Security & Privacy

Designed so your records stay yours.

This is a public preview. We're building toward encrypted, consent-driven, region-aware storage — this page describes today's protections honestly, not final compliance claims.

Encryption at rest

Medical files are protected with application-level encryption before storage.

Data residency

Regional data controls are activated only in approved deployments. No region is presumed compliant.

Granular consent

Storage, OCR, AI, QR share, family access — each toggled separately.

Audit trail

Access is logged. No raw medical content is stored in logs.

Consent-controlled AI

AI processing is optional and consent-controlled. It is not required to use core storage features.

Data export & deletion

You can request export or deletion of your account data; some deletion steps may require manual review during the preview.

Compliance in progress

Privacy and compliance requirements are validated per launch region before any real health data is accepted there.

Kill switches

Per-region pauses exist for incidents, with transparent user notice.