Privacy Policy
How August Health collects, uses, and protects your personal information.
Introduction
This Privacy Policy governs how Goodness Factory Living Essentials Private Limited (operating as “Beyond” and “August.ai”) collects, uses, maintains, stores, processes, and discloses information from users of:
- Website: www.getbeyondhealth.com
- Beyond mobile application
- August.ai platform (AI-based health information and analytics)
By accessing our services, you confirm your agreement with this policy. If you disagree with any part, please discontinue use of our services.
General Approach
Data Protection Law includes the Information Technology Rules 2011, Digital Personal Data Protection Act 2023, and all applicable privacy laws.
Personal Information means individually identifiable data including names, identification numbers, phone numbers, dates of birth, device identifiers, IP addresses, and household information.
Sensitive Personal Data
Sensitive Personal Data or Information includes:
- Passwords
- Financial information (bank, credit, or debit card details)
- Physical, physiological, and mental health conditions
- Sexual orientation
- Medical records and history
- Biometric information
- Details provided for service delivery
- Information received for processing or storage under lawful contract
Our Commitment
We believe in AI that is safe, intelligent, empathetic, and engaging. Your data is never sold or used for targeted advertising.
- Beyond provides informational services, not medical advice
- Data collected includes names, phone numbers, and IP addresses for operations and safety
- Privacy and security are top priorities — no data sharing for advertising
- Users must follow our Acceptable Use Policy; violations may cause suspension
- Services intended for users 18+ years
- Content should be independently verified with healthcare professionals
Information We Collect
Information Provided by You
- Contact and Account Information: First and last name, email address, phone number
- Content and Metadata: Messages sent via our services
- Communications: Survey responses, questions, and feedback
- Health Information: Health records via FHIR APIs with your authorization; Apple HealthKit data; fitness tracker data; PDFs and images with health data
- Other Information: As disclosed at the time of collection
Automatic Data Collection
We and our service providers automatically collect:
- Device Data: Operating system, manufacturer, model, browser type, screen resolution, IP address, unique identifiers, language settings, and general location
- Online Activity Data: Pages viewed, time on pages, referral websites, navigation paths, access times, and communication engagement
Combined information helps prevent fraud, secure our services, analyze functionality, and personalize your experience.
Tools for Automatic Data Collection
- Cookies: Text files identifying browsers and storing navigation and preference information
- Local Storage Technologies: HTML5-based storage for larger data amounts
- Web Beacons: Pixel tags or clear GIFs confirming webpage or email access
Information from Other Sources
Profile identifiers may be collected from third-party platforms (Facebook Messenger, WhatsApp) when you interact with us via these channels.
Sensitive Data
You may provide Sensitive Personal Information when using our services. Providing it constitutes consent to use as outlined in this policy. Use of our services authorizes us to gather, resolve, and retain provision-related data.
Use of Personal Information
- Service Provision: Operating, maintaining, and providing services per our Terms of Use; personalizing your experience
- Communication: Responding to requests; providing customer support; sending announcements, surveys, updates, and security alerts
- Service Improvement: Understanding user needs; personalizing experiences; troubleshooting; securing services
- Research and Development: Analyzing and improving services and business using anonymized or aggregated data when possible
- Compliance and Protection: Complying with legal obligations; protecting rights and safety; enforcing terms; preventing unauthorized activities
Your Affirmation
You represent that all supplied Personal Information is true, accurate, and current. We endeavor to provide access and control over incomplete or inaccurate data, subject to legal obligations.
European Economic Area residents: If someone entrusted your data to us for processing (such as an employer or service provider), please contact that entity to request data actions. We will cooperate fully.
Artificial Intelligence Data Uses & Disclosures
Types of Personal Data AI May Process
Depending on features enabled, we may process:
- Messages, inputs submitted, uploaded files and images
- Audio submissions (voice notes) and transcripts
- Health records, medical documents, uploaded or connected health information
- Third-party health and fitness information (Apple HealthKit, integrations) per your settings and permissions
How We Use Personal Data for AI Services
We may use Personal Data for developing, training, and providing AI models, products, and services. Our personnel, including clinicians and support staff, may access and review data for service provision, request responses, safety, legal compliance, and quality improvement.
AI-Related Disclosures
Personal Data disclosures in AI contexts may occur to:
- Service Providers for AI functionality, cloud hosting, AI model providers, and safety monitoring tools
- Third-party AI providers offering AI-assisted features (explicit permission required when legally mandated)
Your Choices and Controls
You choose what Personal Data to submit and which integrations to connect. Permissions may be revoked or features disabled via device settings. Consent may be declined for consent-requiring AI features.
Data Collection & Security
We prioritize data integrity and security through appropriate collection, storage, processing practices, and security measures protecting against unauthorized access, alteration, disclosure, or destruction.
While we implement robust protections, the Internet cannot be guaranteed to be 100% secure. We cannot ensure or warrant the security of information during transmission. Security breaches will trigger notification attempts via service notices or email.
Third-party websites, plugins, and applications beyond our control may collect or share data. We have no oversight over third parties and recommend reviewing their privacy statements.
Data Retention & Protection
We retain Personal Information per Data Protection Laws and collection purposes until consent withdrawal. Retention periods depend on data nature, sensitivity, harm risk, use purposes, and legal requirements.
Records and information are maintained safely and securely with restricted authorized-personnel-only access. Physical, technical, managerial, and operational measures are designed to improve information integrity and security.
Firewalls, encryption, and data leakage prevention technologies protect your information. We conduct regular vendor and service provider audits with non-disclosure agreements executed before services begin.
Your Rights
Per applicable Data Protection Laws, we facilitate Personal Information rights exercise. Contact us to:
- Access and review your Personal Data
- Erase your Personal Data
- Withdraw consent
- Object to or restrict processing
Requests are reviewed promptly per applicable Data Protection Laws. We encourage direct contact for addressing rights violation concerns.
Arbitration & Dispute Resolution
Governing Law
Service use and any conflicts regarding these Terms or Privacy Policy are governed by Indian law without conflict-of-law provisions. Arbitration follows the Arbitration and Conciliation Act, 2015. Disputes fall under exclusive Bangalore, Karnataka, India court jurisdiction.
Arbitration Process
Disputes require initial amicable resolution attempts. Unresolved disputes are referred to a sole arbitrator (independent, neutral third party identified by Beyond). Proceedings occur in English per the Arbitration and Conciliation Act, 2015.
We may seek injunctive or equitable court relief to prevent actual or threatened data security, intellectual property, or proprietary rights infringement.
Changes to Our Policy
We may change our services and policies, requiring updates to this Privacy Policy. Pre-implementation notice (via our services) permits review opportunity. Continued service use binds you to the updated Policy. If you disagree, please discontinue service use.
Grievance Redressal
Content discrepancies, grievances, or agreement breaches should be addressed to our designated Grievance Officer:
Chaithali Pisupati
Grievance Officer
506/507, 1st Main Road, Murugeshpalya
K R Garden, Bengaluru, Karnataka — 560017
Contact Information
Questions about this policy? Reach out to us:
Phone
+91 74831 27040Address
506/507, 1st Main Road, Murugeshpalya
K R Garden, Bengaluru, Karnataka — 560017