We commit to safeguarding the privacy of our website visitors and
users of the Gleeo Health™ products and services (collectively
“Services”).
This policy applies where we are acting as a “Data Controller” with
respect to the personal data processed through the use of our
Services; in other words, where we determine the purposes and means of
the processing of that personal data as part of our offering.
We have establishments in India (Gleeo Health Pvt Ltd.).
For data processing for the Gleeo Health™ services
(www.Gleeohealth.com and associated Gleeo Health™ products) and all
other services provided by Gleeo Health Pvt Ltd., Gleeo Health Pvt
Ltd. is the Data Controller.
By using our website from any access point, you consent to our use of
cookies in accordance with the terms of this policy.
In this policy, “we”, “us” and “our” refer to Gleeo Health.
In this policy, “you” and “your” may refer to you or to the data
subjects for which you are processing personal data, depending on the
nature of the context.
2. How we use your personal data
In this section we have included:
the general categories of personal data that we may process;
in the case of personal data that we did not obtain directly from you,
the source and specific categories of that data;
the purposes for which we may process personal data; and
the legal bases of the processing.
Service Data: We may process your personal data
provided in the course of the use of our Services (e.g., name, email,
gender, DOB, biometric or health data). Basis: Consent
(for private users) or Legitimate Interest (when you act as a data
controller).
Usage Data: We may process data about your use of our
website and Services (e.g., IP address, browser type, device, session
length) via cookies and analytics. Basis: Legitimate
Interest (monitoring & improving our Services).
Traffic Data: We may process network traffic data
(e.g., IP address, browser version) to troubleshoot and improve our
Services. Basis: Legitimate Interest.
Audit Log Data: We may log who accessed which Service
Data and when, for investigative and compliance purposes. Basis:
Legal requirement (MoHFW India, HIPAA USA).
Business Account Data: We may process account details
provided by you or your organization to operate our website and
Services. Basis: Contract performance or Legitimate
Interest.
Inquiry Data: We may process any questions you submit
about our goods or Services. Basis: Legitimate Interest
(to respond and market relevant offerings).
Transaction Data: We may process purchase and payment
details to fulfill orders and maintain records. Basis:
Contract performance and Legal obligation.
Notification Data: We may process your opt‑in
information for email/newsletter delivery. Basis:
Consent.
Correspondence Data: We may process any
communications you send us, including support requests. Basis:
Legitimate Interest (service administration).
Regulatory Data: We may record incidents or
complaints for internal reporting and regulatory compliance. Basis:
Legal requirement.
Feedback Data: We may use feedback you submit for
marketing materials and social media. Basis: Consent.
Legal Claims: We may process data necessary for the
establishment, exercise, or defense of legal claims. Basis:
Legitimate Interest.
Vital Interests: We may process data to protect your
or another person’s vital interests. Basis: Legitimate
Interest.
Compliance & Obligations: We may process any personal
data to comply with legal obligations or to safeguard vital
interests. Basis: Legal requirement / Legitimate
Interest.
3. Automated decision-making
We or our Services may automate parts of decision processes, but we
will not use your personal data for the purposes of automated
decision-making.
Decision processes may analyze your personal data to determine whether
you will be subject to personalized reports, features, alerts,
notifications, and invites to product testing.
Decision processes may analyze your personal data to determine whether
you will be subject to personalized marketing of products, features,
events and services we believe may be of interest to you.
4. Providing your personal data to others
We typically avoid disclosing your personal data but may do so as
outlined below.
We may disclose your personal data to any member of our corporate
group where necessary.
We may disclose your Service Data to your healthcare provider when
devices are synced during appointments.
We may disclose your personal data to suppliers or subcontractors as
needed, with additional restrictions on Service Data.
We share Transaction Data with payment providers for processing,
refunds, and queries.
We may disclose Inquiry Data to service providers to respond and
market relevant offerings.
We may disclose your data to third-party apps (e.g., Apple HealthKit)
only with your consent.
We may disclose personal data to comply with legal obligations or
protect vital interests, or for legal claims.
5. International transfers of your personal data
If you are outside India, your Service Data is stored in India under
MoHFW (India) and HIPAA (USA) regulations.
We use service providers outside India, protected by standard
contractual clauses, Binding Corporate Rules, or your consent.
6. Retaining and deleting personal data
We retain personal data only as long as necessary for its purpose.
Retention periods:
Service & Usage Data: while account is active + 30 days
post-termination.
Traffic Data: up to 30 days.
Audit Log Data: up to 10 years.
Business Account Data: active relationship + 12 months
post-termination.
Inquiry & Correspondence Data: until resolution + 24 months.
Transaction Data: minimum 7 years + 1 year.
Notification Data: active account + 30 days post-withdrawal.
Regulatory Data: 10 years + 12 months.
We may retain data longer to comply with legal obligations or protect
vital interests.
7. Security of personal data
We implement technical and organizational measures to secure your data
and prevent loss, misuse, or alteration.
All electronic personal data is encrypted; physical data is stored
securely.
Transactions are protected by encryption technology.
You are responsible for keeping your password confidential; we will
never ask for it.
Blocking cookies may impair usability and features.
17. Gleeo Health’s right to processing of anonymized data
We may anonymize submitted data for statistical, clinical, and
demographic analysis. Anonymized data is non-personally identifiable
and can be handled freely.
18. Our details
Registered in India as Gleeo Health Pvt Ltd. at 42, State Bank Colony,
Delhi, India.
Principal place of business: same registered office.
Contact us:
By post: above address.
Via our website contact forms.
By phone: number on our website.
By email: support@Gleeohealth.com for privacy matters.
19. Data protection officer
Our Data Protection Officer can be reached at support@Gleeohealth.com.
Thank you for taking the time to read our Privacy Policy. Should you
have any questions or concerns, don’t hesitate to contact us.