Trust and security

Trust is not declared.It is built.

noresia handles health data. Here, concretely, is how it is protected, from encryption to the right to deletion.

What holds the structure

Four guarantees, held by the architecture.

01

Systematic encryption

In transit, on every exchange

All communication with the platform is encrypted. No appointment data ever travels in the clear.

02

Separation per clinic

Locked at the engine level

Each clinic lives in a sealed compartment. One clinic never sees another's data: an architectural guarantee, not a promise.

03

Logged access

Authorised, limited, audited

Sensitive operations are traced: when the noresia team steps in to help a clinic, access is explicitly authorised, time-limited and written to the log. The clinic reads that log from its own console: who did what, and when.

04

Your data stays your data

Your subscription, not your data

Our revenue comes from your subscription, not your data. It serves only your patients' appointments.

Our frameworks

The standards we hold ourselves to.

Law 18-07

The Algerian framework on personal data protection. Our handling of health data is aligned with its requirements.

GDPR

The European principles of minimisation, consent and the right to erasure guide our design, beyond our local obligations.

HIPAA level

We apply the spirit of the American health standard on the technical points it sets: encrypted exchanges, isolation per clinic, access logging. We hold no certification.

Your patients' rights

What they can exercise, at any time.

  • Access the data noresia holds about them
  • Have it corrected if it is inaccurate
  • Request its deletion where the law allows
  • Withdraw a consent they have given, at any time

A security question?

Our security team answers you directly.