Security & Privacy

Security & Privacy

Dentascribe is committed to the security and privacy of our users' and patients' data.

GDPR

ICO Registered

Cyber Essentials

NHS DSPT

DCB0129

UK MDR Class I

Compliance

GDPR

UK GDPR and Data Protection Act compliant, and ICO registered. Patient data is processed only when you opt in, encrypted on your device, and never used to train AI.

Read more about GDPR

Compliance

UK Cyber Essentials

Certified under the UK Government's Cyber Essentials scheme. We meet the five baseline controls: firewalls, secure configuration, access control, malware protection, and patch management.

Compliance

NHS Compliant

Compliant with the NHS Data Security and Protection Toolkit (DSPT) and DCB0129 clinical safety. Personal data is handled to NHS standards, with a clinical safety case, Clinical Safety Officer, and hazard log for deployment in NHS settings.

DSPT ยท DCB0129

Compliance

UK MDR Class I

Registered with the MHRA as a Class I medical device under the UK Medical Devices Regulations 2002. We self-declare conformity, carry UKCA marking, and run post-market surveillance.

UK MDR

Class I Medical Device

Data flow

How your data moves through Dentascribe

Robust security measures to protect sensitive information and adhere to stringent industry standards.

1. Audio capture

Your microphone records audio directly on your device. We only begin processing it when you click submit.

Local processing first

2. Secure transmission

When you submit, your data travels through highly secure, encrypted channels (TLS 1.2+ / HTTPS).

Encrypted in transit

3. Transcription

The audio is converted to text in a protected environment. Once transcribed, the original audio file is permanently deleted.

Audio is never stored

4. Generation

Our AI organises the text into your preferred clinical format. We strictly enforce a policy of never using your data to train AI models.

Zero data used for training

5. Encryption & storage

Before saving, all notes and records are encrypted directly on your device. We only store this encrypted version, ensuring only you can access the readable content.

Encrypted before it leaves your device

6. Auto deletion

Encrypted clinical records and documentation automatically delete from our servers after 3 months to avoid unnecessary data storage.

Patient data deleted after 3 months

We do not use your data to train our AI

Dentascribe doesn't need your data to improve. We use advanced techniques to improve our AI's accuracy and reliability, whilst maintaining your privacy and protecting your patient data.

How we protect you

Data Protection

A step-by-step look at how we protect your information, from recording to secure storage.

Zero-knowledge encryption

Your patient notes and letters are encrypted directly on your device, before they even leave it. This means that at no point can anyone, including Dentascribe, ever access or read your sensitive patient information. Only you can view your patient data.

Third-Party Processors

All of our third-party data processors have been selected based on their enterprise-grade security practices and compliance with security standards. We maintain Data Processing Agreements with all processors handling personal data.

Zero Data Retention

Your privacy is paramount. Your audio is transcribed in real-time and then immediately erased; we never store it. Your transcripts are also never kept or logged. We ensure this by having zero data retention policies with all AI providers and by diligently auditing our infrastructure.

Common Questions

Everything you need to know about security

Setup tonight.
Start using tomorrow.

Experience secure, accurate clinical records yourself with our free trial.