete data deletion upon account closure.
Contact Us
If you have any questions about privacy or how we handle hospital and patient data, contact privacy@pontifex.care or our support channels.
Updates to This Policy
We may update this privacy policy periodically to reflect changes in our services. Users will be notified of any significant changes through the platform and email.