HIPAA
DHEP follows all HIPAA Security Rule technical safeguards, access controls, audit controls, integrity controls and transmission security. Business Associate Agreements are available for all enterprise customers.
Trust center
DHEP is the Digital Healthcare Enabler Platform. Security and privacy are not features, they are the foundation.
DHEP follows all HIPAA Security Rule technical safeguards, access controls, audit controls, integrity controls and transmission security. Business Associate Agreements are available for all enterprise customers.
Full GDPR compliance, including data protection impact assessments, data minimisation by design, purpose limitation and automated data subject rights via the patient app.
Our information security management system is aligned with ISO/IEC 27001:2022. Annual internal audits and third-party penetration testing.
Trust services criteria for security, availability and confidentiality, attested by an independent auditor.
Cross-border referrals route only to facilities that hold a current Joint Commission International accreditation.
Africa stack hosted in Cape Town, Europe stack hosted in Frankfurt. You choose the region where your data lives.
Bank-grade encryption across the entire platform. Keys rotated automatically, audit logs immutable.
No record is shared without an explicit patient choice. Every access is logged and visible to the patient.
Every access to a record is logged, including who, when and for what purpose. Logs are available to compliance officers on demand.
Business Associate Agreements available for hospitals, doctors and qualifying partners on the enterprise plan.
DHEP operates a responsible vulnerability disclosure program. Security researchers who identify vulnerabilities are asked to contact security@dhep.care with a full description before public disclosure. We commit to acknowledging reports within 48 hours and resolving critical vulnerabilities within 7 days.
Email security@dhep.careOur compliance team is available for hospitals, doctors and qualifying partners.
Talk to compliance