Security is our foundation
We protect your practice with bank-grade encryption, strict access controls, and a privacy-first architecture.
End-to-End Encryption
Your data is encrypted at rest and in transit using AES-256 and TLS 1.3. We use customer-managed keys for maximum control.
Data in Europe, keys in Switzerland
Encrypted data is processed in Europe; cryptographic keys are managed in Switzerland (Cloud KMS, Zurich).
Private AI
Inference runs on private endpoints in Europe and your data is never used for training. You can disable AI features at any time.
World-Class Infrastructure
Enterprise cloud infrastructure
High availability and automatic backups; cryptographic keys managed in Switzerland.
Encrypted Storage
Firestore database with automatic daily backups and point-in-time recovery.
Key Management
Cryptographic keys managed via Cloud KMS with strict rotation policies.
Standards & infrastructure
How we protect data from AI
How we handle Patient Identity
Transcription runs as a secure stream and notes are generated on private infrastructure in Europe; nothing is used for model training. For patient overviews, names are replaced with aliases before the model is called.
- No Model Training
- Processing in Europe
- Aliases for patient overviews
The control is yours
While our AI is secure by design, we understand that every case is unique. You can disable AI features on a per-use-case basis (e.g., for specific patient overviews or commands) at any time.
Strict Access Controls
You control who sees what. Our role-based access control (RBAC) ensures that staff only access the data they need.
Role-Based Access
Granular permissions for Admins, Practitioners, and Finance roles.
Comprehensive Audit Logs
Every view, edit, and export is logged and available for review.
Authentication
- Secure password policies
- Multi-Factor Authentication (MFA) supported
- Automatic session timeouts
- Brute-force protection