BioAgesis (OPC registration in process) ("BioAg€sis," "we," "us") is the data controller for personal data collected through our platform. We operate globally and comply with applicable data protection laws in all jurisdictions where we operate.
Privacy Contact: bioagesis.official@gmail.com (a formal Data Protection Officer has not yet been appointed \u2014 write to this address for any privacy request)
Company Address: BioAgesis (OPC registration in process), India (registration pending)
| Data Type | What We Collect | Why |
|---|---|---|
| Account Data | Name, email, phone number, password (hashed) | Account creation and authentication |
| Health Data | Symptoms described, AI report results, age, gender | Providing medical advisory service |
| Emergency Data | Emergency contacts, GPS location (during SOS) | SOS notification and emergency response |
| Device Data | Device ID, OS version, app version | Security, anti-misuse enforcement, bug fixing |
| Payment Data | Payment reference IDs only (no card numbers stored) | Payment processing via Razorpay/Stripe |
| Usage Data | Features used, session timestamps | Platform improvement and security |
We do NOT collect: government ID numbers, financial account details, biometric data beyond what you voluntarily provide, or any data not listed above.
We NEVER use your health data for advertising, marketing profiling, or selling to third parties. This is an absolute rule with no exceptions.
We share your data ONLY in these limited circumstances:
We NEVER share data with: advertisers, data brokers, marketing companies, insurance companies, employers, government agencies (without court order), or any other third party.
| Data Type | Retention Period |
|---|---|
| Account data | Until account deletion + 30 days |
| Health/AI report data | 12 months from creation, then auto-deleted |
| SOS/Emergency logs | 90 days (security and anti-misuse), then deleted |
| Payment records | 7 years (legal/tax requirement) |
| Security logs | 12 months |
To exercise any right: email bioagesis.official@gmail.com. We respond within 30 days. EU users may also contact their national Data Protection Authority. Indian users may contact the Data Protection Board of India (when operational).
Our website uses minimal, essential cookies only:
We do NOT use: advertising cookies, third-party tracking pixels, social media tracking, or behavioral profiling cookies. You may disable non-essential cookies in your browser settings.
BioAg€sis processes data primarily in India and may use cloud infrastructure in other regions as we scale. We aim to put appropriate safeguards in place for any international transfers, consistent with GDPR Chapter V (for EU users) and DPDP Act 2023 cross-border transfer provisions, and will formalize these (e.g. Standard Contractual Clauses) as needed.
BioAg€sis is not intended for users under 18. We do not knowingly collect data from minors. If a parent or guardian registers on behalf of a minor, the adult is the account holder and data controller for the minor's use. If you believe we have inadvertently collected a minor's data, contact bioagesis.official@gmail.com immediately.