DPDP compliance for your industry
A hospital, a college and an online store collect very different data for very different reasons. Each guide maps what your sector collects, the legal basis for it and what has to change by 13 May 2027.
Colleges and universities
Admissions, parental consent for under-18 applicants, placements and alumni.
Schools
Parent-verified consent for every student, photos, transport and fee data.
Coaching institutes
Lead forms, WhatsApp updates, result sharing and marketing calls.
Edtech platforms
App sign-ups, learning analytics and restrictions on tracking minors.
Hospitals
Patient records, insurer sharing, and access requests from patients and nominees.
Clinics and doctors
Appointment booking, prescriptions and reminder messages.
Diagnostic labs
Sample and report data, home collection, report delivery on WhatsApp.
E-commerce and D2C
Checkout, marketing consent, and erasure of inactive accounts.
Real estate developers
Site-visit leads, broker sharing, KYC and booking documents.
Banks, NBFCs and fintech
KYC, credit checks, recovery calls and sector-specific retention.
Insurance
Proposal forms, claims data and sharing with brokers and TPAs.
Hotels and travel
Guest ID copies, bookings and loyalty programme data.
HR and recruitment
Candidate CVs, background checks and employee records.
SaaS and IT services
Processor contracts, customer data and security safeguards.
Gyms and fitness studios
Member details, body measurements and trainer access.
Housing societies
Resident registers, visitor logs, CCTV and gate apps.
Don’t see your sector? Tell us about your business and we’ll set up the purposes with you.