Privacy Policy

This Privacy Policy explains how EMPE Diagnostics (“Company“, “EMPE“, “we“, “us“, or “our“), having its registered office at Bldg 2700, MN Park, Synergy Square 3, Svy Nos. 101, 101/2, Lalgadi Malakpet, Shameerpet, Medchal, Hyderabad, Telangana, India – 500078, collects, uses, processes, shares, and protects your personal data or information (“Data”) when you use our website https://empediagnostics.com/ (“Website”) and the services offered through the Website (“Services“).

By accessing or using the Website, you (“you“, “your“, or “user“) acknowledge that you have read and understood this Privacy Policy and agree to the collection and use of your Data in accordance with this Privacy Policy. If you are accessing or using the Website on behalf of another individual (e.g., a minor under your care), you represent and warrant that you have the legal authority to do so and to provide consent on their behalf. If you disagree with the terms of the Privacy Policy, please do not access or use the Website.

Unless defined here, terms used in this Policy have the meaning given in our Terms and Conditions, available at https://empediagnostics.com/ (“Terms”). We recommend reviewing this Privacy Policy along with the Terms.

This Privacy Policy is an electronic record in terms of Indian Contract Act 1872; the Information Technology Act 2000, the rules made thereunder; and the amended provisions pertaining to the electronic records in various other statutes as amended by the Information Technology Act, 2000 and is made available in accordance with the provisions of Digital Personal Data Protection Act, 2023. This electronic record is generated by a computer system and does not require any physical or digital signature.

1. Information we collect

When you interact with the Website or use our Services, we collect the following categories of Data for lawful purposes.

1.1. Information that you provide to us

This includes Data you voluntarily submit while using the Website or Services, such as:

  1. Registration and Account Information: Your name, email address, and login credentials when you create an account using email and password.
  2. Social Login Information: If you sign in using Google or Facebook, we receive your name and email address as shared by the respective platform in accordance with their privacy policies.
  3. Contact Information: Your name, mobile number, email address, and shipping/delivery address when you make an enquiry, place an order, request support, or interact with us.
  4. Communication Information: Content of queries, support requests, or any communications submitted by you to us via forms, emails, or other modes.
1.2. Payment related Information
  1. When you make a purchase, your payment is processed by authorized third party payment processors and we receive only limited payment related details such as transaction IDs, payment mode, transaction timestamp, and payment confirmation status.
  2. We do not store or process full payment card numbers, UPI PINs, net banking credentials, or any other sensitive financial data on our servers.
1.3. Automatically collected Information
  1. We may automatically collect technical information including IP address, browser type and version, device identifiers, operating system, and timestamp of access.
  2. We may collect usage information including Website pages, viewed, time spent, clickstream patterns, and interactions with the Website features, for improving performance and user experience.
  3. Such information may be collected through cookies, server logs, analytics tools and similar technologies.
1.4. Information received from third parties
  1. Order and delivery related information from logistics partners to fulfil your purchases.
  2. Authentication and verification related information from the social login providers

2. How we use your Data

2.1. We use your Data only for lawful purposes connected with your use of the Website and the Services, including: (a) To create and manage your user account, and to authenticate your identity when you log into the Website; (b) To process and fulfil orders placed by you, including delivery, returns, replacements, invoicing, and related support; (c) To process payments for purchases made by you on the Website through authorised third-party payment service providers and to maintain transaction records; (d) To communicate with you regarding your orders, enquiries, requests, support needs, or account-related matters; (e) To send marketing or promotional communications, where you have consented to receive such communications, and to enable you to opt-out as required under applicable laws; (f) To analyse user interactions, monitor security, improve Website performance, troubleshoot technical issues, and enhance the features and user experience of the Website; (g) To comply with legal, statutory, or regulatory obligations, including responding to lawful requests and ensuring compliance with tax, accounting, and consumer protection laws; (h) To protect and enforce our legal rights and remedies, including the Terms applicable to the Website; and (i) For any other purpose expressly disclosed to you at the time of Data collection or for which you provide consent.

2.2. We do not use your Data for automated decision-making or profiling that has a legal or significant impact on you, including profiling relating to behaviour, health status, or personal characteristics.

2.3. We process your Data only in accordance with the grounds permitted under the Digital Personal Data Protection Act, 2023. Such grounds include your consent where applicable including for marketing communications or the use of non-essential cookies. We also process your Data for the performance of a contract or provision of Services requested by you including creating and managing your user account, processing, and fulfilling orders, and responding to enquiries. In addition, we process Data to comply with legal or regulatory obligations including tax, accounting, and consumer protection requirements. We may also process Data for legitimate uses permitted under Section 7 of the DPDP Act including preventing fraud, ensuring network and information security, maintaining, and improving the Website, and safeguarding our rights and the rights of other users. We will also process your Data for any other purpose that is specifically disclosed to you at the time of collection and for which you provide consent where required.

3. Cookies

3.1. Cookies are small data files which are downloaded to your device through your web browser (if allowed). Cookies help websites recognize your browser and capture specific information. We: (a) may use cookies to enable essential Website functionality, such as navigation, login authentication, and retention of preferences; (b) may use analytics technologies to collect aggregated technical and usage information to understand user interaction, improve Website performance, and secure the Website.

3.2. Most cookies, referred to as “session cookies” are automatically deleted at the end of Your browsing session. You can choose to disable/block the cookies through your device / browser settings. If you have turned cookies off, you may be prevented from using certain features of the Website and this may interfere with certain functionality of the Website.

4. Disclosure of your Data

4.1. We do not sell your Data, however we may disclose your Data with third parties strictly on a need-to-know basis for lawful and legitimate purposes connected with the operation of the Website and the Services including:

  1. Service Providers: We may share your Data with third party vendors and service providers who support the Website and the Services, including cloud hosting, customer support, marketing support (where permitted), and analytics services.
  2. E- Commerce and Fulfilment Partners: Your Data may be shared with logistics providers, delivery partners, and product fulfilment service providers to process and deliver your orders.
  3. Payment Processors: Your Data may be shared with authorised payment gateway providers to process payments securely and in compliance with applicable legal and security standards.
  4. Social Login Partners: Where you chose to log in using a social account, we may share limited information necessary for authentication and account access.
  5. Legal or Regulatory Disclosures: We may disclose you Data where required by applicable laws, regulations, court orders, law enforcement request, or to protect the rights, interests, and safety of EMPE, users, or to the public.
  6. Business Transfers: In the event of a merger, acquisition, restructuring, or sale of assets, your Data may be transferred to the resulting entity, subject to continued protection consistent with this Privacy Policy.
  7. With your Consent: We may share your Data with third parties not covered above when you explicitly consent to such disclosure.

4.2. We ensure that all third parties who receive your Data are subject to appropriate confidentiality and data protection obligations consistent with applicable laws and industry best practices.

5. Payments and Third-Party Services

5.1. To facilitate secure and efficient payment processing, we integrate with trusted third-party payment gateway providers. When you initiate a payment on our Platform, your payment information, such as credit or debit card details, UPI IDs, or other payment credentials, is processed directly by the payment gateway providers. We do not store your complete payment details on our servers, however only limited transactional information necessary for record-keeping, fraud prevention, and compliance may be retained.

5.2. The payment gateways we use are compliant with applicable laws and standards, to ensure the security and confidentiality of your payment data. By choosing to use the payment services on our Platform, you acknowledge that your Data will be governed by the privacy policies of these third-party providers. We encourage you to review their privacy policies to understand how your payment information will be handled.

5.3. The Website may contain links to third-party websites or services, including but not limited to product catalogues, partner platforms, and advertising content. Such third-party platforms operate independently, and their privacy practices are not controlled by us. Your interaction with any third-party website or service is solely at your discretion and risk. We shall not be responsible or liable for the content, security, or Data handling practices of such third parties.

5.4. If you choose to log in using external social login services (such as Google or Facebook), the authentication and Data sharing process shall be governed by the respective third-party service provider’s terms and privacy policy.

6. Your rights in relation to your Data

6.1. Subject to applicable laws, including the Digital Personal Data Protection Act, 2023, you have the following rights in relation to your Data:

  1. Right to Access: You may request confirmation on whether we are processing your Data and request access to such Data.
  2. Right to Correction: You may request correction or updation of any inaccurate or incomplete Data. You can update certain information directly via your user account profile.
  3. Right to Deletion: You may request deletion of your Data, subject to legal, regulatory, or contractual retention requirements.
  4. Right to Withdraw Consent: Where Data is processed based on your consent, you may withdraw such consent at any time, however such withdrawal will not affect the lawfulness of processing prior to withdrawal. Withdrawal may affect your ability to use some or all of the Services.
  5. Right to Nomination: You may nominate another individual who may exercise your rights under this Privacy Policy in the event of your death or incapacity.
  6. Right to Grievance Redressal: You have the right to raise grievances or complaints regarding the processing of your Data with the Grievance Officer identified in Section 13 below, and to escalate such grievances in accordance with applicable laws.
  7. Right to Restrict or Object: Where applicable, you may object to or request restriction of Data processing in cases permitted under applicable law.

6.2. You can opt out of the promotional content we share with you by following the opt-out instructions provided in such emails. Please note that we may still send you emails about your user account or any Services you have requested or received from us.

7. Personal Data Breach Notification

If we become aware of a personal data breach that is likely to cause harm to you, we will notify you and the Data Protection Board of India (once established) without undue delay and in accordance with the requirements under the Digital Personal Data Protection Act, 2023. Where feasible, such notification will be made within 72 hours of becoming aware of the personal data breach.

8. Transfer of Data

We store and process your Data within India, however, certain third-party service providers engaged by us may store or process Data in jurisdictions outside India. By using the Website and the Services, you acknowledge and consent to the transfer, storage, and processing of your Data in accordance with this Privacy Policy and applicable laws, including the DPDP Act, 2023. We do not transfer your Data to any country or territory that the Government of India has notified as restricted for Data transfers. If such a transfer is required in future, we will seek your explicit consent or rely on permitted mechanisms under applicable laws. We take reasonable measures to ensure that any cross-border data transfer is subject to adequate data protection and security commitments, consistent with the level of protection required under applicable Indian data protection laws.

9. Data Security

We implement reasonable physical, technical, and administrative safeguards designed to protect your Data from unauthorized access, alteration, disclosure, or destruction, in compliance with applicable laws including the Information Technology Act, 2000 and the rules thereunder. Such safeguards may include encryption, firewalls, access control mechanisms, secure server infrastructure, and periodic security assessments.

You are responsible for maintaining the confidentiality of your login credentials and for all activities performed using your account. If you believe that your account or password has been compromised, you must notify us immediately using the contact details specified in this Privacy Policy. While we take reasonable measures to safeguard your Data, no method of electronic storage or transmission over the internet is completely secure and therefore we cannot guarantee absolute security of your Data.

10. Data Retention

We will keep your personal data as long as it is required to fulfil the purposes and for a reasonable time after your account on the Website or access to the Services ends, in line with our legal rights and obligations. However, we may retain Data: (i) if required to comply with any applicable law; (ii) if we believe it may be necessary to prevent fraud or future abuse; (iii) to enable us to exercise our legal rights and/or defend against legal claims; or (iv) for other legitimate purposes. We may continue to retain your data in anonymised form for analytical and research purposes.

11. Updates to this Privacy Policy

We may update or modify this Privacy Policy from time to time to reflect changes in legal requirements, technological advancements, or our data processing practices. Any changes to this Privacy Policy will be posted on the Website with the “Last Update” date revised accordingly. Where required under applicable laws, we will notify you of any material changes to this Privacy Policy. Your continued use of the Website after such updates shall constitute your acceptance of the revised Privacy Policy, where permitted by law. We encourage you to review this Privacy Policy periodically to stay informed about how your Data is being handled.

12. Minors

Our Website and Services are intended for individuals who can enter into a legally binding contract under the Indian Contract Act, 1872 (i.e., persons who are 18 years of age or older). We do not knowingly collect Data from individuals under 18 years without the consent of a parent or legal guardian. If you are a parent or legal guardian and believe that a minor under your care has provided Data to us without appropriate consent, you may contact us to request deletion or deactivation of the relevant account or Data. We reserve the right to restrict or terminate access to the Website or the Services if we determine that a user does not meet the eligibility criteria.

13. Grievance Redressal

If you have any queries, concerns, complaints, or requests regarding this Privacy Policy or the processing of your Data, please feel free to contact our designated Grievance Officer using the details provided below. The Grievance Officer shall acknowledge and address your grievance within the timelines prescribed under applicable laws.

Grievance Officer

    Monday to Friday, 10:00 AM to 6:00 PM IST

    About Us

    Founded in 2015, EMPE Diagnostics is a pioneering healthcare company based on innovations from the prestigious Karolinska Institutet in Sweden. We are dedicated to addressing the global TB crisis by developing rapid, reliable, and cost-effective diagnostic solutions. Our mission is to combat TB and AMR by providing tests that not only detect TB disease but also simultaneously profile AMR, ensuring patients receive the correct treatment from the onset.
    Cart (0 items)
    Select the fields to be shown. Others will be hidden. Drag and drop to rearrange the order.
    • Image
    • SKU
    • Rating
    • Price
    • Stock
    • Availability
    • Add to cart
    • Description
    • Content
    • Weight
    • Dimensions
    • Additional information
    Click outside to hide the comparison bar
    Compare