In short
Short version: use it to run your clinic. Do not use it to spam people, to hold data you have no right to hold, to impersonate a practitioner, or to attack the platform.
Almost every clinic will never think about this page. It exists so that when someone does misuse the platform, we can act, and so that the rules were published before we did.
1.Patient data
You must not:
- store personal data you have no lawful basis to hold, or keep it after you were required to stop;
- use patient contact details for anything other than that patient’s own care and the clinic’s dealings with them;
- sell, rent or share a patient list, or pass it to a pharmacy, laboratory, insurer or anyone else without a lawful basis;
- upload another organisation’s records that you were not entitled to take;
- use one clinic account to hold the records of a clinic that has not agreed to it.
A patient’s record is theirs, held by you in trust. That is the standard we hold accounts to, and it is higher than the minimum the law would allow.
2.Messaging
The messaging in Sqavio is for service messages about a patient’s own appointment, bill or prescription. You must not use it to send unsolicited marketing, and you must honour an opt-out immediately.
WhatsApp has its own business policy and template approvals, and SMS to Indian numbers carries DLT registration requirements. Following those is part of using this feature; we may pause messaging on an account that puts our sender reputation or a provider relationship at risk, and we will tell you why.
3.Clinical and professional conduct
- Only a registered medical practitioner may issue and sign a prescription in the product. Do not sign on another practitioner’s behalf or share their login.
- Do not present the software’s output as a clinical opinion it did not make. It formats and stores; it does not diagnose.
- If you consult remotely, follow the Telemedicine Practice Guidelines that apply to you.
- Do not use the product to hold yourself out as a qualification or speciality you do not have.
4.The platform itself
You must not:
- attempt to access another clinic’s data, or probe for a way to;
- run automated scanning, load testing or penetration testing against the live service without our written agreement — ask us and we will give you somewhere safe to test;
- circumvent plan limits, rate limits or billing;
- resell access, or run a third party’s clinic on your subscription without telling us;
- upload malware, or content that is unlawful in India;
- interfere with the service for anyone else.
Reporting a security flaw you found in good faith is welcome and is not a breach of this policy. Write to [email protected].
5.What happens if this is broken
Where we can, we ask first: most breaches are a misunderstanding and end with a conversation. Where the risk is serious — patient data at stake, an attack in progress, something unlawful — we may suspend immediately and tell you afterwards.
Suspension and termination are dealt with in the Terms. Even where we suspend, your right to export your own data is preserved; we do not use data as leverage.
To report misuse by another account, write to [email protected] with what you have seen.
Questions about this document? Write to [email protected]. If you are not satisfied with the answer, the grievance route is open to you.