Privacy
Policy.
DialFit was built on a simple belief — your health data belongs to you. We do not sell it. We do not share it. We never will. This policy explains exactly what we collect, why, and how we protect it.
Who is responsible for your data.
DialFit (dialfit.in) is a free digital health information platform operated as a sole proprietorship by an individual based in New Delhi, India. For the purposes of India's Digital Personal Data Protection Act, 2023 (DPDPA), DialFit is the Data Fiduciary — the entity responsible for determining how and why your personal data is processed.
You — the person using DialFit — are the Data Principal. This Privacy Policy explains your rights and our obligations under the DPDPA 2023, the Information Technology Act, 2000, and other applicable Indian law.
If you have any questions about this policy or how your data is handled, please contact us at contact@dialfit.in or through our Get in Touch page.
DialFit does not sell your personal data. It does not share your data with advertisers. It does not use your health information for marketing. Your data is used solely to provide the service you requested — nothing else.
What data we collect.
DialFit collects data in two distinct ways — data that stays only in your browser, and data that is submitted to and stored on our private server.
How we use your data.
DialFit uses personal data for the following purposes only:
| Data | Purpose | Legal basis (DPDPA) |
|---|---|---|
| Talk to Expert form data | To prepare and deliver a personalised diet plan via a volunteer dietitian | Consent (given at form submission) |
| Get in Touch form data | To respond to your query or message | Consent (given at form submission) |
| IP address (both forms) | Rate limiting — to prevent spam and protect volunteer health professionals from abuse | Legitimate interest |
| GA4 analytics data | To understand platform usage and improve DialFit's tools and content | Legitimate interest |
| reCAPTCHA data | To verify that form submissions are made by humans, not bots | Legitimate interest |
DialFit does not use your personal data for marketing, profiling, targeted advertising, or any purpose other than the specific purpose for which it was collected.
Who we share your data with.
DialFit shares personal data in the following limited circumstances only:
DialFit will never sell your personal data to any third party. It will never share your health information with advertisers, data brokers, pharmaceutical companies, insurance providers, or any commercial entity. Not now. Not in the future.
How we store and protect your data.
Form submissions — including Talk to Expert consultation data and Get in Touch messages — are stored in a secure MariaDB database on DialFit's private server located in the European Union. The server is protected by industry-standard security measures including SSL/TLS encryption for data in transit, firewall protection, and restricted access controls.
Uploaded medical reports submitted through the Talk to an Expert form are stored in a private, non-publicly accessible directory on DialFit's server. They are accessible only to DialFit and the assigned volunteer dietitian.
While DialFit takes reasonable technical and organisational measures to protect your data, no system is completely secure. In the event of a data breach that is likely to result in harm to you, DialFit will notify you and the relevant authorities as required under the Digital Personal Data Protection Act, 2023.
Data submitted through DialFit's tools that are processed in-browser is never transmitted to our server and therefore carries no storage or breach risk on our end.
How long we keep your data.
DialFit retains personal data only for as long as necessary to fulfil the purpose for which it was collected:
Your rights under DPDPA 2023.
Under India's Digital Personal Data Protection Act, 2023, you have the following rights as a Data Principal. To exercise any of these rights, please contact us at contact@dialfit.in. We will respond within 7 working days.
Users under 18.
DialFit is intended for users who are 18 years of age or older. We do not knowingly collect personal data from persons under 18 without the consent of a parent or legal guardian.
If you believe that a person under 18 has submitted personal data to DialFit without appropriate parental consent, please contact us at contact@dialfit.in and we will delete the data promptly.
Links to other websites.
DialFit's tools and pages contain links to external websites — including PubMed, WHO, ICMR, and other authoritative health sources — for reference and citation purposes. DialFit is not responsible for the privacy practices or content of these external websites. We encourage you to read the privacy policies of any external site you visit.
How we handle updates.
DialFit may update this Privacy Policy from time to time to reflect changes in our data practices, new features, or changes in applicable law. The date of the most recent revision is displayed at the top of this page.
For significant changes that affect how your data is used, we will make reasonable efforts to notify users — including by displaying a notice on the platform. Your continued use of DialFit after any changes constitutes your acceptance of the revised Privacy Policy.
This Privacy Policy is governed by the laws of India. Any disputes arising from this policy shall be subject to the exclusive jurisdiction of the courts of New Delhi, India.
Questions about your privacy?
If you have any questions about this Privacy Policy or how your data is handled, please contact us. We respond within 6–7 working days.
Get in Touch