← Back to home

Healthcare Management by LamprosTech

Privacy policy

How LamprosTech collects, uses, and protects personal data when you use Healthcare Management by LamprosTech and related services.

Last updated: 6 July 2026

1. Introduction

This Privacy Policy explains how LamprosTech (“we”, “us”, “our”) processes personal data in connection with Healthcare Management (“Platform”), our clinic management software, websites, mobile experiences, and support channels.

We design the Platform for healthcare providers in India. Because we handle sensitive personal data—including health and clinical information—we apply heightened safeguards and process data only as described here, in our agreements with clinics, and as permitted by applicable law, including the Digital Personal Data Protection Act, 2023 (“DPDP Act”) and rules thereunder, and other sectoral requirements where they apply.

2. Who is responsible for your data?

For data processed about clinic staff, administrators, and visitors to our marketing sites, LamprosTech is generally the data fiduciary.

For patient and clinical records entered by a clinic into the Platform, the clinic (or its legal entity) is typically the data fiduciary and LamprosTech acts as a data processor, processing personal data only on the clinic’s documented instructions, under contract, and for providing the contracted services.

If you are a patient, please contact your clinic first for questions about your medical record. We will support the clinic in fulfilling lawful requests.

3. Personal data we collect

Depending on how you interact with us, we may collect:

  • Identity and contact data: name, phone number, email, clinic name, role, address.
  • Account and authentication data: login identifiers, session tokens, audit logs.
  • Clinical and operational data uploaded by clinics: appointments, demographics, clinical notes, prescriptions, billing, documents, and communications metadata required to run the Platform.
  • Technical data: IP address, device type, browser, logs, cookies, and similar technologies on our websites.
  • Support and sales data: messages, call notes, demo requests, and feedback you choose to share.

4. How we use personal data

We use personal data to:

  • Provide, secure, maintain, and improve the Platform.
  • Authenticate users, enforce role-based access, and prevent fraud or abuse.
  • Send service, security, and transactional communications.
  • Provide customer support and onboarding.
  • Comply with law, respond to lawful requests, and protect rights and safety.
  • Generate aggregated, de-identified analytics that do not identify individuals or clinics.

6. Health and sensitive personal data

Health data is processed only for delivering clinic operations, as instructed by the clinic, with encryption in transit and at rest, access controls, tenant isolation, and audit trails as described in our security documentation.

We do not sell personal data. We do not use patient clinical content for advertising.

7. Sharing and subprocessors

We may share personal data with infrastructure and security providers (e.g. cloud hosting) under confidentiality and data-processing terms; integration partners you or your clinic enable (labs, payment gateways, messaging providers); and professional advisers or authorities when required by law or to protect rights and safety.

A current list of material subprocessors is available on request at privacy@lampros.tech. We require subprocessors that process personal data to implement appropriate safeguards.

8. Retention

We retain personal data for as long as needed to provide the Platform, meet contractual and legal obligations, resolve disputes, and enforce agreements. Clinic customer data is retained according to the clinic’s subscription and our data-processing agreement; upon termination, export and deletion are handled as set out in that agreement.

Backup copies may persist for a limited period in encrypted backup systems before automatic purging.

9. Security

We implement administrative, technical, and organizational measures including encryption, access control, monitoring, and regular backups. No method of transmission or storage is completely secure; we encourage strong passwords and prompt reporting of suspected incidents to hello@lampros.tech.

10. Cross-border processing

Primary hosting is designed for Indian clinic workloads. If personal data is transferred outside India, we do so only with appropriate safeguards and as permitted under applicable law.

11. Children

The Platform is not directed at children to sign up independently. Pediatric records may be processed when entered by a clinic with appropriate guardian consent and clinical necessity.

12. Your rights

Depending on your role and applicable law, you may have rights to access, correct, erase, withdraw consent, nominate another person to exercise rights in certain circumstances, and grievance redressal. Details and how to exercise these rights are in our Data rights page. You may also contact privacy@lampros.tech.

13. Cookies and similar technologies

Our websites use essential cookies for security and preferences (such as theme). We minimize non-essential tracking on the marketing site. You can control cookies through browser settings; some features may not work if essential cookies are disabled.

14. Changes to this policy

We may update this Privacy Policy from time to time. We will post the revised version with an updated date and, where changes are material, provide additional notice through the Platform or email.

15. Contact and grievance officer

Privacy enquiries: privacy@lampros.tech

Grievance officer (DPDP): grievance@lampros.tech

General contact: hello@lampros.tech