Skip to Content

Privacy Policy

1.Introduction


Leanova Health ("Leanova", "we", "us", "our") is a doctor-led, telemedicine-based medical weight-management and metabolic optimisation service operating through the website www.leanova.in and associated digital channels. Leanova is operated by Leanova Health, a company incorporated under the Companies Act, 2013, with registered contact at care@leanova.in.

This Privacy Policy ("Policy") explains how Leanova collects, uses, stores, processes, shares, and protects information provided by any individual who accesses, registers on, or uses the Leanova platform ("User", "you", "your"). By accessing or using the platform, you agree to the practices described in this Policy.

This Policy is published in compliance with:

  • Section 43A of the Information Technology Act, 2000 ("IT Act");

  • Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011 ("SPDI Rules");

  • Information Technology (Intermediaries Guidelines and Digital Media Ethics Code) Rules, 2021; and

  • The Digital Personal Data Protection Act, 2023, to the extent applicable.

2. Scope of This Policy


This Policy applies to all Users of the Leanova platform, including individuals who browse the website, complete assessments or medical questionnaires, consult Leanova-affiliated physicians, subscribe to Leanova's medical programs, communicate via WhatsApp or other channels, or otherwise interact with Leanova through any digital interface.

If you access or use the platform from outside India, you do so at your own risk and are solely responsible for compliance with all applicable local laws in your jurisdiction. 

3. Information We Collect


Leanova collects several categories of information in order to provide medically supervised services safely and effectively.


3.1  Registration and Identity Information

When you create an account or register on the platform, we may collect your full name, mobile number (verified by one-time password), email address, date of birth, gender, and demographic information necessary to provide safe clinical care.


3.2  Program and Transaction Information

We collect information required to process your subscription, program enrolment, or service order, including your correspondence address, subscription plan details, and transaction history. Leanova does not collect or store complete credit card, debit card, or net-banking credentials. All payments are processed through PCI-DSS-compliant third-party payment gateways.


3.3  Usage and Technical Information

When you use the platform, we may automatically collect device identifiers, IP address, browser type, operating system, access timestamps, session duration, referring URLs, page-view history, and in-platform activity logs. This information is collected through standard tracking technologies including cookies and web beacons.


3.4  Health, Metabolic, and Clinical Information (Sensitive Personal Data or Information)

As Leanova delivers physician-supervised metabolic care, the platform collects health-related information that constitutes Sensitive Personal Data or Information (SPDI) under Indian law. This includes:

  • Information entered in medical questionnaires and clinical assessment forms, including weight, height, BMI, medical history, current medications, allergies, and comorbidities;

  • Metabolic and physiological data including blood pressure, blood glucose markers, lipid profiles, thyroid function, hormonal assessments, and liver and kidney function;

  • Information disclosed voluntarily during physician teleconsultations, follow-up reviews, or WhatsApp-based clinical communication;

  • Laboratory reports, prescriptions, diagnostic results, or clinical photographs uploaded by you to the platform;

  • Dietary history, physical activity levels, sleep patterns, and behavioural health information relevant to metabolic assessment.


  • Collection of this information is essential for clinical assessment, treatment planning, medication eligibility determination, and ongoing monitoring. You provide this information voluntarily; however, declining to provide it may prevent Leanova from delivering safe clinical services.


    3.5  Consultation and Clinical Records (SPDI)

    Leanova stores physician consultation notes, clinical recommendations, treatment plans, dose titration records, progress reviews, and follow-up documentation generated during your engagement with the program. Where legally permissible and disclosed to you, audio or video recordings of teleconsultations may also be retained.


    3.6  Prescription and Medication Records (SPDI)

    Prescriptions generated by Leanova-affiliated physicians are stored on the platform for continuity of care, dispensing coordination, and compliance with medical record-keeping obligations under applicable Indian law.


    3.7  Communications

    Communications you initiate with Leanova through email, WhatsApp, or other channels — including messages, feedback, queries, and support requests — may be retained for service delivery, quality assurance, and clinical safety purposes.

4. How We Use Your Information


Leanova uses collected information for the following purposes:


  1. Clinical assessment and treatment planning, including determination of program eligibility, medication suitability, and risk stratification;

  2. Provision of physician-supervised weight-management and metabolic health services, including consultations, follow-up reviews, lab interpretation, and dose management;

  3. Prescription generation, pharmacy coordination, and medication fulfilment where applicable;

  4. Patient communication and support via telemedicine channels including WhatsApp, email, and video;

  5. Program subscription management, billing, and account administration;

  6. Laboratory result review and clinical monitoring throughout the treatment cycle;

  7. Service improvement, internal quality assurance, clinical audit, and outcomes analysis (in anonymised form where possible);

  8. Safety monitoring, pharmacovigilance, and regulatory compliance;

  9. Research and statistical analysis, conducted on aggregated and anonymised data;

  10. Legal compliance, dispute resolution, and response to lawful governmental or judicial orders.


Leanova does not use your health or clinical data for advertising, third-party marketing, or the sale of personal information to data brokers or commercial entities.

5. Disclosure of Your Information


Leanova may share your information with third parties strictly in the following circumstances:


5.1  Affiliated Clinicians and Medical Professionals

Your clinical information may be shared with Leanova-affiliated physicians, consulting specialists, or clinical reviewers solely for the purpose of delivering safe and effective medical care. All such individuals are bound by professional ethical obligations of confidentiality.


5.2  Laboratories and Diagnostic Partners

Where laboratory investigations are arranged or interpreted through the platform, relevant clinical information may be shared with diagnostic service providers for the purpose of test processing and result reporting.


5.3  Pharmacy and Dispensing Partners

Where pharmacotherapy is prescribed, prescription information may be shared with licensed pharmacies or dispensing partners for medication preparation and delivery. No clinical history beyond what is necessary for dispensing will be disclosed.


5.4  Technology and Operational Service Providers

Leanova uses third-party service providers for platform hosting, payment processing, communication infrastructure (including WhatsApp integration), and CRM and workflow management. These providers are engaged under contractual obligations that prohibit use of your data beyond the defined service scope.


5.5  Business Transactions

In the event of a merger, acquisition, consolidation, or sale of all or substantially all of Leanova's assets, your information may be transferred to the acquiring entity. You will be notified of any such transfer and the applicable privacy terms via the platform or email.


5.6  Legal and Regulatory Obligations

Leanova may disclose information where required by law, regulation, judicial order, or lawful request from a governmental or regulatory authority. We will notify you of such disclosure to the extent permitted by law.


5.7  No Sale of Data

Leanova does not sell, rent, or commercially trade your personal information or SPDI to any third party for commercial gain.

6. Cookies and Tracking Technologies


The Leanova website uses cookies and similar tracking technologies to maintain session state, improve platform functionality, analyse usage patterns, and deliver a consistent user experience. Cookies may record information such as IP address, browser type, operating system, pages visited, and session duration.

You may configure your browser to decline or delete cookies; however, doing so may limit access to certain platform features. By continuing to use the platform without modifying your cookie settings, you consent to the use of cookies as described in this Policy.

7. Data Security


Leanova implements physical, technical, and procedural safeguards appropriate to the sensitivity of the data we process. These include encrypted data transmission, access controls restricted to authorised personnel, secure cloud infrastructure, and regular review of our data handling practices.

All Leanova personnel with access to patient information are bound by contractual confidentiality obligations. No employee will have access to your account password.

While Leanova takes reasonable precautions, no digital system can guarantee absolute security. Leanova cannot be held liable for security breaches resulting from circumstances beyond its reasonable control, including cyber-attacks, third-party network failures, or acts of government.

You are responsible for maintaining the confidentiality of your account credentials. Suspected unauthorized access should be reported immediately to care@leanova.in.

8. Data Retention and Deletion


Leanova retains personal information and clinical records for as long as necessary to fulfil the purposes for which they were collected, comply with legal record-keeping obligations applicable to medical practice in India, and support any ongoing clinical or contractual relationship.

Where retention is no longer necessary and no legal obligation requires otherwise, your SPDI will be securely deleted or irreversibly anonymised. Anonymised and aggregated data may be retained indefinitely for research, analytics, and service improvement.

To request deletion of your account and personal data, please contact us at care@leanova.in. Note that deletion of your account will terminate access to all Leanova services and may be subject to minimum retention requirements under applicable medical record-keeping regulations.

9. Your Rights


Subject to applicable law, you have the following rights with respect to your personal information held by Leanova:


  • Right of Access: You may request confirmation of whether Leanova holds personal information about you and request a copy of that information.

  • Right of Correction: You may request correction of inaccurate or incomplete personal information.

  • Right to Withdraw Consent: Where processing is based on consent, you may withdraw consent at any time. Withdrawal will not affect the lawfulness of processing prior to withdrawal but may prevent continued delivery of services.

  • Right to Deletion: You may request deletion of your personal information subject to legal retention obligations.

  • Right to Restrict Processing: In certain circumstances, you may request restriction of processing.


To exercise any of these rights, please write to us at care@leanova.in with a description of your request. We will respond within a reasonable time and in accordance with applicable law. Identity verification may be required before actioning requests.

10. Minors


The Leanova platform is intended solely for individuals who are 18 years of age or older. Leanova does not knowingly collect personal information from persons under the age of 18. If you are a parent or guardian and believe your minor child has submitted information to Leanova, please contact us at care@leanova.in and we will promptly remove that information.

11. Third-Party Links and Services


The Leanova platform may contain links to external websites, applications, or resources. Leanova has no control over such third-party platforms and is not responsible for their privacy practices. The inclusion of any third-party link does not constitute an endorsement by Leanova. Users are advised to review the privacy policies of any third-party platform they access.

12. Changes to This Privacy Policy


Leanova reserves the right to amend this Privacy Policy at its discretion. Material changes will be communicated by posting an updated version on www.leanova.in with a revised effective date. Continued use of the platform following the posting of changes constitutes your acceptance of the revised Policy. You are encouraged to review this Policy periodically.

13. Grievance Redressal


In accordance with the Information Technology Act, 2000 and the SPDI Rules, Leanova has designated a Grievance Officer to address privacy-related complaints and queries. If you have a grievance concerning the collection, use, or disclosure of your personal information by Leanova, please contact:


Grievance Officer

Leanova Health

Email: care@leanova.in

Website: www.leanova.in


We will endeavour to address your grievance within thirty (30) days of receipt. If you remain unsatisfied, you may seek recourse under applicable Indian law.

14. Governing Law


This Privacy Policy shall be governed by and construed in accordance with the laws of India. Any disputes arising out of or in connection with this Policy shall be subject to the exclusive jurisdiction of the competent courts in India.