Trust Center
Data Handling
Every step of the process is designed to minimise data exposure and maximise your control.
Transcribed in real time, then discarded. No audio ever hits disk.
All clinical notes are encrypted with AES-256. Application-level encryption means even a database breach reveals nothing.
Data Residency
Choose where patient data lives. It never crosses jurisdictions.
Sydney, London, Frankfurt, and US East. The US East region is HIPAA compliant.
Each clinic selects their data residency region. You can change it at any time from your settings dashboard.
Patient-sensitive data — clinical notes and documents — never leaves your selected region. Infrastructure is provisioned per-region.
Compliance
Every subprocessor that handles patient data operates under a Business Associate Agreement.
We meet the highest standards for healthcare data protection in the US and Australia.
Every third-party provider that processes protected health information operates under a signed Business Associate Agreement.
Retention & Deletion
No patient data is retained indefinitely. You decide how long notes exist.
3 to 180 days. You set the timeline.
After your configured retention period, notes are automatically and permanently redacted from our servers.
We don't keep patient health data forever. Export notes to your EHR before expiry — they're yours, not ours.
Authentication
No passwords to leak, phish, or forget. We use modern authentication to keep accounts secure.
Sign in with a one-time code sent to your email. No passwords means no risk of weak or reused credentials.
Add a passkey for biometric sign-in — Face ID, Touch ID, or your device's security key. Fast, phishing-resistant, and secure.
Only the treating clinician can access generated notes. Clinify staff never see decrypted patient data.