🌍 Global Coordination · CLIA · CAP · ISO 15189+91 9511890757

Compliance & Certifications

How GLOAIA Labs operates within applicable regulatory, statutory, and laboratory-accreditation frameworks.

GLOAIA Labs operates within a global cross-border diagnostic-coordination context. This page consolidates the statutory registrations, regulatory frameworks, laboratory accreditations, and operational compliance controls that govern how we work — across India, the United States, the European Union/United Kingdom, and other jurisdictions we serve.

Note: This page describes our compliance posture and intent. It is not a statutory certification. Where applicable laws require formal audits, certifications, or third-party attestations, those are described as such. Where we operate aligned with a framework without formal certification, we describe it as “designed with reference to” — not as “certified.”


1. Statutory registrations (India)

GLOAIA Labs operates as Global AutoImmunity Awareness — a Sole Proprietorship registered in Pune, Maharashtra, India. Our active statutory registrations:

Registration Number Authority Purpose
GSTIN (Goods and Services Tax) 27AFYPN8073K1ZE Government of India / Maharashtra GST GST-compliant invoicing for services
IEC (Importer Exporter Code) 3116928894 Directorate General of Foreign Trade (DGFT) Authorized cross-border import/export operations
MSME UAN (Udyam Aadhaar Number) MH26D0014884 Ministry of MSME Registration as a Micro/Small/Medium Enterprise

Legal name: Global AutoImmunity Awareness
Proprietor: Hemant Dattu Nikalje
Registered office: First Floor, 7, Ujwal Greens, Phase A, Lane No A-20, Sr No 148, Raikar Nagar, Dhayari, Pune, Maharashtra 411041, India

Copies of the underlying registration certificates can be made available to laboratory partners, regulators, or other entities with a legitimate business need on written request to compliance@gloaialabs.com.


2. Healthcare data and privacy framework

2.1 India — Digital Personal Data Protection (DPDP) Act 2023 + DPDP Rules 2025

India’s primary data-protection regime. The parent Act (DPDP Act 2023) sets the principles; the DPDP Rules 2025 (effective 14 November 2025) provide operational specifics. Our framework addresses:

Penalties for non-compliance under the DPDP regime can extend up to ₹250 Crore for failure to implement reasonable security safeguards.

Grievance officer (per DPDP Act §10): Hemant Dattu Nikalje, Founder. Contact: compliance@gloaialabs.com.

2.2 European Union / United Kingdom — GDPR / UK GDPR

Penalties for non-compliance under GDPR can extend up to €20 million or 4% of global annual turnover (whichever is higher).

2.3 United States — HIPAA-aware operational framework

We use the term “HIPAA-aware” intentionally — to reflect operational alignment without claiming universal HIPAA certification.

2.4 Other jurisdictions

For patients in Singapore (PDPA), Canada (PIPEDA), UAE (PDPL), Australia (Privacy Act 1988), Japan (APPI), and other jurisdictions we currently serve, we apply equivalent or stronger data-handling controls.

For full jurisdictional treatment, please see our Privacy Policy.


3. Laboratory partner accreditations

GLOAIA Labs is CLIA-certified-lab partnered — meaning every Laboratory Partner we work with operates a CLIA-certified facility.

3.1 CLIA — Clinical Laboratory Improvement Amendments (US federal)

The US federal standard for clinical diagnostic laboratories administered by the Centers for Medicare & Medicaid Services (CMS).

3.2 CAP — College of American Pathologists (gold standard)

The most rigorous voluntary accreditation for US clinical laboratories.

3.3 ISO 15189 — International standard for medical laboratories

3.4 Current Laboratory Partners

Laboratory Accreditations Speciality Reference
Precision Analytical CLIA-certified, CAP-accredited DUTCH hormone testing dutchtest.com
Diagnostic Solutions Laboratory CLIA-certified, CAP-accredited GI-MAP and gastrointestinal testing diagnosticsolutionslab.com
Genova Diagnostics CLIA-certified, CAP-accredited Functional and integrative testing gdx.net
Cyrex Laboratories CLIA-certified Autoimmunity and food-reactivity testing cyrexlabs.com
Doctor’s Data CLIA-certified, CAP-accredited Toxicology, nutrition, metabolic testing doctorsdata.com
Alletess Medical Laboratory CLIA-certified Food allergy and food sensitivity testing foodallergy.com

4. Operational security and data-handling controls

Control Implementation
Encryption in transit TLS 1.2+ enforced across all platform endpoints
Encryption at rest AES-256 for data stored in our application and database tiers
Access controls Role-based access with the principle of least privilege; audit logging for sensitive operations
Authentication Strong password requirements with salted, hashed password storage; multi-factor authentication for practitioner and admin tiers is on our forward roadmap
Payment data Card data is processed by Razorpay (PCI-DSS Level 1 certified) — GLOAIA Labs never sees or stores raw card numbers
Backup and recovery Daily database backups; tested restoration procedures
Data retention Personal data retained only for the period reasonably necessary; erasure on data-subject request
Vendor management We evaluate the data-handling posture of all third-party vendors before integration
Security incident response Internal incident-response protocol designed to support statutory breach notification (DPDP Rule 7 broadly 72 hours; GDPR Article 33 72 hours; HIPAA 60 days). Fully automated breach-detection workflows are part of our forward roadmap.
Vulnerability disclosure Responsible-disclosure channel: security@gloaialabs.com — typical response window 48 hours

5. Consent management

All consents are revocable. Withdrawal can be done through the platform’s account settings or via written request to privacy@gloaialabs.com.


6. Children and vulnerable groups

GLOAIA Labs’ platform is intended for adults aged 18 and over.

We do not target marketing to children. We do not knowingly collect personal data from children under 18 except through their parent or legal guardian.


7. Cross-border data flow


8. AI, analytics, and future-feature compliance


9. Grievance officer and data-subject contact

Grievance Officer
Hemant Dattu Nikalje, Founder, GLOAIA Labs
Email: compliance@gloaialabs.com
Postal: First Floor, 7, Ujwal Greens, Phase A, Lane No A-20, Sr No 148, Raikar Nagar, Dhayari, Pune, Maharashtra 411041, India

For:


10. Continuous compliance and updates

We commit to reviewing applicable regulatory changes at least quarterly, updating this page when our framework changes, publishing material policy changes with clear change logs, and engaging healthcare-aware legal counsel for periodic review.


11. Relationship to other legal documents

Where there is any conflict, the document most specific to the matter at hand prevails.

🌍 Select Your Currency Loading live exchange rates...
Selecting a currency will update all lab test prices to your chosen currency.