Security & Privacy

Built to be trusted with a clinic's day

Clinics run on trust, so Heshacare treats consultation audio and patient records with care from the first second - consent before capture, encryption throughout, and access scoped to the role.

Consent before capture

The patient's consent is captured before any recording begins, and kept with the visit.

Encrypted in transit and at rest

Audio and records are encrypted on the wire and in storage.

Role-based access

Doctor, staff and admin each see only what their role needs.

Clear retention

We are explicit about what is stored, for how long, and who can access it.

Confirmed before launch

Applicable health-data and data-protection requirements are confirmed with each clinic before go-live.

Documentation, not diagnosis

Heshacare is documentation and administration software - not a diagnostic or treatment tool.

How consultation audio and records are handled

Recording starts only after the patient consents in the room. That consent is recorded alongside the visit, so there is always a clear record of when capture was permitted.

Consultation audio is used to draft the visit note, then handled according to the retention terms agreed with your clinic. Records are encrypted in transit and at rest, and access is limited by role - a receptionist, a doctor and an administrator do not see the same things.

Before any clinic goes live, we confirm the applicable health-data and data-protection requirements together, so the setup fits the rules that apply to your practice.

A plain statement worth repeating: Heshacare is documentation and administration software. It does not diagnose, prescribe or decide treatment. Clinical judgment stays with the doctor.

Bring it to your clinic

Have a security question before you start?

Bring it to the demo. We are happy to walk your team through consent, storage, retention and access in detail.