Lawcription

Operated by Healthcription

PRIVACY POLICY & DATA PROTECTION

Last Updated: 01/04/2026

1. STATUTORY FRAMEWORK, OWNERSHIP & SCOPE

This Privacy Policy (“Policy”) is a digital mandate published in accordance with the Information Technology Act, 2000 and the Digital Personal Data Protection Act (DPDPA), 2023.

Lawcription is a digital platform and brand operated under Healthcription, owned by Mrs. Poulomi Debnath. For the purpose of this Policy, Healthcription (operating as "Lawcription") shall be the "Data Fiduciary" responsible for protecting the privacy of its Users ("Data Principals").

All services, financial transactions, and legal obligations—including the processing of your Personal Data—are undertaken by Healthcription. By accessing the App, you provide Unambiguous, Informed, and Affirmative Consent to the processing of your data as described herein.

2. TAXONOMY OF DATA COLLECTED

We limit data collection to the Principle of Purpose Limitation and Data Minimization:

3. LEGAL BASIS & PURPOSE OF PROCESSING

Under Section 4 of the DPDPA, 2023, processing occurs only for "Lawful Purposes":

4. NOTICE AND CONSENT MECHANISM

5. DATA RETENTION & ERASURE (RIGHT TO BE FORGOTTEN)

6. DATA SHARING & THIRD-PARTY DISCLOSURES

7. SECURITY ARCHITECTURE

We employ Reasonable Security Practices and Procedures (RSPP) as per ISO/IEC 27001 standards, including end-to-end encryption and Role-Based Access Control (RBAC). Lawcription (Healthcription) is not liable for breaches resulting from User negligence or systemic vulnerabilities beyond its reasonable control.

8. STATUTORY RIGHTS OF THE DATA PRINCIPAL

Pursuant to the DPDPA, 2023, you are entitled to:

9. GRIEVANCE REDRESSAL MECHANISM

In accordance with Rule 3(11) of the IT Rules, 2021 and Section 13 of the DPDPA, please contact:

10. PROTECTING MINORS

The App is strictly for individuals above 18 years of age. We do not knowingly process data of "Children" (as defined under DPDPA); such data will be deleted immediately if discovered.

11. CROSS-BORDER TRANSFERS

Data may be processed on servers outside India, provided transfers comply with Central Government "Whitelisting" and maintain adequate safeguards.

12. AMENDMENTS

We reserve the right to amend this Policy. Continued use of the App constitutes "Deemed Acceptance" of the revised Policy.