PATIENT PRIVACY POLICY

1. Scope & Applicability

This Patient Privacy Policy ('Policy') applies to all individuals who interact with Oncomed Clinic, including but not limited to:

  • Patients who visit the clinic in-person at X-10 Haus Khas, New Delhi – 110016.
  • Patients who book and attend online DRS (Doctor) consultations via www.oncomedclinic.com.
  • Legal guardians, family members, or carers acting on behalf of a patient.
  • Individuals who submit enquiries, contact the clinic by phone or email, or use any digital services offered by the clinic.

This Policy covers all forms of personal data and sensitive personal data (including health/medical data) collected, processed, or stored by Oncomed Clinic, whether in digital, electronic, or physical form.

2. Definitions

In this Policy, the following terms shall have the meanings assigned to them:

TermMeaning
Personal DataAny information that identifies or can identify an individual patient, including name, address, date of birth, contact number, and email.
Sensitive Personal Data (SPDI)Health/medical records, treatment history, diagnostic reports, prescriptions, biometric data, financial data related to payments.
Data ControllerOncomed Clinic, which determines the purpose and means of processing personal data.
Data ProcessorAny third-party entity that processes personal data on behalf of Oncomed Clinic (e.g., payment gateways, IT service providers).
ConsentFreely given, specific, informed, and unambiguous agreement by the patient for processing their data.
Health DataAll medical records, clinical notes, diagnoses, test results, prescriptions, and treatment plans.
DPDP ActDigital Personal Data Protection Act, 2023 (India).
IT ActInformation Technology Act, 2000, as amended.
SPDI RulesIT (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011.

3. Information We Collect

Oncomed Clinic collects the following categories of information:

3.1 Personal Identification Information

  • Full name, age, gender, and date of birth.
  • Residential address, city, state, and PIN code.
  • Mobile number and email address.
  • Government-issued identification (Aadhaar, PAN, Passport – where required for insurance/billing).

3.2 Medical & Health Information

  • Chief complaint, symptoms, and medical history.
  • Previous diagnoses, treatment history, and surgical history.
  • Oncology-specific data: type of cancer, staging, treatment protocol, chemotherapy/immunotherapy records.
  • Diagnostic reports: blood investigations, imaging (CT, PET, MRI), biopsy, pathology reports.
  • Current medications, allergies, and adverse drug reactions.
  • Family history relevant to cancer risk.
  • Genetic or molecular profiling data (where applicable).

3.3 Financial & Payment Information

  • Consultation fees, payment transaction IDs, and bank reference numbers.
  • Insurance details (policy number, insurer name) where applicable.
  • Payment method details processed via secure payment gateways (Oncomed Clinic does not store card data).

3.4 Digital & Technical Information

  • IP address, browser type, and device information when using our website.
  • Online appointment booking details, time stamps, and session logs.
  • Communication records via email or phone.

4. Legal Basis for Processing Personal Data

Oncomed Clinic processes personal and sensitive personal data under the following legal bases in accordance with the DPDP Act 2023, IT Act 2000, and SPDI Rules 2011:

Legal BasisDescriptionExamples
ConsentExplicit consent obtained from the patient prior to data collection.Medical history forms, online booking consent.
Medical Treatment (Necessity)Processing necessary for diagnosis, treatment, and continuity of care.Sharing reports with treating oncologist.
Legal ObligationCompliance with Indian laws, court orders, regulatory requirements.Responding to statutory body inquiries.
Legitimate InterestOperational needs of the clinic to deliver healthcare services.Appointment reminders, billing.
Vital InterestEmergencies where processing is necessary to protect the patient's life.Medical emergencies during consultation.

5. How We Use Your Information

Oncomed Clinic uses patient information strictly for the following purposes:

5.1 Clinical & Medical Purposes

  • To provide medical consultations, diagnoses, and treatment planning by Dr. Randeep Singh and Dr. Satinder Kaur.
  • To maintain accurate and up-to-date medical records for continuity of care.
  • To refer patients to other specialists or hospitals where clinically necessary.
  • To facilitate laboratory investigations, imaging, and third-party diagnostic services.
  • To conduct follow-up consultations and monitor treatment progress.

5.2 Administrative & Operational Purposes

  • To schedule, confirm, reschedule, or cancel appointments.
  • To process and verify online payments for consultation fees.
  • To issue receipts, invoices, and financial records.
  • To communicate appointment reminders and important health-related updates.
  • To maintain compliance with healthcare regulations and accreditation standards.

5.3 Research & Education (Anonymised Only).

  • No personally identifiable information will be used for research without explicit written consent from the patient.
  • Anonymised data may be included in publications, academic presentations, or national registry reporting as required by law.

5.4 Legal & Regulatory Purposes

  • To comply with court orders, statutory directives, or requests from government health authorities.
  • To defend the clinic against legal claims or professional complaints.
  • To report notifiable diseases or conditions as mandated under Indian law.

6. Disclosure & Sharing of Patient Information

Oncomed Clinic treats all patient information as strictly confidential. We will NOT sell, rent, or trade your personal information. Disclosure is limited to the following circumstances:

6.1 Within the Clinical Team

  • Information may be shared between Dr. Randeep Singh, Dr. Satinder Kaur, and any supporting clinical staff directly involved in patient care.
  • All clinical staff are bound by professional codes of conduct and non-disclosure obligations.

6.2 Third-Party Healthcare Providers

  • All disclosures are on a need-to-know, minimum-necessary basis.

6.3 Insurance & Third-Party Payers

  • Where the patient has insurance coverage, relevant clinical information may be shared with the insurance company or TPA (Third Party Administrator) for claims processing.
  • Only information necessary for the claim will be disclosed.

6.4 Legal & Statutory Disclosure

  • In compliance with a court order, warrant, or legal process issued by a competent Indian court.
  • To the National Cancer Registry Programme (NCRP), Indian Council of Medical Research (ICMR), or any other statutory authority as required under applicable law.
  • To report notifiable diseases under the Epidemic Diseases Act, 1897, or other applicable legislation.

6.5 Authorised Persons

  • To a legal guardian, next of kin, or authorised representative of the patient, where the patient has provided written consent or is incapable of providing consent.
  • To an advocate or legal representative, only to the extent permitted by law.

6.6 Service Providers & Data Processors

  • Secure IT infrastructure providers, cloud hosting services, and payment gateway operators who process data under strict data processing agreements with Oncomed Clinic.
  • These parties are prohibited from using patient data for any purpose other than the specific service provided to Oncomed Clinic.

7. Patient Rights

Under the DPDP Act 2023 and applicable Indian law, patients have the following rights with respect to their personal and health data:

RightDescription
Right to AccessYou may request a copy of personal and health data held about you by the clinic.
Right to CorrectionYou may request correction of inaccurate, incomplete, or outdated personal information.
Right to Withdraw ConsentYou may withdraw consent for non-essential processing at any time, without prejudice to prior processing.
Right to Grievance RedressalYou may raise a complaint about data processing with the clinic's designated Privacy Officer.
Right to Data PortabilityYou may request that your records be transferred to another treating physician or medical institution.
Right to Restrict ProcessingYou may request that we limit the use of your data in specific circumstances.
Right to be InformedYou have the right to be informed about what data we collect, why, and how it is used.

8. Cookies & Website Privacy

The Oncomed Clinic website (www.oncomedclinic.com) may use cookies or similar tracking technologies to improve user experience. By using our website, you consent to the use of cookies in accordance with this Policy.

  • Session Cookies: Used to maintain your session while using the appointment booking portal. These are deleted when the browser is closed.
  • Analytics Cookies: Used to understand how visitors interact with our website (e.g., pages visited, time spent). Data is aggregated and anonymised.
  • Functional Cookies: Used to remember your preferences for future visits.

Patients may disable cookies through their browser settings; however, this may affect the functionality of the online appointment booking system.

9. Cross-Border Data Transfer

Oncomed Clinic primarily stores and processes patient data within the territory of India. In the event that any data is transferred outside India (e.g., through cloud-based service providers with international servers), such transfer will be carried out only:

  • In compliance with the DPDP Act 2023 and any applicable rules or notifications issued by the Central Government regarding cross-border data transfers.
  • With appropriate contractual safeguards in place with the recipient entity.
  • With the patient's prior informed consent, where required.

10. Special Categories of Data

Given the nature of oncology care, Oncomed Clinic routinely handles special categories of particularly sensitive data, including:

  • Cancer diagnoses, staging, histopathology, and molecular profiles.
  • Genetic information and family cancer history.
  • HIV/AIDS status, where relevant to immune function in oncology patients.
  • Psychiatric and psychological history, where relevant to cancer care.
  • Reproductive health data in the context of gynaecological oncology (Dr. Satinder Kaur's practice).

Such data is processed with the highest level of care and confidentiality. Access is limited exclusively to clinicians with a direct role in the patient's care.

11. Children's Privacy

Oncomed Clinic recognises the need for special protection of data relating to children (persons below 18 years of age). We will:

  • Collect personal data of minors only with verifiable parental or guardian consent.
  • Not use the personal data of minors for any purpose other than direct medical care.
  • Apply enhanced security and access controls to records of minor patients.
  • Retain records of minor patients for the extended period prescribed by law (see Section 8).

12. Grievance Redressal

Oncomed Clinic has designated a Privacy Officer responsible for addressing any concerns or complaints regarding the handling of patient data.

Privacy Officer — Oncomed Clinic:
Dr. Randeep Singh / Dr. Satinder Kaur
X-10 Haus Khas, New Delhi – 110016
Phone: +91 88601 03234
Email: Oncomedclinics@gmail.com
Response Time: Within 30 days of receipt of complaint.

If the patient is dissatisfied with the response from the clinic's Privacy Officer, they may escalate the matter to the Data Protection Board of India (upon its formal establishment under the DPDP Act 2023) or approach the relevant courts or consumer forums under applicable Indian law.

13. Amendments to This Policy

Oncomed Clinic reserves the right to update or amend this Privacy Policy at any time. Any material changes will be:

  • Published on the Oncomed Clinic website (www.oncomedclinic.com) with the revised effective date.
  • Communicated to existing patients via email or notice at the clinic, where reasonably practicable.
  • Effective immediately upon publication unless stated otherwise.

Patients are encouraged to review this Policy periodically. Continued use of the clinic's services after any amendment constitutes acceptance of the revised Policy.

14. Governing Law & Jurisdiction

This Privacy Policy is governed by the laws of the Republic of India. Any dispute arising under or in connection with this Policy shall be subject to the exclusive jurisdiction of the competent courts located in New Delhi, India.

CLINIC DECLARATION

Oncomed Clinic is committed to maintaining the highest standards of patient confidentiality and data protection. We Never Lose Hope — and we never lose sight of your right to privacy.

Issued by: Oncomed Clinic | X-10 Haus Khas, New Delhi – 110016

www.oncomedclinic.com | +91 88601 03234 | Oncomedclinics@gmail.com