Privacy Policy
Effective Date: August 7, 2026
1. Introduction
JaiRish Automation ("Company", "we", "us", or "our") is committed to protecting the privacy and security of personal information. This Privacy Policy explains how we collect, use, store, share, and protect information when you use our website www.jairish.in and our automation, communication, and digital marketing services.
We provide healthcare clinic automation, WhatsApp-based patient engagement, digital marketing, and custom software solutions. Given the sensitive nature of healthcare data, we take data protection seriously and adhere to applicable Indian laws including the Information Technology Act, 2000 and its associated rules.
2. Information We Collect
2.1 Information from Clients
When you engage our services, we may collect:
- Business name, address, and registration details
- Contact person name, email address, and phone number
- Billing and payment information
- Login credentials for dashboards and tools we provide
- Business-specific data necessary for delivering automation services (e.g., clinic schedules, service offerings, pricing)
2.2 Information from Patients / End Users
When our Clients use our systems to manage patient or customer interactions, the following data may be processed through our platforms:
- Patient/customer name, phone number, and email address
- Appointment details, visit history, and scheduling preferences
- Feedback, reviews, and satisfaction responses
- Communication history (WhatsApp messages, SMS, email correspondence)
- Basic health information as provided by the Client for appointment context (we do not process detailed medical records)
Important: Our Clients are responsible for obtaining appropriate consent from their patients and customers before sharing personal data with us. We process this data solely as a service provider on behalf of our Clients.
2.3 Information Collected Automatically
When you visit our website, we may automatically collect:
- IP address and approximate geographic location
- Browser type, version, and operating system
- Pages visited, time spent on pages, and navigation paths
- Referring website or source
- Device type (desktop, mobile, tablet)
3. How We Use Information
We use the information we collect for the following purposes:
- Service Delivery: To provide, maintain, and improve our automation, communication, and marketing services.
- Communication: To send appointment reminders, follow-up messages, and feedback requests on behalf of our Clients through WhatsApp, SMS, or email.
- Account Management: To manage Client accounts, process payments, and provide customer support.
- Analytics & Improvement: To analyze usage patterns, generate performance reports for Clients, and improve our services.
- Legal Compliance: To comply with applicable laws, regulations, and legal processes.
- Security: To detect, prevent, and address fraud, abuse, and security issues.
- Marketing: To send Clients information about new features, service updates, or relevant offerings (with the option to opt out).
4. Data Storage & Security
We implement industry-standard technical and organizational measures to protect the data we process:
- Encryption: Data is encrypted in transit using TLS/SSL protocols. Sensitive data at rest is encrypted using AES-256 or equivalent standards.
- Access Controls: Access to personal data is restricted to authorized personnel on a need-to-know basis, with role-based access controls.
- Infrastructure: Our systems are hosted on reputable cloud platforms with SOC 2 and ISO 27001 certifications.
- Monitoring: We employ continuous monitoring, logging, and alerting for unauthorized access attempts.
- Backups: Regular encrypted backups are maintained to prevent data loss.
While we strive to use commercially acceptable means to protect personal data, no method of transmission over the Internet or electronic storage is 100% secure. We cannot guarantee absolute security.
5. Data Sharing & Third Parties
We do not sell, rent, or trade personal information. We may share data with third parties only in the following circumstances:
- Service Providers: We work with trusted third-party service providers who assist in delivering our services, including cloud hosting providers, WhatsApp Business API providers (Meta), payment processors, and analytics tools. These providers are contractually bound to protect data and use it only for the specified purposes.
- Legal Requirements: We may disclose information if required by law, court order, or governmental authority, or to protect our rights, safety, or property.
- Business Transfers: In the event of a merger, acquisition, or sale of assets, personal data may be transferred to the successor entity, subject to the same privacy commitments.
- With Client Consent: We may share data with additional third parties if the Client provides explicit written consent.
6. WhatsApp Communication
A core part of our services involves sending and receiving messages via the WhatsApp Business API on behalf of our Clients. Regarding WhatsApp communications:
- Messages are sent only to individuals whose contact information has been provided by our Clients, who are responsible for ensuring proper consent has been obtained.
- Message content is determined by our Clients or configured through agreed-upon automation templates.
- WhatsApp messages are end-to-end encrypted by WhatsApp's infrastructure. We process message metadata and content as necessary to provide our automation services.
- Recipients can opt out of receiving messages by replying "STOP" or through other opt-out mechanisms configured in the system.
- We comply with WhatsApp's Business Policy and Commerce Policy in all our communications.
7. Cookies & Tracking Technologies
Our website may use cookies and similar tracking technologies to enhance your browsing experience:
- Essential Cookies: Required for the website to function properly (e.g., session management).
- Analytics Cookies: Help us understand how visitors interact with our website (e.g., Google Analytics). These collect anonymized usage data.
- Marketing Cookies: Used to track the effectiveness of our advertising campaigns and deliver relevant content.
You can control cookies through your browser settings. Disabling certain cookies may affect the functionality of our website. Most browsers allow you to refuse cookies or alert you when cookies are being sent.
8. Data Retention
We retain personal data only for as long as necessary to fulfill the purposes outlined in this Privacy Policy:
- Client Data: Retained for the duration of the service engagement and for a period of 3 years after termination for legal and accounting purposes.
- Patient/End User Data: Retained for the duration of the Client's service engagement. Upon termination, this data is available for export for 30 days, after which it is securely deleted unless retention is required by law.
- Website Analytics Data: Retained for up to 26 months.
- Communication Logs: WhatsApp and other communication logs are retained for up to 12 months for service quality and dispute resolution purposes.
Clients may request earlier deletion of their data by contacting us in writing.
9. Your Rights
Depending on applicable laws, you may have the following rights regarding your personal data:
- Right to Access: Request a copy of the personal data we hold about you.
- Right to Correction: Request correction of inaccurate or incomplete personal data.
- Right to Deletion: Request deletion of your personal data, subject to legal retention requirements.
- Right to Withdraw Consent: Withdraw your consent for data processing at any time (this does not affect the lawfulness of processing before withdrawal).
- Right to Object: Object to the processing of your personal data for specific purposes, such as direct marketing.
- Right to Data Portability: Request your data in a structured, commonly used, and machine-readable format.
To exercise any of these rights, please contact us at info@jairish.in. We will respond to your request within 30 days.
For End Users (Patients/Customers): If you are a patient or customer of one of our Clients and wish to exercise your data rights, please contact the respective Client directly. We will cooperate with our Clients to fulfill such requests.
10. Children's Privacy
Our services are not directed at individuals under the age of 18. We do not knowingly collect personal information from children. If a Client's services involve minors (e.g., pediatric clinics), the Client is responsible for obtaining parental or guardian consent as required by applicable law.
If we become aware that we have inadvertently collected personal information from a child without appropriate consent, we will take steps to delete such information promptly.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. When we make material changes:
- We will update the "Effective Date" at the top of this page.
- We may notify active Clients via email or WhatsApp about significant changes.
- We will post the updated Privacy Policy on our website.
We encourage you to review this Privacy Policy periodically. Your continued use of our services after changes are posted constitutes your acceptance of the updated policy.
12. Grievance Officer
In accordance with the Information Technology Act, 2000 and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011, the following person is designated as the Grievance Officer:
- Name: Grievance Officer, JaiRish Automation
- Email: info@jairish.in
- Phone: +91 97722 31869
The Grievance Officer shall address any discrepancies or grievances related to the processing of personal data within 30 days of receiving the complaint.
13. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
- Email: info@jairish.in
- Phone: +91 97722 31869 / +91 98872 19625
- Website: www.jairish.in