Canipus Privacy ← canipus.com

Privacy Policy

Last updated: 13 June 2026 · Canipus Private Limited

This policy explains what personal data Canipus collects, why, how we protect it, and the rights you have over it — written to align with India's Digital Personal Data Protection Act, 2023 (the "DPDP Act").

Our data principle mirrors our editorial one. Just as we publish nothing we can't verify, we collect no personal data we don't need. We ask only for what a feature actually requires, we tell you why, and we never sell your data.

01 · Who we are

Canipus Private Limited ("Canipus", "we", "us") is a company incorporated in India that operates canipus.com, a verified-status media platform for healthcare innovation. For the purposes of the DPDP Act, Canipus is the Data Fiduciary responsible for the personal data described here. You — the person whose data we process — are the Data Principal.

02 · What we collect

Information you give us

Information collected automatically

Information we publish about innovations

Most content on Canipus describes products, companies, and regulatory records — not individuals. Where an innovation listing names a person (for example an exhibitor contact), that information is published on a business basis with the exhibitor's participation.

03 · Why we use it — and our lawful basis

Under the DPDP Act we process personal data on the basis of your consent, or for legitimate uses permitted by the Act. Specifically:

04 · How we share it

We do not sell your personal data. We share it only with:

05 · Verification data & public sources

To verify regulatory status we query public regulatory sources — including the U.S. FDA's openFDA, ClinicalTrials.gov, the EU's EUDAMED, and India's CDSCO records. These queries concern products and approvals, not your personal data.

06 · How long we keep it

We retain personal data only as long as needed for the purpose it was collected, or as required by law. When a purpose ends — for example, if you withdraw consent or ask us to delete your enquiry — we delete or anonymise the data within a reasonable period, unless retention is legally required.

07 · How we protect it

We apply reasonable security safeguards appropriate to the data we hold, and we practise data minimisation by design. No method of transmission or storage is perfectly secure, but we take our duty of care seriously and will act promptly on any personal-data breach in line with our legal obligations.

08 · Your rights as a Data Principal

Under the DPDP Act you have the right to:

To exercise any of these, contact us using the details below. We will respond within the timelines required by law.

09 · Children's data

Canipus is intended for healthcare professionals, businesses, investors, and adult patients or caregivers. We do not knowingly collect the personal data of children (under 18) without verifiable parental consent. If you believe a child has provided us data, please contact us and we will delete it.

10 · Changes to this policy

As the DPDP Rules are finalised and as our platform grows — particularly when account features launch — we will update this policy and revise the "last updated" date. Material changes will be communicated through the platform.

11 · Contact & grievances

Data Fiduciary
Canipus Private Limited
Grievance / privacy contact
Website

This policy is provided in good faith to describe our current practices and is written to align with the DPDP Act, 2023. It is not legal advice. As the DPDP Rules are notified and our processing evolves, we will review and update it, and we recommend periodic legal review. If anything here is unclear, please reach out — we would rather explain than leave you guessing.