Last updated
Applies to
www.rhythmrx.ai
01
Who we are
RhythmRx Private Limited, B-15, 2nd Street, Ambattur Industrial Estate, Ambattur, Chennai 600058, India, is the data fiduciary responsible for the personal data described in this policy. Questions about this policy can be sent to contact@rhythmrx.ai.
02
What we collect
We collect only what we need to respond to you and to run our business relationships.
- Contact details you give us through the enquiry form, by email or by phone, including name, organisation, email address and telephone number.
- Information you choose to share about your device, its stage of development and what you need from us.
- Correspondence with us, including emails and meeting notes relating to a potential or active engagement.
- Technical information collected automatically when you visit this website, such as browser type, device type, approximate location derived from IP address and pages viewed.
03
Why we use it
We use personal data to respond to enquiries, to scope and deliver engagements, to meet our legal and regulatory obligations as a medical device company, and to improve this website.
We do not sell personal data, and we do not use enquiry data for advertising.
04
Legal basis
We process personal data where you have given consent, where processing is necessary to take steps at your request before entering a contract or to perform a contract, and where we have a legal obligation to retain records.
05
Clinical and patient data
Personal data relating to clinical research participants is not collected through this website. Where RhythmRx processes clinical data as part of a study, it is handled under the study protocol, the approvals granted by the relevant Ethics Committees, and the agreements in place with the sponsor and the participating sites.
06
Sharing
We share personal data only where it is necessary.
- With service providers who host our website, email and business systems, under contract and only for those purposes.
- With professional advisers where required.
- With regulators, auditors or notified bodies where we are legally obliged to do so.
07
Retention
We keep enquiry correspondence for as long as it is relevant to a potential or active engagement, and records connected to a delivered programme for as long as our quality system and applicable regulation require. Data that is no longer needed is deleted.
08
Security
RhythmRx operates an information security management system certified to ISO 27001. Access to personal data is restricted to people who need it, systems are access controlled, and security incidents are handled under a defined procedure.
09
Your rights
Subject to applicable law, you can ask us to do the following.
- Confirm what personal data we hold about you and provide a copy.
- Correct data that is inaccurate or incomplete.
- Delete data where we no longer have a reason to keep it.
- Withdraw consent where our processing relies on it.
- Raise a grievance about how your data has been handled.
Write to contact@rhythmrx.ai and we will respond within the period the applicable law allows.
10
Cookies
This website uses only what is needed to serve pages and understand aggregate usage. Where analytics or embedded content set cookies, you can control them through your browser settings.
11
Changes to this policy
If we change this policy we will update the date shown at the top of this page. Material changes affecting how we use personal data will be communicated to anyone with an active engagement.
12
Contact
Questions, requests and grievances relating to personal data should be sent to contact@rhythmrx.ai, or posted to the address above. Every request is logged and answered from that address within the period the applicable law allows.
Questions
Something here you need clarified?
Write to us and we will explain how your data is handled on a specific engagement.