Company’s Privacy Policy
- About this Policy
1.1 KAN HEALTHCARE (hereinafter referred to as “We/Our/Company”) having its registered office address at H16, CID Colony, Adil Nagar, Kalyanpur, Ring Road, Lucknow, India
- The Company has developed an e-commerce website i.e. kanhealthcare.in (hereinafter referred to as the “Website/Platform”) and for the purpose of selling health and beauty products.
- This Policy serves as a Privacy Notice as mandatory under the Law prior to processing of Personal Identifiable Information (PII) of Users as defined under this Policy. The Company shall process PII of Users of the Website in accordance with this Privacy Policy.
- When you visit the Website and/or use any of the Website Services, you consent to the terms of this Privacy Policy. In case do not agree with the terms of this Policy, please do not use and/or access the Website/Platform.
- Scope and Applicability
- The privacy policy is published and shall be construed in accordance with the provisions of Information Technology Act, 2000 and rules made there under including the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 as amended thereof, the Digital Personal Data Protection Act, 2023 (Applicable Data Protection Laws) other applicable law enacted from time to time.
- We collect only that Personal Information which is necessary to fulfil contractual obligations with each user of this Policy.
- This Privacy Policy shall be read in conjunction with the Terms and Conditions of the Website.
- Definitions
For the purposes of this Privacy Policy:
- Account: Account means a unique account created for you to access our Service or parts of our Service.
- Anonymization: Anonymization refers to the method of removing personal identifiers from PII that it is no longer possible to identify a specific individual.
- Cookies: Cookies are small alphanumeric text files sent to the user’s device by the website, enabling our systems to recognize the browser and collect data for processing.
- Company: Company refers to KAN HEALTHCARE who shall be deciding the means and purpose processing of PII under this Policy.
- Consent: Consent means an affirmative action that signifies agreement to the processing of their personal data.
- Minor: Minor refers to any person who is below 18 years of age.
- Encryption: Encryption is the method by which plaintext or any other type of data is converted from a readable form to an encoded version that can only be decoded by another entity only if they have access to a decryption key.
- Personal Identifiable Information/PII: PII means and includes any information or set of information, whether alone or in combination with other personal information which is sufficient to identify the User.
- Service (s): Service (s) refers to products and/or services provided by the Company through the Website.
3.10 Service Provider: Service Provider refers to a natural or legal person who processes the data on behalf of the Company to provide services to the Users.
- Usage Data: Usage Data refers to data collected automatically, either generated by the use of the Service or from the Service infrastructure itself (for example, the duration of a page visit).
- You/Your/User: You/Your/User means the individual accessing or using the Service/Platform, or the company, or other legal entity on behalf of which such individual is accessing or using the Service/Platform, as applicable.
- Website: Website refers to KAN HEALTHCARE (https://kanhealthcare.in/)
- Collection and Processing of Personal Information by the Company
- When you browse our Website or create an account, you share certain Personal Information with us that allow us to communicate with you. Sometimes you may give reviews on certain products on the Website or seek customer support. We will need to fulfil your requests or sometimes share certain updates and/or promotions and make recommendations as per your indicated interests. Sometimes you may also share another person’s PII on the Website, for example, for gifting and delivery purposes. As a result, we have access to the following types of Personal Information:
Sr. | Information Collected | How do we use the Personal Information collected? |
4.1.1 | You shall be required to register on the Website and create an account, you shall be required to provide with PII such as | |
a. Name
b. Contact
c. Email address
d. Shipping address | a. To access the Website and create an account.
b. To operate manage and provide Services on the Website including but not limited to set-up and maintain account, provide customer service, fulfil purchases, deliver products, verify Users on the Website, Display content such as wish lists and customer reviews and recommend products based on your interests.
c. To communicate with you about orders, products, services, provide customer support, resolve grievances, facilitate returns/exchange, promotional offers, newsletters, surveys, questionnaires, promotional offers and other marketing communications, security alerts, notices, information regarding any change in the policies, and support and administrative messages via email to keep you informed about our services, offers and updates. You can choose to opt-out of receiving these communications at any time by adjusting your customer communications preferences or by following the “unsubscribe” link provided in our emails. | |
**In case you share information about another person and/or an entity on the Website, the same shall also be subject to the terms of this Policy. | ||
4.1.2 | a. If you make any purchases, we use third-party payment processors to process payments. The Company does not store or process any such data collected on any such third-party payment website. We only store minimal payment data limited to payment log and history for record purposes. | a. To fulfil purchases through the Website;
b. Help prevent and detect frauds, breach, leaks
c. To facilitate returns and exchanges
d. To ensure that you are able to use other available functionalities or services, such as the purchase, receipt, management and use of the gift cards and/or gift vouchers. |
4.1.3 | By visiting and/or browsing the Website, without creating an account on the Website, We receive information about the computers, phones, and other devices you use or interact with our Website including IP address (which may determine general location), device identifiers, cookie IDs, the browser you use, your network connection, or other unique identifiers or device information. For more information, kindly refer to our Cookie Policy. | a. To analyse trends, usage and activities on the Website/Platform.
b. Help prevent and detect frauds, breach, leaks.
c. To remember you so that you can easily login again on the Website/Application;
d. To limit our Services in certain locations.
e. To customize the features of the Website/Application, resolve glitches, and creating new features basis on usage analysis. |
- Sharing and Disclosure of Personal Information
- We value our brand and your privacy. We do not sell or otherwise disclose your PII we collect about you for monetary or other valuable consideration. Further, only authorized representatives of the Company and on a need-to-know basis to access the User PII. In the event of any identified unauthorized use or disclosure of information.
- The Entities We share and disclose your Personal Information with include:
5.2.1 Third Party Service Providers: We share your Personal Information with certain third-Party Service Providers, including but not limited to payment processors/gateways, shipping and delivery service providers, for the purpose of fulfilling their contractual obligations. They have access to limited personal information needed to perform their functions.
5.2.2 Affiliates and Subsidiaries: We may disclose information about you to our affiliates, subsidiaries and other businesses under our control and ownership.
5.2.3 Legal Disclosures-We may disclose information about you where such disclosure is necessary to:
- Comply with applicable laws,
- Protect and defend Company’s or a third party’s rights and property, or the safety of Company, our users, our employees, or others;
- Prevent, detect, investigate and take measures against criminal activity, fraud and misuse or unauthorized use of our Website;
- For co-operating with law enforcement agencies;
- Protect the personal safety of Users or the public.
5.2.4 Business Transfers: In the event the Company undergoes any merger, acquisition, or sale of company assets, in part or in full, with another company, or in the unlikely event that the Company goes out of business or enters bankruptcy. , Any processing of your PII would still be subject to the terms of this Privacy Policy.
5.2.5 Advertising and Analytics Partners: We may share usage data with third-party advertisers, advertisement networks, and analytics providers through cookies and other similar technologies.
- Basis for processing of PII
- We process your PII in connection with any of the purposes and uses set out in this Policy on one or more of the following legitimate interests:
6.1.1 Because it is necessary to perform the Services you have requested or to comply with your instructions or other contractual obligations between you and us;
- Because it is necessary to protect your vital interests;
- To comply with our legal obligations as well as to keep records of our compliance processes;
- Because our legitimate interests, or those of a third-party recipient of your Personal Information, make the processing necessary, provided those interests are not overridden by your interests or fundamental rights and freedoms;
- For any other information which does not fall under legitimate interests, we shall seek your explicit consent.
- Rights of Users
- If you are registered on the Website/Application as a customer/buyer, then you shall have the right to request access, rectify, erase and/or withdraw consent for further processing of your Personal Information.
- You can excuse any of your rights by contacting us at info@kanhealthcare.in.
- The Company shall respond to the requests made by the Data Principals within a reasonable timeframe as practicably possible in a concise, transparent and easily accessible form and format. In case where the Company is unable to process the request of any Data Principal, the Company shall duly provide such User with a justifiable reason for the same. The Company reserves to right to refuse to entertain any frivolous and/or repeated requests.
- It is clarified that once the consent is withdrawn, we shall cease to further process your PII however; the withdrawal of consent shall not be applicable on the information already processed by the Company or the PII We need to hold to fulfil our legal compliances.
- Furthermore, upon receipt of your request to delete your account, we shall endeavour to delete your PII from servers in due course. In case that is not possible, we shall anonymize, the said information in a way that it no longer identifies you.
- Information Security
- The Company ensures to take reasonably possible legal and technical safety measures for prevent any data breach or leak. For the purpose of this clause, security measures mean and include:
- Encryption of PII using Secure Socket Layer (“SSL”) encryption technology before being sent over the Internet. SSL makes it very difficult for your information to be stolen or intercepted while being transferred.
- We maintain physical, electronic and procedural safeguards in connection with the collection, storage and disclosure of personal information (including sensitive personal information).
- Access to your personal data is restricted to authorized personnel only, and we may periodically request proof of identity to confirm access.
- Records shall be stored for as long as it is required, for legitimate purpose(s) and shall be disposed off appropriately when no longer required.
- However, we all know that no method of transmission over the Internet, and method of electronic storage, can be 100% secure. This means we cannot guarantee the absolute security of your personal information.
- Cross Border transfer of your PII
Some of Our servers are located in other locations but we only store such information and in such a manner as permissible under the Indian Law.
- Use of Website by Children
Use of our website is available only to persons who can form a legally binding contract under the Indian Contract Act, 1872. If you are a minor i.e. under the age of 18 years, you may use our website only with the involvement of a parent or guardian. If we become aware that we have inadvertently received personal information from a Minor on the Website, we will delete the information from our records.
- Cookie Policy
- Cookies make your browsing experience better by allowing the website to remember your actions and preferences (such as login and region selection).
- We use the following types of cookies:
- Essential Cookies: These cookies are necessary for core website functionality and the website may not function properly without them. These cookies can be disabled by changing the browser settings by using “Block All” option. However, due to which you may not be able to use certain website features.
- Session Cookies: These cookies tracks user’s activity during one single session. Once the browser is closed, the session ends and the cookies are deleted. It stores Log-in status and shopping cart data.
- First-Party Cookies: Enhances user experience by collecting information and analytics (usernames and passcodes) and stores user preferences (language, currency, location, display etc.)
- Persistent Cookies: It is used for longer term tracking, to remember user preferences, log-in information, browsing history and user settings across multiple sessions. For instance, the “Remember Me” option on login page creates a persistent cookie which stores user’s credentials and thus eliminates the need for re-authentication.
- User-Centric Cookies: These cookies are to detect authentication errors or abuses such as failed login attempts or session timeouts.
11.2.2 Non-Essential Cookies: These cookies are not strictly necessary for core website functionality and are used to analyze user experience, behaviour and to display advertisements.
- Third-Party Cookies: These cookies are set by websites other than the one you are currently on for the purpose of advertisements. It uses a Unique ID which helps the advertisers to recognize you when you visit different sites.
- Secure Cookies: These cookies are used to secure sensitive information like payment details, passwords from being intercepted by external agencies. They can be transmitted only through encrypted HTTPS only connections.
- Third-party links Technology integration and social media
- The Services includes links to third party websites, platforms we do not operate or control. We shall not be responsible for the privacy practices or the content of such websites as they will be governed by their own policies.
- You may choose to engage with us through links on other third party websites not associated with the Company. In such cases, the PII you share with us shall also be subjected to such third party website policies.
- Social Media
We may engage with you through social media with your consent. In such cases the Privacy Policies of those platforms will govern your PI. It is clarified that the links to Our Website may be available on some third party websites not associated with the Company. While accessing our link on any third party websites, you shall also be subjected to such third party Website policies.
- Notices and Revisions
We may update Our Privacy Policy from time to time. The revised Policy will be uploaded on the Platform with “Last updated” date at the top of this Privacy Policy.
You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.
- Data Breach Response and Notification
In case of any accidental or unauthorised access in the network security systems of the Company, the Company shall notify the supervisory authorities and the Users, whose data is likely to be affected from such accidental or unauthorized access, about the breach of PII.
- Legal and Contact Information
If, at any time, you have questions or concerns about this Privacy Statement or believe that we have not adhered to this Privacy Statement, please write to our customer support centre: info@kanhealthcare.in
Address:
KAN HEALTHCARE
H16, CID Colony, Adil Nagar, Kalyanpur, Ring Road, Lucknow, India
Contact / Whatsapp: +91 89573 75789