Privacy Policy

Last updated: January 2026

Introduction

Medilife Hospital Limited(“Medilife Hospital,” “we,” “us,” or “our”) is committed to protecting the privacy and confidentiality of your personal and medical information. This Privacy Policy explains how we collect, use, store, and share your data when you visit our hospital, use our website, or interact with our services.

This policy is governed by the Kenya Data Protection Act, 2019 and applicable healthcare regulations.

Information We Collect

We may collect the following categories of information:

Personal identification data: Name, national ID or passport number, date of birth, gender, phone number, email address, and physical address.

Medical records: Diagnosis, treatment plans, laboratory results, imaging reports, prescriptions, and clinical notes created during your care.

Insurance details: NHIF number, private insurance policy information, and claims data.

Website usage data: When you use our website, we may collect your IP address, browser type, pages visited, and time spent on the site through standard analytics tools.

How We Use Your Information

Your information is used to:

Provide medical care and treatment. Maintain accurate medical records. Process insurance claims and billing. Communicate with you about appointments, test results, and follow-up care. Improve our services and patient experience. Comply with legal and regulatory requirements.

Data Sharing

We do not sell your personal or medical information. We may share data with insurance providers for claims processing, referring physicians or specialists involved in your care, laboratory partners for diagnostic testing, and government agencies as required by law (e.g., notifiable disease reporting).

Data Security

We implement appropriate technical and organizational measures to protect your data against unauthorized access, alteration, disclosure, or destruction. Medical records are stored securely and access is restricted to authorized healthcare personnel involved in your care.

Your Rights

Under the Kenya Data Protection Act, 2019, you have the right to: access your personal data held by us, request correction of inaccurate data, request deletion of your data (subject to legal retention requirements for medical records), object to processing of your data for purposes beyond healthcare delivery, and withdraw consent where processing is based on consent.

Data Retention

Medical records are retained in accordance with Kenyan healthcare regulations and best practices. Records may be kept for a minimum period as required by law even after the patient relationship ends.

Contact Us

If you have questions about this privacy policy or wish to exercise your data rights, contact us at info@medilifehospital.or.ke or call +254 738 494 444.