All data is kept safe.
Only the minimum clinically meaningful information is used, encrypted.
Collected safely, with consent
Only records patients consented to share, de-identified before any research or analysis.
Every identifier is removed
Only the minimum clinically meaningful information is used.
NameGovernment-issued identifiersContact detailsDate of birthHospital nameClinician nameOther identifiers
James Whitfield (M/58, 1968-03-14), gastroenterology at Riverside General Hospital, seen by Dr. Ellen Marsh. Heartburn persists after four weeks of rabeprazole; nocturnal reflux reported. MRN 00-123456
Heartburn persists after four weeks of rabeprazole; nocturnal reflux reported.
Provided only to verified clinicians and researchers
Credentials and affiliation are checked through a verification process, and only clinicians and researchers whose identity has been confirmed can use the platform.
Dr. R. Alvarez
Clinical researcher · A university hospital
Used safely, for research and analysis only
The platform strictly prevents any use beyond these purposes.
Continuous monitoring and abuse detection
Platform activity is continuously monitored for misuse, anomalous behavior, and signs of compromise. Automated systems apply rate limits and detect abuse across users, and high-risk activity is reviewed and acted on by the trust and safety team.
Encrypted storage
Records are encrypted at rest and protected by TLS in transit. Document files are additionally encrypted with a distinct key per file.
Protected infrastructure
The infrastructure is protected with firewall controls, network isolation, encrypted data storage, and adaptive rate limiting at the IP and user level.
Security and compliance
We meet international security and privacy standards.


Frequently asked questions
- Can record text leak?
- The research corpus holds only de-identified records, and checking the evidence behind a finding stays within that boundary. Originals submitted by patients are kept in separate encrypted storage that researchers cannot open.
- Is patient personal information visible?
- No. Every identifier is removed before analysis, counts for very small groups are not shown, and only the minimum clinically meaningful information is used.
- Can just anyone access the data?
- No. Only clinicians and researchers whose identity has been verified through our authentication process can query, for research and analysis purposes.
- Is IRB review not required?
- The exploratory stage runs without review. Results are de-identified and counts for very small groups are not shown, so it does not constitute research using identifiable information. Once you settle on a hypothesis and move to the study itself, IRB approval is required.
- Can results be used for publications or regulatory submissions as is?
- Not as is. Once you have IRB approval, you can review the de-identified source records behind a finding and use them either as a citation in your paper or as supporting material in a regulatory filing. We help you prepare for that review.
- Where are patient records stored?
- Everything is stored encrypted, and records stay in the country the patient consented in.





