Privacy Policy

Marketers Data Solution Pvt Ltd (operating as MediNITS)
Effective Date: 1 January 2026  |  Last Updated: 6 April 2026
Registered in India  |  Contact: admin@medinits.com  |  +91 9663769576

Quick Summary: MediNITS does not store your patient data on our servers. All clinical records remain on your device. We are fully compliant with India's Digital Personal Data Protection (DPDP) Act, 2023.

Contents

1. Who We Are 2. What Data We Collect 3. How We Use Your Data 4. Patient Data — Special Protections 5. Data Storage & Security 6. Third-Party Services 7. Your Rights under DPDP Act 2023 8. Data Retention 9. Cookies 10. Children's Data 11. International Data Transfers 12. Changes to this Policy 13. Contact & Grievance Officer

1. Who We Are

MediNITS is a Software-as-a-Service (SaaS) platform for clinic management, developed and operated by Marketers Data Solution Pvt Ltd, a company incorporated under the Companies Act, 2013 in India.

Registered Address: India (contact us at admin@medinits.com for full address)
CIN: [Company Registration Number]
GST: [GSTIN]
Support: admin@medinits.com | +91 9663769576

2. What Data We Collect

2.1 Account & Subscription Data (We collect and store)

2.2 Patient Clinical Data (We do NOT collect or have access to)

All patient records — names, contact details, medical history, diagnoses, prescriptions, invoices, appointments — are stored exclusively on your device's local storage (browser localStorage and IndexedDB). MediNITS servers never receive, process, or store any patient clinical data.

If you enable optional Supabase cloud backup, your data is stored in your own Supabase project, which you fully control. We have no access to it.

2.3 Usage Data (Anonymised)

3. How We Use Your Data

We do not sell, rent, or share your personal data with third parties for marketing purposes.

4. Patient Data — Special Protections

🔒 Patient data is yours, not ours. MediNITS is designed as a local-first application. Clinical records never leave your device unless you explicitly enable cloud backup to your own Supabase instance.

As the clinic operator, you are responsible for obtaining patient consent before collecting their data. MediNITS provides a consent checkbox in the patient registration form to help you comply.

5. Data Storage & Security

5.1 Technical Measures

5.2 Organisational Measures

5.3 Data Breach Notification

In the unlikely event of a breach affecting your subscription data, we will notify you at the email address registered with us within 72 hours of becoming aware, as required by applicable law.

6. Third-Party Services

MediNITS integrates with the following third-party services. Each has their own privacy policy:

Where these services process data on our behalf, we ensure appropriate Data Processing Agreements are in place.

7. Your Rights under DPDP Act 2023

Under India's Digital Personal Data Protection Act, 2023, you have the following rights regarding your subscription and account data held by us:

For patient data rights under DPDP Act 2023: since all patient data is stored on your device, your patients' requests (right to access, erasure) should be directed to you as the Data Fiduciary. MediNITS provides a "DPDP Patient Data Export" and "Right to Erasure" tool in the Compliance section of the app.

8. Data Retention

To request earlier deletion of your account data, contact admin@medinits.com with subject "Data Deletion Request."

9. Cookies

The MediNITS app (app.medinits.com) does not use tracking cookies. It uses browser localStorage and sessionStorage exclusively to store your session and clinic data — this data stays on your device and is not sent to us.

Our marketing website (medinits.com) may use minimal session cookies for basic functionality. We do not use advertising or analytics tracking cookies.

10. Children's Data

MediNITS is a professional platform intended for use by medical practitioners. It is not directed at children under 18. Patients under 18 may have their health records managed within MediNITS by their treating doctor, who is responsible for obtaining parental/guardian consent as required by applicable medical and data protection laws.

We do not knowingly collect personal data from children under 18 as account subscribers.

11. International Data Transfers

Subscription and payment data may be processed by services located outside India (e.g., Razorpay processes data in India; Cloudflare has global servers). Where data is transferred outside India, we ensure appropriate safeguards are in place as required by the DPDP Act 2023 and applicable regulations.

12. Changes to this Policy

We may update this Privacy Policy periodically. When we make material changes, we will notify you by email (to the address registered with your subscription) and update the "Last Updated" date above. Continued use of MediNITS after changes constitutes acceptance of the updated policy.

13. Contact & Grievance Officer

Grievance Officer

Name: [Authorised Representative]  |  Company: Marketers Data Solution Pvt Ltd
Email: admin@medinits.com  |  Phone: +91 9663769576
WhatsApp: +91 9663769576
Response Time: Within 48 hours of receiving your request

For DPDP Act 2023 complaints not resolved by us, you may contact the Data Protection Board of India once established.