Privacy Policy

This policy outlines how we handle the personal data you share with Nova Health.

Last updated: February 11, 2026

1. Introduction

This Privacy Policy explains how we collect, use, and protect your information when you use our application and services. By using our platform, you consent to the data practices described in this policy.

2. Information We Collect

We may collect the following categories of information:

  • Profile information (e.g., name, email, phone number, address).
  • Usage data and device information (e.g., IP address, browser type, pages viewed).
  • Cookies and session data (used to improve site functionality and security).

Health Information (Sensitive Data)

Important: We collect and process sensitive health information with your explicit consent.

We collect and process the following health-related information:

  • Prescription images and documents: When you upload prescriptions for medicine orders.
  • Medical queries and consultation records: When you consult with our pharmacists.
  • Medicine purchase history: Records of medicines you have ordered.
  • Health conditions: Information voluntarily provided during consultations.

Legal Basis: Your explicit consent when uploading prescriptions or requesting consultation services.

Retention Period: Prescriptions are retained for 5 years as required by Pakistani pharmacy regulations. You can request deletion of other health data, subject to legal obligations.

Security: All health information is encrypted and accessible only to licensed pharmacists for the purpose of providing healthcare services to you.

3. How We Use Your Information

Your information is used to:

  • To provide and maintain our services and fulfill your requests.
  • To improve functionality and user experience by analyzing usage trends.
  • To send notifications or essential service updates.
  • For security and fraud prevention purposes.

4. Sharing of Information

We do not sell your personal data. We may share it only with trusted third parties under strict conditions:

  • Service providers who perform services on our behalf (e.g., hosting, payment processing, analytics).
  • Payment Processors: Your card information and other financial data needed to process your payment are collected and stored by third party payment processors. The use of your data by such third party payment processors is subject to their own privacy policies.
  • Law enforcement or government agencies (only through the order of court by competent authority of law ).

5. WhatsApp and Meta (Facebook) Services

We use WhatsApp (provided by Meta Platforms, Inc.) to communicate with you for:

  • Authentication: Sending one-time passwords (OTPs) to verify your phone number when you log in or register.
  • Order and service updates: Sending order confirmations, shipping updates, and essential service notifications.

Data we process via WhatsApp: When you use our WhatsApp based features, we receive and process your phone number and the message content necessary to provide these services (e.g., delivery of OTP codes and order related messages). We do not use this information for marketing unless you have given separate consent.

This use is in accordance with Meta’s WhatsApp Privacy Policy and our agreements with Meta. For data collected through our app and sent via WhatsApp, our practices are described in this policy. To request deletion of data we hold that is linked to your WhatsApp/phone number, see Section 6 (Your Rights) and Section 9 (Contact Us).

6. Google Services

We use Google Maps (e.g., for address selection and delivery) and related Google APIs. When you use features that involve maps, Google may receive and process data as described in the Google Privacy Policy. We use Google services only to provide and improve our delivery and location features.

7. Data Protection & Security

We employ technical and organizational measures including encryption, access control, and continuous monitoring to protect your data from unauthorized access, disclosure, alteration, and destruction.

8. Your Rights & Requesting Data Deletion

Depending on your location, you may have the following rights regarding your data:

  • Right to access your personal data held by us.
  • Right to request deletion of your personal data (subject to legal exceptions, e.g. prescription retention required by law).
  • Right to update or correct inaccurate information.

How to request deletion of your data: You may request deletion of your personal data at any time by contacting us at info@novahealth.pk Please include your full name and the email or phone number associated with your account. We will process your request in accordance with applicable law and respond within a reasonable period.

9. Children's Privacy

Important Notice: Our services are intended for users aged 18 and above. We do not knowingly collect personal information from children under 18 years of age.

If you believe we have inadvertently collected information from a minor, please contact us immediately at info@novahealth.pk , and we will promptly delete such information.

Parents or guardians may use the app to order medicines for children under their care.

10. Changes to Privacy Policy

We may update our Privacy Policy occasionally. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date.

11. Contact Us

If you have any questions about our privacy practices, this policy, or to request access, correction, or deletion of your data, please contact us at:

Email: info@novahealth.pk

We will respond to data-related requests in line with applicable law.