Powered by Sarvam
ComeigoComeigo
Legal

Privacy Policy

Last updated: August 2026

Overview

This policy explains how Comeigo ("Comeigo", "we", "us") handles information when a clinic uses our platform - Comeigo Voice and Map My Place - and when patients interact with a clinic that runs on Comeigo.

Clinics are the data controller for their patients' information; Comeigo acts as a data processor, handling that information on the clinic's behalf and under its instructions.

Information we collect

Account information: name, work email, phone number, and role for anyone a clinic adds as a staff user.

Clinic and organisation information: branch names, addresses, phone numbers, timezones, and doctor assignments entered during setup.

Patient information processed on a clinic's behalf: names, phone numbers, appointment details, call recordings and transcripts, and visit history.

Usage data: call logs, queue and wait-time data, feature usage, and device or browser information collected automatically as the platform is used.

How we use information

To operate the platform: answering calls, booking and managing appointments, and routing patients through Map My Place.

To send the notifications a clinic configures - booking confirmations, reminders, and queue updates - by SMS or call.

To monitor and improve reliability, and to detect misuse or security issues.

To communicate with clinic staff about their account, and, where a clinic has opted in, with prospective clinics about the product.

Data storage and security

Data is stored in PostgreSQL with encryption at rest and in transit. Access is governed by role-based access control, so staff only reach the records and tools their role requires.

Every account can enable multi-factor authentication, and access to patient records is logged in an audit trail - who accessed what, and when.

Voice and messaging provider credentials are scoped per organisation and are never shared across clinics on the platform.

Third-party service providers

Comeigo relies on infrastructure and communication providers to operate - including calling and voice infrastructure, SMS and messaging delivery, and calendar syncing - who process data only as needed to provide that specific service.

We do not sell clinic or patient data, and we do not share it with third parties for their own marketing purposes.

Data retention

Patient and clinic data is retained for as long as a clinic's account is active, or as required by applicable healthcare record-keeping obligations, whichever is longer.

A clinic can request deletion of its data on account closure, subject to any legal retention requirements that apply to medical records.

Your rights

Patients who wish to access, correct, or request deletion of their information should contact the clinic they visited directly, since the clinic controls that data. Clinics can reach us for assistance fulfilling such a request.

Clinic staff can review or update their own account information at any time from within the platform.

Children's privacy

Comeigo is used by clinics to manage patients of all ages, including minors, as part of routine care coordination. We do not knowingly collect information directly from children outside of that clinical context, and access to minors' records follows the same role-based access controls as any other patient record.

Changes to this policy

We may update this policy as the platform evolves. Material changes will be reflected here with an updated date, and significant changes will be communicated to clinic administrators.

Contact us

Questions about this policy can be sent to mohingpt@gmail.com or +91-8587806940.