Privacy Policy
Indogenmed Healthcare Private Limited (“Indogenmed”, “we”, “us” or “our”) takes the privacy and security of your personal information seriously. This Privacy Policy explains what information we collect on wellux.in (including subdomains and related digital properties), why we collect it, how we use and share it, how we protect it, and what choices you have. It also describes your rights with respect to your data and how to contact us or escalate a grievance.
You should read this Policy carefully before using our website or placing any order. By accessing or using wellux.in, you agree to the collection and use of your information as described herein.
1. DEFINITIONS
- “You” or “User” means any natural person accessing or using wellux.in or purchasing products/services from us.
- “Data” means any non-personal information, personal information, or sensitive personal information about you that, alone or in combination with other information, can identify you.
- “Service Providers” are third-party entities contracted to process data on our behalf (e.g., payment gateways, hosting providers, analytics partners).
- “Partners” are third parties with whom we have arrangements to offer products or services through our platform.
- “Payment Processor” means the third-party gateway(s) we use to process your payments (e.g., [insert gateway name(s)]).
- “Grievance Officer” is the individual appointed to handle complaints under applicable Indian data protection norms.
2. WHO WE ARE
This website, wellux.in, is operated by Indogenmed Healthcare Private Limited, a company incorporated in India, with its registered office at:
Office no 103, 1st Floor, Elements Mall, Ajmer Rd, DCM Area, Jaipur, Rajasthan 302021
Email: hello@wellux.in
3. INFORMATION WE COLLECT
We collect the following categories of information:
3.1 Personal Information
- Contact details: name, email address, postal address, phone number, country.
- Account credentials: username, password (stored securely, hashed).
- Government-issued IDs or uploaded documents if required for compliance or verification.
- Demographic data: age, gender, marital status, etc., if voluntarily provided.
- Order and transaction-related data: products purchased, order history, delivery address.
3.2 Financial & Payment Information
- Payment instrument metadata (e.g., last 4 digits of card, payment method) necessary to complete transactions.
- Transaction amounts, timestamps, and status.Important: We do not store sensitive authentication data such as full card numbers, CVV/CVC, or PINs. All payment transactions are processed by our PCI DSS–compliant payment processor(s). Payment data is transmitted securely using industry standard encryption (TLS 1.2+), and tokenization is used where applicable to minimize exposure.
3.3 Technical Information
- IP address, device identifiers, browser type/version, operating system.
- Usage data: pages visited, clickstream, session duration, referral information.
- Cookies, pixels, and similar tracking technologies.
3.4 Behavioural & Preference Data
- Purchase preferences, product reviews/feedback.
- Loyalty program data (membership number, points, activity).
4. HOW WE COLLECT INFORMATION
We collect data via:
- Information you provide directly: Registration, placing orders, uploading prescriptions, surveys, customer support interactions, newsletter sign-ups, loyalty enrollment.
- Automated collection: Through cookies, web beacons, pixels, and similar technologies when you browse or interact with wellux.in.
- Third-party sources: If you link or authorize other platforms (e.g., partner portals), we may receive information about you from them.
- Service Providers: Data aggregated or processed on our behalf (e.g., analytics tools, fraud detection systems).
5. COOKIES AND TRACKING TECHNOLOGIES
We use cookies and similar technologies to personalize your experience, analyze usage, maintain session state, and support marketing.
- Essential cookies are required for core functionality (e.g., cart persistence, login).
- Performance/analytics cookies help us understand usage patterns.
- Marketing cookies enable personalized promotions and remarketing.
We provide a cookie banner with choices for non-essential cookies. You can manage/opt-out via browser settings or our preference center. Details of cookies used are available on our Cookie Policy page.
6. USE OF DATA
We use collected data to:
- Fulfill orders, process payments, and deliver products/services.
- Authenticate and manage your account.
- Communicate order updates, support requests, and respond to inquiries.
- Personalize offers, recommendations, and marketing communications (with opt-out where required).
- Operate, evaluate, and improve our platform, products, and services.
- Detect and prevent fraud, abuse, and security incidents.
- Comply with legal obligations, enforce terms, and manage disputes.
- Administer loyalty programs and aggregate insights (non-identifiable) for business intelligence.
Where required by law, we process sensitive personal data (including health information) only with your consent or under permissible legal bases (contractual necessity, legal compliance, legitimate interest with safeguards).
7. SHARING OF DATA
We may share your information with:
7.1 Service Providers
Entities that perform functions on our behalf, including:
- Payment processors (for transaction handling). They process payment data under their own compliance regimes (PCI DSS).
- Hosting and infrastructure providers.
- Analytics and performance tools.
- Customer support/crm platforms.
- Fraud detection and risk management services.
7.2 Partners & Affiliates
To surface relevant offerings, run co-branded programs, or fulfill joint services. Shared data under contract with confidentiality and security obligations.
7.3 Legal & Safety
To comply with legal obligations, enforce terms, respond to lawful requests (e.g., court orders), or protect against fraud or imminent harm.
7.4 Business Transfers
In connection with a merger, acquisition, sale of assets, or business restructuring, your data may be transferred, subject to confidentiality and continuity of rights.
7.5 Your Direction
When you explicitly authorize sharing (e.g., connecting with a partner service).
We do not sell your personal information for commercial purposes outside this policy.
8. PAYMENT DATA HANDLING
- All payment transactions are processed by PCI DSS compliant methods.
- We never store full card numbers, CVV, or sensitive authentication data after authorization.
- Data in transit is encrypted using TLS 1.2 or higher.
- Tokenization is used where available to reduce exposure.
- Unauthorized or fraudulent transaction detection is active; suspicious activity may trigger additional verification before fulfillment.
9. DATA RETENTION
We retain your data only as long as necessary to:
- Fulfill the purpose it was collected for (order fulfillment, account management).
- Comply with legal and regulatory obligations (e.g., tax, audit).
- Resolve disputes or enforce agreements.
Retention periods vary by data type. Even after deletion requests, residual copies may persist in backups for legitimate business/legal purposes, subject to appropriate safeguards.
10. YOUR RIGHTS
Subject to applicable law, you have the right to:
- Access the personal data we hold about you.
- Correct or update inaccurate/incomplete data.
- Request deletion (subject to retention requirements).
- Withdraw consent where consent was the basis of processing.
- Object to or restrict certain processing (e.g., marketing).
- Port your data in a machine-readable format, if applicable.
To exercise your rights, contact us using the details below. We will respond within [30] days (or as required by law).
11. SECURITY
We implement reasonable technical and organizational measures to protect your information, including:
- Encryption in transit (TLS) and at rest where appropriate.
- Access controls and audit logging.
- Secure development practices and regular vulnerability assessments.
- Contractual obligations with service providers to ensure they implement comparable security safeguards.
Despite these measures, no system is completely risk-free. If we detect a data breach involving your personal information, we will follow our internal incident response process and notify you as required under applicable law.
12. GRIEVANCE / DISPUTE RESOLUTION
If you have a complaint about how your data is handled or a payment/dispute issue:
- Contact Support: Email support at hello@wellux.in or use the contact form.
- Expected Acknowledgment: We aim to acknowledge within 2 business days.
- Escalation: If unresolved, escalate to the Grievance Officer (details below).
- External Recourse: If still unsatisfied, you may approach appropriate regulatory authorities or your payment card issuer (for chargebacks) following their prescribed processes.
13. GRIEVANCE OFFICER
Name: Surender Dhayal
Designation: Grievance Officer
Email: surender@wellux.in
You can raise concerns directly with the Grievance Officer if initial support interactions do not resolve your issue.
14. THIRD-PARTY LINKS
wellux.in may contain links to third-party websites. We are not responsible for their privacy practices. You should review their privacy policies before sharing any information with them.
15. CHILDREN
Our services are not directed to minors under the age of 18. If you are under 18, you may use the site only with involvement of a parent or guardian. If we learn we have collected personal information from a minor without appropriate consent, we will take steps to delete it.
16. INTERNATIONAL TRANSFER
Your Data is primarily stored and processed in India. If we transfer your data outside India (e.g., to a service provider), we ensure an adequate level of protection via contractual safeguards or as permitted under applicable law.
17. CHANGES TO THIS POLICY
We may update this Privacy Policy periodically to reflect changes in our practices or legal requirements. The “Last updated” date at the top will indicate the latest revision. Significant changes will be notified via our website or, if appropriate, via email. Continued use after changes constitutes acceptance.
18. CONTACT US
For any queries, access requests, corrections, deletion, or to withdraw consent, contact:
Email: hello@wellux.in
Subject line suggestion: “Privacy Request – [Your Name]”
We aim to respond within 30 days.