Focus: Data Principals' rights and Amrita's role as a Data Fiduciary.
Key Sections:
Consent (The Core of DPDP): We process your "Digital Personal Data" (Name, Age, Contact) and "Sensitive Personal Data" (Health records, genomic data) only based on your explicit, affirmative consent provided at the time of booking.
Specified Purpose: Data is collected strictly for:
Processing diagnostic tests and generating reports.
Communicating results via SMS/Email/Portal.
Mandatory reporting to Government Health Authorities (e.g., NIKSHAY for TB, ICMR for infectious diseases).
Data Principal Rights: In line with the DPDP Act, users have the:
Right to Access: View a summary of personal data and processing activities.
Right to Correction/Erasure: Update inaccuracies or request data deletion (subject to Clinical Establishments Act retention rules, which usually require records to be kept for 3-10 years).
Right to Withdraw Consent: You may withdraw consent at any time, though this may result in the inability to provide further services.
Data Protection Officer (DPO): As required by law, we have appointed a DPO for grievance redressal. (Contact: dpo@aims.amrita.edu)