TRUST & COMPLIANCE
Privacy Policy & Security Statement
Last updated: August 2026
1. HIPAA & ISO 27001 Compliance
Scribe EMR AI adheres strictly to the Health Insurance Portability and Accountability Act (HIPAA) and is ISO 27001 certified. All Protected Health Information (PHI) is processed with end-to-end AES-256 encryption both in transit and at rest.
2. Data Isolation & Tenant Controls
Each clinical organization maintains an isolated data vault with role-based access control (RBAC). Data is never shared across tenants or used for third-party AI training without explicit consent.