This Privacy Policy explains how Nutri Physician ("we", "us", "our") collects, uses, stores and protects the personal and health information of clients, prospective clients and website visitors. It is written in compliance with India's Digital Personal Data Protection Act, 2023 (DPDP Act) and applicable healthcare confidentiality norms.
01Who we are
Nutri Physician is a dietitian-led nutrition therapy service based in Bengaluru, India. We provide online consultations, personalised meal plans and ongoing dietary support to clients in India and abroad.
Contact for privacy concerns:
Email: support@nutriphysician.in
Phone: +91 99805 99949 / +91 76760 71118
Address: Bengaluru, Karnataka, India
02What information we collect
(a) Information you give us
- Identity: Name, age, gender, contact details, email address, WhatsApp number.
- Health information: Medical history, current medications, blood reports and other lab tests, allergies, dietary preferences, lifestyle and physical activity details, weight, height, body composition.
- Family medical history where relevant to your care.
- Payment information processed by third-party payment providers (we do not store full card or banking details).
- Communication: Messages, voice notes, photos of meals and any other content you share with us during consultations.
(b) Information we collect automatically
- Basic website analytics: pages visited, device type, approximate location, referral source.
- Cookies and similar technologies used to make the website work and to understand traffic. You can disable cookies in your browser.
03How we use your information
We use your information solely to:
- Build and deliver your personalised dietary plan.
- Track your progress and adjust your plan as needed.
- Communicate with you about your plan, appointments and follow-ups.
- Send you support material (cookbooks, grocery lists, summaries for your physician) you've requested.
- Process payments and issue receipts/invoices.
- Improve our services in aggregate (using de-identified data only).
- Comply with legal, regulatory or tax obligations.
We do not use your data for advertising, profiling or any third-party marketing.
04Who we share information with
We treat your health information as confidential. We share it only:
- With you — at any time, on request.
- With your treating doctor or hospital — only when you authorise it (for example, when we prepare a monthly summary for your physician).
- With our trusted service providers who process information on our behalf (cloud storage, scheduling, email, payments). These providers are contractually bound to protect your data and use it only for the purposes we specify.
- When required by law — court orders, regulatory enquiries, fraud investigations.
We never sell your personal or health information to any third party.
05How long we keep your data
- Active client records: retained for the duration of your engagement and for up to 5 years after your last consultation, so we can support you under our lifetime free-consultation commitment.
- Payment records: retained as required by tax law (typically 7 years).
- Marketing or website-only contact (no consultation taken): up to 24 months.
You can request deletion of your data at any time (subject to legal retention requirements above).
06Security
We use industry-standard administrative, technical and physical safeguards to protect your data — including encrypted storage, access controls, password protection on consultation records and trusted cloud providers. No system is 100% secure, but we take our duty of care seriously and review our practices regularly.
07Your rights under the DPDP Act, 2023
As a Data Principal under Indian law, you have the right to:
- Access — receive a copy of the personal data we hold about you.
- Correct — update inaccurate or outdated information.
- Delete — request deletion of your data (subject to legal retention requirements).
- Withdraw consent — withdraw consent to any specific use of your data at any time.
- Grievance redressal — escalate to our Grievance Officer (below).
To exercise any of these rights, email us at support@nutriphysician.in. We will respond within 30 days.
08Children's data
We do not knowingly provide services to anyone under the age of 18 without explicit parental or guardian consent. Where we work with a minor (e.g., paediatric nutrition cases), the parent/guardian is the primary consent-giver and data controller.
09International clients
If you are based outside India, your information will be processed in India under Indian law. By using our services, you consent to this transfer. We endeavour to keep your data safe regardless of jurisdiction.
10Cookies
Our website uses minimal cookies — only for essential functions (such as remembering form input) and basic, anonymised analytics. We do not use advertising or tracking cookies. You can disable cookies in your browser; the website will continue to function normally.
11Changes to this policy
We may update this Privacy Policy to reflect changes in our services, technology or applicable law. The "Last updated" date above will always reflect the latest version. For material changes, we will notify active clients by email.
12Grievance Officer
In line with the DPDP Act, our Grievance Officer can be reached at:
Email: support@nutriphysician.in
Subject line: "Privacy Grievance — [your name]"
We will acknowledge your concern within 7 days and resolve it within 30 days.
Questions about your data?
Reach out and we'll walk you through exactly what we hold and how.