Privacy Policy

Oha Research Pvt Ltd (“We”, “Our”, or “Oha Research”), is a company having its registered business in India. We own and operate OHA Ehr (Hospital) (Package Name: com.oha.ehr), the website www.oha.in, and associated mobile applications (“Portal”). We are committed to protecting the privacy and security of personal data belonging to and/or shared by users of the Portal, including but not limited to healthcare providers, doctors, clinic administrators, and patients (“User”, “You”, or “Your”).

We value Your privacy and advise You to carefully read this privacy policy (“Privacy Policy”). This Privacy Policy describes the types of personal data or personal information we collect, how we use the information, how we process and protect it, for how long we store it, with whom we share it, and the rights individuals can exercise regarding our use of their personal data.

This Privacy Policy is also strictly designed to comply with the Google Play Developer Programme Policies (including the Health Apps policy and User Data policy), the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Information) Rules, 2011, and the Digital Personal Data Protection Act, 2023.

By visiting and/or accessing the Portal, using the OHA Ehr (Hospital) application, or sharing personal information with us, You explicitly consent and agree to the Privacy Policy laid out herein.

1. Consent

We request You to carefully read this Privacy Policy and Our Terms of Use before sharing personal information with us.

By providing Us Your personal information yourself, or by making use of the Services provided through the Portal, You hereby acknowledge and provide express consent for the collection, receipt, storage, use, processing, disclosure, and transfer of Your personal information in accordance with the provisions of this Privacy Policy.

Collection, use, and disclosure of information which has been designated as “Personal Information” under the Information Technology Rules, 2011 requires the express consent of the User. By affirming Your assent to this Privacy Policy, You provide Your consent to Oha Research for such use. You have the choice, free from coercion, to not access the Portal if you do not agree.

2. Health App Declaration & Medical Data

OHA Ehr (Hospital) is designated as a Health and Medical application. Our primary purpose is to provide an Electronic Health Record (EHR) and Practice Management System for doctors and a healthcare discovery/booking platform for patients.

2.1 Medical Data Collected

Through the app, doctors and patients may input, manage, and store sensitive patient health data (Protected Health Information or PHI), including:

  • Patient medical history, consultation records, and clinical notes.
  • Vitals and measurements (e.g., Blood Pressure, Fever, Weight, CDC/WHO growth charts).
  • Medical prescriptions, treatment plans, and diagnostic reports.

2.2 Use & Restrictions of Health Data

  • Core Functionality: Health data is collected strictly to facilitate the core functionality of the app—enabling doctors to manage their practice, prescribe treatments, track patient health, and generate invoices.
  • No Unauthorized Sharing: We do not sell, rent, or trade Protected Health Information (PHI) or any user data to third parties. We do not use health data for advertising, marketing, or any other unapproved purposes.
  • Medical Disclaimer: This app is a tool for licensed medical professionals and a record-keeping tool for patients. It does not replace professional medical advice, diagnosis, or treatment.

3. Collection of Personal Information

“Personal Information” includes ‘sensitive personal data or information’ (as defined under applicable Indian law) and other information that You share with Us.

3.1 Users (Doctors and Patients)

We may collect information such as Your name, medical registration details, clinic address, email, phone number, medical records and physical/mental health condition.

3.2 Non-Personal Information

Information such as the type of internet browser, operating system, IP address, and app usage metrics may be picked up automatically by the use of certain technologies, such as cookies, to improve Our service.

3.3 Device Permissions & Hardware Access

To provide our Services, OHA Ehr requires the following permissions. A prominent disclosure is shown to the user before requesting sensitive permissions.

Location Permissions (ACCESS_COARSE_LOCATION, ACCESS_FINE_LOCATION)

OHA Ehr needs access to your location to help securely register physical clinic coordinates for patient discovery and verify operational areas. Location data is only accessed when the app is in use (foreground). We do not scan your location in the background secretly.

Camera & Audio Permissions (CAMERA)

Required to facilitate updating profile photos, scanning QR codes, or capturing images of physical medical records to digitize them. Images are only saved when explicitly requested by the user.

Storage Permissions (READ_EXTERNAL_STORAGE, WRITE_EXTERNAL_STORAGE)

Read permissions allow you to safely upload and attach existing medical reports (PDFs/Images) to patient files. Write permissions allow the app to securely download and save generated PDF prescriptions, charts, and invoices to your device. We do not scan any other files from your storage system other than the files you explicitly upload.

Internet & Notifications (INTERNET, POST_NOTIFICATIONS)

Required to sync data securely with cloud servers in real-time and send crucial queue updates or appointment reminders.

4. Cookies

Cookies are alphanumeric identifiers stored on the User's device. Our Portal uses these “cookies” to collect information and improve Our service (such as retaining your login state). Please note, a cookie in no way gives Us access to Your device. You can choose to reject cookies in your web browser, but this may affect certain features of the Portal.

5. User's Rights (Access, Withdrawal, & Deletion)

All information provided to Oha Research is voluntary. Users have the right to withdraw consent at any time, but withdrawal will not be retroactive.

5.1 Access and Modification

Users can access, modify, and correct their Personal Information directly through the app settings or by emailing us at support@oha.in.

5.2 Account and Data Deletion

You have the right to delete your OHA Ehr (Hospital) account and associated personal data.

To request account deletion, please visit our secure Data Deletion Portal at: https://www.oha.in/user-delete-request

Alternatively, you can email us directly at support@oha.in with the subject line “Account Deletion Request”. We will process your request within 30 days.

5.3 Health Data Retention for Legal Compliance

Important:

Due to strict medical and healthcare regulatory requirements (such as the Clinical Establishments Act and tele-medicine guidelines), certain data cannot be immediately deleted. Even if a user deletes their account, patient health records, prescriptions, and financial transaction logs (invoices) may be securely archived and retained for the minimum period required by local healthcare laws. Retained data will only be accessible for legal compliance, auditing, or dispute resolution purposes.

6. Opt Out

Oha Research may send You notifications regarding promotional offers or new features. You always have the option to opt-out by clicking the unsubscribe link in our emails. If You opt out of promotional emails, We may still send You critical, non-promotional emails, such as OTPs, appointment confirmations, or billing receipts.

7. Data Security Measures

We implement industry-standard administrative, physical, and technical safeguards to protect PHI and personal data from unauthorized access, alteration, disclosure, or destruction.

  • All data transmission between the app and our servers is encrypted using HTTPS/TLS.
  • Sensitive data stored on our servers is encrypted at rest.
  • Access to database systems is restricted to authorized personnel.

8. Amendment

Oha Research reserves the right to amend this Privacy Policy as and when required to comply with new Google Play Developer Programme Policies or Indian legal frameworks. Your continued use of the Portal shall be deemed to be Your acceptance of such changes.

9. Grievance Redressal

In compliance with the Information Technology Act, 2000 and the rules made thereunder, we have appointed a Grievance Officer.

If you have any questions, comments, or concerns about this Privacy Policy, or wish to exercise any of your rights (including data deletion or correction), you can contact our Grievance Officer:

Grievance Officer / Data Protection Officer

Oha Research Pvt Ltd

Email: support@oha.in

Phone: +91 9460604040

Website: https://www.oha.in/

This policy is effective as of the date of publication. Continued use of the Portal after changes constitutes acceptance of the revised policy.

    Oha (Oha Research pvt ltd)

    Empower your practice with OHA, the ultimate doctor's companion! From seamless appointment management to AI-powered diagnostics and real-time revenue insights, OHA puts everything you need at your fingertips.

    Quick Links

    About UsPrivacy PolicyTerms & conditionsRefund PolicyContactdelete your account

    Contact Us

    phone icon

    +91 9460604040

    email icon

    support@oha.in

    © 2025 Oha (Oha Research pvt ltd) — Copyright All rights reserved.