Trust

Security at Clinithra

We handle sensitive medical information, so protecting it is built into how the platform works — from access control to encryption to human oversight.

Role-based access

Every account has a single role. Companies see only their own claims; analysts and admins see only what their role permits.

Controlled provisioning

Analyst and administrator accounts cannot be self-created — they are created only by an administrator through a secure server process.

Encryption

Data is encrypted in transit and at rest by the underlying cloud infrastructure.

Data isolation

Uploaded claim files are restricted to the owning company and authorized internal staff.

Human oversight

AI output is always a draft. An analyst reviews and signs off before any result is finalized — nothing is decided automatically.

Deletion

Accounts and their data, including claims and uploaded files, can be permanently deleted.

Our compliance approach

Clinithra is designed with major health-data and privacy regulations in mind, including HIPAA, GDPR, and the Nigeria Data Protection Act. We continue to strengthen our controls and contractual safeguards as we grow. For details on a specific framework or to request documentation, please get in touch.

Found a security issue? Please report it to info@clinithra.com and we will respond promptly.