Privacy Policy
Last Updated: 18th December 2025
Entity: Nostavia Health (and its affiliates)
1. INTRODUCTION AND SCOPE
Nostavia Health ("Nostavia," "we," "us," or "our") is committed to protecting the privacy and security of our members ("you," "your," or "User"). This Privacy Policy outlines our practices regarding the collection, storage, usage, and disclosure of your Personal Information and Sensitive Personal Data or Information (SPDI) when you use our platform, mobile application, and services (collectively, the "Platform").
We recognize that our services involve the collection of deeply personal biological data to "reinvent the human lifespan". By accessing our Platform or subscribing to our services (Nostavia PRO or Nostavia ULTIMATE), you expressly consent to the practices described in this policy.
2. DATA WE COLLECT
To provide our "Whole-Body Intelligence System", we collect specific categories of data:
A. Personal Information
Identity Data: Name, age, gender, date of birth.
Contact Data: Phone number, email address, shipping address (for supplement delivery and home sample collection).
B. Sensitive Personal Data or Information (SPDI)
This is the core of our "Discovery Phase":
Biological Samples & Lab Results: Data derived from blood, urine, or other samples, including but not limited to metabolic markers, hormonal panels, and toxin exposure levels (heavy metals, microplastics).
Genetic Data: Information regarding genetic and epigenetic predispositions utilized for disease risk prediction.
Health & Lifestyle Data: Responses to questionnaires regarding sleep architecture, stress resilience, diet history, current medications, and family medical history.
Physiological Metrics: Data synced from wearable devices (if connected), such as heart rate variability (HRV), resting heart rate, and activity levels.
3. HOW WE USE YOUR DATA (PURPOSE OF PROCESSING)
We do not sell your data. We use your data to "add life to years". Your data is processed for the following specific purposes:
A. Service Delivery & Protocol Generation
To generate your "Longevity Report" and "Functional Grading" across critical health domains.
To formulate your "Dynamic Custom Protocol" (Phase 1 & Phase 2), including specific dietary, fitness, and supplement recommendations.
To facilitate home sample collection and the delivery of prescribed supplements.
B. The "Genius Doctor" Review (Human Processing)
Explicit Consent for Human Review: You acknowledge and agree that your anonymized or pseudo-anonymized data will be reviewed by our "Genius Doctors" (expert medical professionals). This human review is essential to identify "latent knowledge" and connect biological patterns that AI may miss.
C. Artificial Intelligence & Predictive Modeling
To feed our proprietary AI models that calculate disease probability percentages and predict future health risks.
To analyze the "collective effect" of biomarkers (e.g., how thyroid function impacts heart health).
D. Communication & Support
To provide 24/7 access to your dedicated Nutritionist and care team for daily guidance.
4. DATA SHARING AND DISCLOSURE
We operate on a principle of "Radical Transparency" with you, but strict confidentiality with others.
Laboratory Partners: We share necessary demographic information with NABL-accredited laboratory partners solely for the purpose of processing your biological samples.
Medical Professionals: Your data is shared with the specific doctors and nutritionists assigned to your care team.
Legal Compliance: We may disclose information if required by law, court order, or government regulation.
NO Commercial Sale: We do not sell, rent, or trade your personal health data to insurance companies, advertising networks, or data brokers. Your risk scores and biological data are firewall-protected from third-party insurers.
5. DATA SECURITY PRACTICES
We employ the "Shield" metaphor not just for your health, but for your data.
Encryption: All Sensitive Personal Data is encrypted at rest and in transit using industry-standard protocols.
Access Control: Access to your biological data is restricted to authorized medical and technical personnel on a strict "need-to-know" basis.
Anonymization: Wherever possible, data used for improving our AI algorithms is anonymized to remove personally identifiable information.
6. YOUR RIGHTS (UNDER INDIAN LAW)
As a Data Principal, you retain the following rights:
Right to Access: You may request a copy of the "Longevity Report" and raw lab data held by Nostavia.
Right to Correction: You may request corrections to inaccurate personal details or medical history.
Right to Erasure (Right to be Forgotten): You may request the deletion of your account and data. Note: Deletion of data will result in the immediate termination of the Nostavia membership and inability to provide longitudinal health tracking.
Right to Withdraw Consent: You may withdraw consent for data processing at any time, subject to legal and contractual restrictions.
7. DATA RETENTION
We retain your health data to enable the "Continuous Evolution" of your protocol. We track progress over "Two-Phase Cycles" and beyond to visualize biological age reversal. If you cancel your membership, we will retain your records for a period mandated by applicable medical record retention laws in India, after which they will be securely deleted or anonymized.
8. GRIEVANCE OFFICER
In accordance with the Information Technology Act, 2000 and the Digital Personal Data Protection Act, the name and contact details of the Grievance Officer are provided below:
Email: aditya@nostaviacorp.com
Address: Office: PN-889, Ali Nagar, Kanpur Road, Lucknow 226008
