Last Updated: 01-Nov-2024
1. Introduction
Welcome to xMed EMR, a software service provided by Experts InfoTech (Pvt) Ltd ("we," "us," or "our"). We are committed to protecting the privacy and security of your information. This Privacy Policy explains how we collect, use, disclose, and safeguard your data when you use our Electronic Medical Record (EMR) solution.
By accessing or using xMed EMR, you agree to this Privacy Policy.
2. Information We Collect
To provide our services effectively, we collect the following types of information
- Account Information: Name, email address, phone number, job title, and practice/hospital name provided during registration.
- Patient Data: Sensitive health information (PHI), medical history, lab results, prescriptions, and appointment details entered into the system by authorized users.
- Payment Information: Billing details (processed via secure third-party payment gateways; we do not store full credit card numbers).
- Technical Data: IP address, device information, browser type, and usage logs to ensure system stability and security.
3. How We Use Your Information
We use the collected data for the following purposes:
- Service Delivery: To provide, maintain, and improve the xMed EMR platform.
- Patient Care: To enable authorized healthcare providers to access and manage patient medical records efficiently.
- Security: To detect, prevent, and address technical issues, fraud, or unauthorized access.
- Communication: To send you important updates, security alerts, and support notices regarding your account.
- Legal Compliance: To comply with applicable laws, regulations, and legal processes.
4. Data Sharing and Disclosure
We respect your privacy and do not sell your personal data. We may share data only in the following circumstances:
- Authorized Personnel: With your explicit permission or as necessary for the healthcare providers within your organization to perform their duties.
- Service Providers: With trusted third-party vendors who assist us in operating the platform (e.g., cloud hosting providers, data analytics) under strict confidentiality agreements.
- Legal Requirements: If required by law, court order, or government regulation, or to protect our rights, property, or safety.
5. Data Security
We implement industry-standard security measures to protect your data, including:
- Encryption: Data is encrypted both in transit (SSL/TLS) and at rest.
- Access Controls: Strict role-based access controls ensure only authorized personnel can access sensitive information.
- Auditing: Regular security audits and monitoring to prevent data breaches.
While we strive to use commercially acceptable means to protect your data, no method of transmission over the internet is 100% secure.
6. Data Retention
We retain your data for as long as necessary to provide the xMed EMR service and comply with our legal obligations. If you delete your account, we will securely dispose of your data or anonymize it in accordance with applicable data retention laws.
7. Your Rights
Depending on your location, you may have the following rights regarding your data:
- The right to access and update your personal information.
- The right to request deletion of your account (subject to legal retention requirements for medical records).
- The right to opt-out of non-essential marketing communications.
8. Changes to This Policy
Experts InfoTech (Pvt) Ltd reserves the right to update this Privacy Policy periodically. We will notify users of significant changes by posting the new policy on our website or via email.
9. Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us:
- Company: Experts InfoTech (Pvt) Ltd
- Email: info@xmed.pk
- Website: https://xmed.pk
- Address: P-19, Block-E, Millat Town, Faisalabad.