Designed so your records stay yours.
This is a public preview. We're building toward encrypted, consent-driven, region-aware storage — this page describes today's protections honestly, not final compliance claims.
Encryption at rest
Medical files are protected with application-level encryption before storage.
Data residency
Regional data controls are activated only in approved deployments. No region is presumed compliant.
Granular consent
Storage, OCR, AI, QR share, family access — each toggled separately.
Audit trail
Access is logged. No raw medical content is stored in logs.
Consent-controlled AI
AI processing is optional and consent-controlled. It is not required to use core storage features.
Data export & deletion
You can request export or deletion of your account data; some deletion steps may require manual review during the preview.
Compliance in progress
Privacy and compliance requirements are validated per launch region before any real health data is accepted there.
Kill switches
Per-region pauses exist for incidents, with transparent user notice.
