HealthInTime — Smart Patient Queue Management · Contact us
Legal

Privacy Policy

Effective date: January 1, 2026

Last updated: September 27, 2026

Applies to: HealthInTime iOS & Android applications · Bundle ID: app.loopdoop.healthintime

1. Introduction

This Privacy Policy explains how HealthInTime ("HIT", "we", "us", "our") collects, uses, stores, shares, and protects your information when you use the HIT mobile application. HIT is a patient queue management and doctor appointment booking service operated for users in India.

By downloading, installing, or using HIT, you agree to the practices described in this policy. If you do not agree, please do not use the app.

This policy is designed to comply with Apple's App Store Review Guidelines, Google Play policies, the Digital Personal Data Protection Act, 2023 (DPDP Act) of India, and Apple's App Tracking Transparency framework.

2. Information we collect

2.1 Account information

When you sign up or sign in, we collect:

2.2 Location data

HIT uses your device's location for the following purposes:

How location data is handled: Your real-time GPS coordinates are used on-device to display nearby clinics and calculate distances. Location data is not stored on our servers after check-in is confirmed. Clinic addresses and coordinates (stored in our database for display purposes) are static data provided by clinic administrators — not derived from your personal location.
"When In Use" vs "Always" permission: HIT requests "Always" location access only if you opt into the auto check-in feature. If you decline, HIT will still function — but you will need to open the app manually to check in upon arrival. You can change this at any time in your device settings.

2.3 Bluetooth (BLE) data

HIT uses Bluetooth Low Energy (BLE) beacons as a fallback mechanism for detecting clinic arrival in situations where GPS accuracy is poor (for example, inside buildings or in dense urban areas).

2.4 Appointment and health-adjacent data

HIT does not collect clinical medical records, diagnoses, prescriptions, or lab results at this time.

2.5 Device and diagnostic information

2.6 Notification tokens

2.7 Voice AI Booking (Phone Channel)

Patients who call a participating clinic's number may be connected to HIT's automated voice assistant, which books appointments on the clinic's behalf. For this feature:

3. How we use your information

We use the information we collect to:

We do not use your data for advertising, profiling, or any purpose unrelated to providing the HIT service.

4. Data sharing and third parties

We do not sell your personal information to anyone.

We share data only in the limited circumstances below:

Shared withWhat & why
The clinic you bookYour name, age, gender, contact number (if provided), and token number — so they can prepare for your consultation
Google FirebaseFirestore, Authentication, Cloud Messaging, Crashlytics, App Check — backend storage, auth, push notifications, crash reporting
Google AnalyticsAnonymous usage patterns, device information, and engagement metrics — to understand and improve the user experience. No personally identifiable information is shared.
Google Maps SDKDisplay interactive maps showing clinic locations and calculate routes/directions to clinics
Google Places APISearch for clinics and healthcare facilities by name, category, or area; retrieve clinic details such as name, address, and location; auto-complete address inputs
Google Geocoding APIConvert clinic addresses to geographic coordinates for map display, and convert coordinates to readable addresses
Google Cloud Vertex AI (Gemini Live) & Cloud Speech-to-Text / Text-to-SpeechAutomated phone booking assistant — voice audio is processed transiently on US/EU region servers and immediately discarded (not stored). Google Cloud acts as a Data Processor and does not use this data to train its models.
Apple APNsDeliver push notifications on iOS
Legal authoritiesOnly when required by a valid legal request under the DPDP Act 2023 or other applicable Indian law

Google Maps Platform services (Maps SDK, Places API, Geocoding API) are subject to Google's Privacy Policy. When you interact with maps in HIT, Google may collect certain technical data (such as IP address and device identifiers) in accordance with their own policies.

We do not share your data with advertisers, data brokers, or analytics networks.

5. Data security

While we take reasonable security measures, no system is completely secure. If a data breach affects your information, we will notify you as required by the DPDP Act.

6. Data retention

Data typeRetention period
Account dataRetained as long as your HIT account is active
Appointment historyUp to 24 months, to provide a consultation history feature
Crash logs & diagnosticsUp to 90 days
After account deletionPersonal data deleted within 30 days, except where required by law

7. Your rights

Under the DPDP Act 2023 and platform guidelines, you have the right to:

How to delete your account

You can delete your account in two ways:

  1. Inside the app — go to Profile → Settings → Delete Account
  2. Via web form — submit a deletion request

Account deletion is permanent and cannot be undone.

8. Children's privacy

HIT is not intended for use by children under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us immediately and we will take steps to delete the information.

For users between 13 and 18, we recommend that a parent or guardian help create the account and review this policy.

9. International data transfers

Patient booking records and account data are stored in India (Google Cloud asia-south1, Mumbai).

For the automated phone booking assistant only, voice audio is processed in real time on Google Cloud servers located outside India (US/EU region), because the required AI voice service is not yet available in India. This audio is processed in memory and immediately discarded — nothing is stored abroad. We will migrate this processing to India once the service becomes available in the Indian region.

This cross-border processing is permitted under Section 16 of the DPDP Act, 2023 (no country to which we transfer data is on the Government of India's restricted list), and is subject to Google Cloud's Data Processing Terms. By consenting at the start of the call, you agree to this processing.

10. App Tracking Transparency

HIT does not track you across apps and websites owned by other companies. We do not use the iOS Advertising Identifier (IDFA) or Android Advertising ID, and we do not serve third-party advertisements.

11. Third-party services

HIT integrates with the following third-party services, each governed by their own privacy policies:

ServicePurposePrivacy policy
Google FirebaseAuth, Firestore, Storage, FCM, Crashlytics, App Checkfirebase.google.com/support/privacy
Google AnalyticsAnonymous usage analytics and engagement metricspolicies.google.com/privacy
Google Maps SDKInteractive maps, directions, and distance calculationspolicies.google.com/privacy
Google Places APIClinic search, place details, and address auto-completepolicies.google.com/privacy
Google Geocoding APIAddress-to-coordinate and coordinate-to-address conversionpolicies.google.com/privacy
Sign in with AppleUser authentication on iOSapple.com/legal/privacy
Sign in with GoogleUser authenticationpolicies.google.com/privacy
Google Play Integrity APIApp attestation on Android (via Firebase App Check)policies.google.com/privacy
Apple DeviceCheckApp attestation on iOS (via Firebase App Check)apple.com/legal/privacy

12. Changes to this policy

We may update this Privacy Policy from time to time. If we make material changes, we will notify you through the app or via email before the changes take effect. The "Last Updated" date at the top of this policy indicates when it was most recently revised.

13. Contact us

Email

healthintime@airivon.com

Developer

HealthInTime by Airivon Labs

App bundle ID

app.loopdoop.healthintime

For formal complaints under the DPDP Act 2023, you may also contact the Data Protection Board of India.