医药咨询隐私政策
Medical Consultation Privacy Policy
医药咨询隐私政策
生效日期:2022年01月04日
更新日期:2024年01月06日
一、我们如何收集和使用您的信息
我们仅收集为您提供医药咨询服务所必需的信息,包括:
– 基本信息:姓名、联系方式、职业(如医生/患者/机构人员)。
– 健康信息:疾病史、用药记录、过敏史、检查报告(仅限咨询所需)。
– 设备信息:IP地址、浏览器类型(用于安全防护)。
使用目的:
– 提供医药咨询、药品安全反馈;
– 履行法律法规要求(如不良反应报告);
– 保障服务安全(如防欺诈)。
二、信息存储与保护——数据境内留存承诺
为充分保障您的个人信息安全与国家数据主权,我们郑重承诺:
1. 数据本地化存储
您在使用医药咨询服务过程中提供的所有个人信息(包括但不限于基本资料、健康信息、咨询记录等),均存储于中国境内的服务器,不会被传输、存储至境外。
2. 严格限制跨境传输
我们理解医疗健康数据的敏感性,不会以任何形式将您的个人信息发送至境外,包括境外关联公司、分支机构或第三方合作方。
仅在法律法规有明确要求(如国际公共卫生协作并经国家网信部门安全评估)且获得您的单独书面授权时,才可能进行数据出境,否则一律严格遵守境内存储原则。
3. 存储期限
服务结束后,您的个人信息将保留2年,以备可能的追溯或监管核查。法律法规有更长期限要求的,从其规定。到期后,我们将对相关数据进行删除或匿名化处理。
4. 安全措施
采用加密技术(传输/存储)、访问权限控制、定期安全审计,防止数据泄露、篡改或丢失。
三、信息共享与披露
我们不会向无关第三方共享您的信息,但以下情况除外:
– 必要合作方:如技术支持服务商,需签署保密协议并仅限处理必要数据。
– 法律要求:根据监管部门(如药监局、卫健委)要求,披露不良事件或质量投诉信息。
– 获得同意:经您明确授权的共享(如转诊需求)。
四、您的权利
您有权:
– 查询/更正:通过账户中心查看或修改个人信息。
– 删除:要求删除不再需要的个人信息(法律保留数据除外)。
– 撤回同意:关闭个性化服务或撤回隐私授权(不影响撤回前的处理合法性)。
– 投诉:联系隐私专员(邮箱:bob@novoroad.com)或向监管部门反馈。
五、敏感信息特别提示
– 健康信息属于敏感个人信息,我们仅在提供咨询、药品安全监测等必要场景使用,并采取严格保护措施。
– 不主动收集未成年人(14岁以下)信息;因医疗需求需收集时,需监护人同意。
六、政策更新
我们可能根据服务调整或法规变化更新本政策,更新内容将通过官网公告或弹窗提示告知。
七、联系我们
如对本政策有疑问,请通过以下方式联系:
– 邮箱:bob@novoroad.com
– 电话:(+86)13901313075(工作日9:00-18:00)
温馨提示:使用我们的服务即表示您理解并同意本隐私政策。我们承诺,您的数据将严格存储于中国境内,不会出境,切实保障您的隐私权益与国家数据安全。如需完整版政策或具体条款说明,可联系客服获取。
特别声明:根据中国法律法规要求,我们郑重承诺,所有用户数据(含个人信息与健康信息)均存储于中国境内,不会转移至境外。我们不会向境外任何机构、组织或个人提供您的数据,除非获得您的单独授权或法律另有明确规定。
Medical Consultation Privacy Policy
Effective Date: January 04, 2022
Last Updated: January 06, 2024
I. How We Collect and Use Your Information
We only collect information that is necessary to provide you with medical consultation services, including:
- Basic Information: Name, contact details, occupation (e.g., doctor/patient/institutional personnel).
- Health Information: Medical history, medication records, allergy history, examination reports (limited to what is necessary for the consultation).
- Device Information: IP address, browser type (used for security protection).
Purposes of Use:
- To provide medical consultation and drug safety feedback;
- To fulfill legal and regulatory obligations (e.g., adverse drug reaction reporting);
- To ensure service security (e.g., anti-fraud measures).
II. Information Storage and Protection — Commitment to Domestic Data Retention
To fully protect your personal information and national data sovereignty, we solemnly commit:
- Localized Data Storage
All personal information you provide during the use of our medical consultation services (including but not limited to basic information, health information, consultation records, etc.) is stored exclusively on servers located within the People’s Republic of China and will not be transmitted or stored outside China. - Strict Restrictions on Cross-Border Transfer
Recognizing the sensitivity of medical and health data, we will not transmit your personal information outside China in any form, including to overseas affiliates, branches, or third-party partners.
Cross-border data transfer will only occur if explicitly required by laws and regulations (e.g., international public health cooperation subject to security assessment by the national cyberspace administration) and with your separate written consent. Otherwise, we strictly adhere to the principle of domestic storage. - Retention Period
After the service ends, your personal information will be retained for 2 years to allow for potential tracing or regulatory audits. If laws and regulations require a longer retention period, we will comply with those requirements. Upon expiration, relevant data will be deleted or anonymized. - Security Measures
We employ encryption technology (for transmission and storage), access control, and regular security audits to prevent data breaches, tampering, or loss.
III. Information Sharing and Disclosure
We will not share your information with unrelated third parties, except in the following cases:
- Necessary Partners: Such as technical support providers, who must sign confidentiality agreements and process only necessary data.
- Legal Requirements: Disclosure of adverse events or quality complaints as required by regulatory authorities (e.g., NMPA, NHC).
- With Consent: Sharing explicitly authorized by you (e.g., for referral purposes).
IV. Your Rights
You have the right to:
- Access/Correction: View or modify your personal information through the account center.
- Deletion: Request deletion of personal information that is no longer needed (except data required to be retained by law).
- Withdraw Consent: Disable personalized services or withdraw privacy authorizations (without affecting the lawfulness of processing prior to withdrawal).
- Complaint: Contact our privacy officer (email: bob@novoroad.com) or report to relevant regulatory authorities.
V. Special Notice on Sensitive Information
- Health information is sensitive personal information. We use it only in necessary scenarios such as providing consultations and drug safety monitoring, with strict protection measures in place.
- We do not actively collect information from minors under 14 years of age. If collection is required for medical purposes, guardian consent is mandatory.
VI. Policy Updates
We may update this policy in response to changes in services or regulations. Updates will be announced via our official website or pop-up notifications.VII. Contact UsIf you have any questions about this policy, please contact us through:
- Email: bob@novoroad.com
- Phone: (+86) 13901313075 (Monday–Friday, 9:00–18:00)
Warm Reminder: By using our services, you acknowledge that you have read, understood, and agree to this Privacy Policy. We commit that your data will be strictly stored within China and will not be transferred outside China, effectively safeguarding your privacy rights and national data security. For the full version of the policy or clarification of specific terms, please contact customer service.Special Declaration: In accordance with Chinese laws and regulations, we solemnly commit that all user data (including personal and health information) is stored within China and will not be transferred abroad. We will not provide your data to any overseas organization, institution, or individual unless we obtain your separate authorization or as explicitly required by law.