1. Introduction
At JMA Remedies, we are committed to protecting the privacy and security of the personal and health-related data we process. This Privacy Policy explains how we collect, use, disclose, and safeguard information from our customers, healthcare professionals (HCPs), and patients who use our medical devices and digital health services.
2. Information We Collect
We collect information that identifies you or relates to an identifiable individual. The types of data we collect include:
- Contact Information: Name, email address, phone number, and mailing address.
- Professional Data (for HCPs): Medical license number, specialty, and institutional affiliation.
- Health & Device Data: If applicable, data generated by our devices, including usage logs, diagnostic metrics, and treatment outcomes.
- Technical Data: IP addresses, browser types, and interaction data from our website or connected applications.
3. How We Use Your Data
JMA Remedies processes your data for specific, lawful purposes:
- Product Safety & Vigilance: To monitor device performance and comply with mandatory medical device reporting (MDR) requirements (e.g., reporting adverse events to the FDA or EMA).
- Service Delivery: To provide technical support, software updates, and fulfill orders.
- Regulatory Compliance: To maintain records required by quality management systems (ISO 13485:2016) and the QMSR (Quality Management System Regulation) effective as of February 2026.
- Research & Development: To improve device efficacy (using anonymized or pseudonymized data).
4. Data Sharing & Disclosure
We do not sell your personal data. We may share information only with:
- Regulatory Authorities: When required by law for safety monitoring.
- Service Providers: Third-party vendors (e.g., cloud storage, logistics) who are contractually bound to protect your data.
- Authorized Distributors: To facilitate device servicing or delivery in your region.
5. Data Security
In compliance with the Cyber Resilience Act and FDA cybersecurity guidelines, JMA Remedies employs advanced security measures, including:
- Encryption: Data is encrypted both at rest and in transit.
- Access Controls: Restricted access to sensitive health data based on the “principle of least privilege.”
- Vulnerability Management: Continuous monitoring for cybersecurity threats to ensure device integrity.
6. Your Rights
Depending on your location, you may have the following rights:
- Access & Portability: Request a copy of your data.
- Correction: Ask us to fix inaccurate information.
- Erasure: Request deletion of your data (subject to legal retention requirements for medical records).
- Withdraw Consent: Opt-out of marketing communications at any time.
7. International Transfers
If we transfer data across borders, we ensure adequate safeguards are in place (such as Standard Contractual Clauses) to maintain a level of protection equivalent to your local laws.
8. Contact Us
For any questions regarding this policy or to exercise your data rights, please contact our Data Protection Officer (DPO):
Email: jmaremedies@gmail.com
Address: M/s JMA Remedies, Plot No 255, MSME Park, near Hirapur Village, Sanand-2 Smart Industrial Estate, Sanand GIDC, Ahmedabad, Gujarat – 382110
Phone: + 91 88498 60678