Skip to main content

Privacy Policy

Last updated: August 2026

ArogyaRelief ("ArogyaRelief," "we," "us," or "the platform") coordinates disaster relief and emergency healthcare access between victims and verified responders — including doctors, hospitals, NGOs, pharmacies, volunteers, and government authorities — primarily across Assam, India. This Privacy Policy explains what information we collect, why we collect it, and how it is used, shared, and protected.

By using ArogyaRelief, you agree to the practices described in this policy. If you do not agree, please do not use the platform — though we encourage you to still contact official emergency services directly (108, 100, 101, 1070, or your local NDRF/SDRF authority), which remain available to you regardless of whether you use this platform.

1. Information We Collect

Account Information

When you sign in with Google, we receive your name, email address, and profile photo from Google. We do not collect or store your Google password. Google Authentication is currently the only supported sign-in method.

Location Information

With your permission, we collect your device's GPS coordinates to route your request to the nearest verified responders, display nearby hospitals/camps/pharmacies, and provide accurate distance and directions. You can decline location access, in which case you may be asked to select your district manually — some features will be limited.

Request and Health Information

When you submit a request (medical, food, water, shelter, rescue, medicine) or complete a health assessment/triage, we collect the details you provide, including symptoms, urgency level, and any information relevant to responders assisting you. This may constitute sensitive personal health information and is treated with additional care.

Verification Documents

If you register as a responder (NGO, Doctor, Hospital, Pharmacy, Volunteer, or Government/District representative), we collect credentials and documents necessary to verify your identity and qualifications — for example, medical registration numbers, NGO registration certificates, hospital licenses, or official identification.

Communication and Community Content

Community reports (e.g. road blockages, disease outbreaks), broadcast messages from verified responders, and any other content you submit are stored and may be visible to relevant users on the platform.

Technical Information

We collect limited technical data (device type, browser, general usage patterns) to maintain platform reliability and security. We do not use this data for advertising.

2. How We Use Your Information

We use the information above to:

  • Match victim requests with the nearest available, verified responders
  • Verify the identity and credentials of responder accounts before

granting dashboard access

  • Display real-time, district-scoped operational status (using

aggregated, non-identifying counts only)

  • Send you notifications about your requests, nearby alerts, or

responder updates

  • Investigate misuse, fraud, or false emergency reports
  • Maintain, secure, and improve the platform

We do not use your personal data for advertising, and we do not sell your personal data to any third party.

3. How We Share Information

  • With responders directly relevant to your request — for example,

if you submit a medical request, the assigned doctor or hospital sees the information necessary to assist you. Responders only see requests they are authorized to act on.

  • With government and district administration, where necessary for

disaster coordination, or where required by Indian law.

  • **We do not share your data with advertisers, data brokers, or

unrelated third parties.**

  • **We do not imply partnership with any government body or

organization unless a formal partnership actually exists.**

4. Data Storage and Security

Your data is stored using Supabase (PostgreSQL) with Row Level Security (RLS) enforced at the database level, meaning access to records is restricted according to your role and relationship to that record — victims can only access their own requests, and responders can only access requests assigned or relevant to them. Verification documents and medical records are stored in access-controlled, private storage buckets, not publicly accessible URLs.

While we take reasonable technical and organizational measures to protect your data, no system is completely secure, and we cannot guarantee absolute security, particularly during large-scale disaster events where infrastructure may be compromised.

5. Data Retention

We retain your information for as long as your account is active, or as needed to fulfil the purposes described in this policy, comply with legal obligations, resolve disputes, and enforce our agreements. Active emergency request data may be retained temporarily even after a deletion request if it is part of an ongoing response, for safety and accountability reasons.

6. Your Rights

Under applicable Indian data protection law, including the Digital Personal Data Protection Act, 2023, you may have the right to:

  • Access the personal data we hold about you
  • Request correction of inaccurate data
  • Request deletion of your data, subject to legal and safety exceptions
  • Withdraw consent for non-essential data processing

To exercise these rights, contact us at official.arogyarelief@gmail.com.

7. Children's Data

ArogyaRelief is not directed at children. Where a request or health assessment is submitted on behalf of a minor by a parent, guardian, or responder acting in an emergency capacity, that data is handled with the same protections described in this policy, used solely for the purpose of providing assistance.

8. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be reflected with an updated "Last updated" date. Continued use of the platform after changes constitutes acceptance of the revised policy.

9. Contact Us

For any privacy questions, concerns, or requests, contact:

official.arogyarelief@gmail.com