Trust and security
Trust is not declared.It is built.
noresia handles health data. Here, concretely, is how it is protected, from encryption to the right to deletion.
What holds the structure
Four guarantees, held by the architecture.
01
Systematic encryption
In transit, on every exchange
All communication with the platform is encrypted. No appointment data ever travels in the clear.
02
Separation per clinic
Locked at the engine level
Each clinic lives in a sealed compartment. One clinic never sees another's data: an architectural guarantee, not a promise.
03
Logged access
Authorised, limited, audited
Sensitive operations are traced: when the noresia team steps in to help a clinic, access is explicitly authorised, time-limited and written to the log. The clinic reads that log from its own console: who did what, and when.
04
Your data stays your data
Your subscription, not your data
Our revenue comes from your subscription, not your data. It serves only your patients' appointments.
Our frameworks
The standards we hold ourselves to.
Law 18-07
The Algerian framework on personal data protection. Our handling of health data is aligned with its requirements.
GDPR
The European principles of minimisation, consent and the right to erasure guide our design, beyond our local obligations.
HIPAA level
We apply the spirit of the American health standard on the technical points it sets: encrypted exchanges, isolation per clinic, access logging. We hold no certification.
Your patients' rights
What they can exercise, at any time.
- Access the data noresia holds about them
- Have it corrected if it is inaccurate
- Request its deletion where the law allows
- Withdraw a consent they have given, at any time