Legal · Privacy Policy

Privacy Policy

Last updated: 06 May 2026 · Effective immediately

NAIQ Health Tech Private Limited ("NAIQ", "we", "our", "us") respects your privacy and is committed to protecting your personal data. This policy explains what we collect, how we use it, and your rights under India's Digital Personal Data Protection Act, 2023 (DPDP Act), the EU's General Data Protection Regulation (GDPR), and other applicable laws.

1. Who We Are

NAIQ Health Tech Pvt. Ltd. is a private limited company incorporated in India, with its registered office in Raipur, Chhattisgarh. We are the Data Fiduciary (under DPDP Act) / Data Controller (under GDPR) for the personal data described in this policy.

2. What Data We Collect

CategoryExamplesCollected When
IdentityName, designation, company nameSign up, contact form, onboarding
ContactEmail address, phone numberSign up, onboarding, payment
ProfessionalIndustry, company size, revenue rangeOnboarding form (paid plans)
OperationalPain points, AI maturity, business goalsOnboarding questionnaire
PaymentRazorpay transaction ID (we do NOT store card details)Plan purchase
TechnicalIP address, browser, device, usage analyticsWhile browsing the site
AuthenticationFirebase Auth UID, session tokensSign in

3. How We Use Your Data

4. Lawful Basis for Processing

Under DPDP Act and GDPR, we process your data on the following legal grounds:

5. Data Sharing & Third Parties

We share data only with vetted service providers who help us run the platform:

We never sell, rent, or trade your personal data. We do not share data with advertisers or marketing partners.

6. International Data Transfers

Some service providers (Cloudflare, Resend) may process data outside India. We ensure transfers are protected by Standard Contractual Clauses or equivalent safeguards. By using our service, you consent to such transfers where lawful.

7. Data Retention

Data TypeRetention Period
Account dataUntil account deletion + 90 days
Payment records8 years (mandatory under Indian tax law)
Onboarding submissions3 years from engagement completion
Email communications2 years
Analytics/logs12 months

8. Your Rights

Under DPDP Act and GDPR, you have the right to:

To exercise any of these rights, email us at hello@naiq.in. We respond within 30 days.

9. Security

We implement industry-standard security measures, including HTTPS encryption, Firebase security rules, role-based access controls, and regular security reviews. However, no system is 100% secure — please use strong passwords and avoid sharing credentials.

10. Children's Data

NAIQ is a B2B platform. We do not knowingly collect data from anyone under 18. If you believe a minor has shared data with us, contact us for immediate removal.

11. Cookies

We use essential cookies for authentication (Firebase Auth) and session management. We do not use advertising or tracking cookies. By using the site, you consent to essential cookies.

12. Changes to This Policy

We may update this policy as our services evolve or laws change. The "Last updated" date at the top will reflect any changes. Material changes will be communicated via email or a banner on our site.

📧 Contact Us — Data Protection Officer

NAIQ Health Tech Pvt. Ltd.

Raipur, Chhattisgarh, India

Email: hello@naiq.in

Website: naiq.in