Patient data, treated like patient data
A clinical system earns trust by being boring about security. Here is what Pulsonics does, in plain terms.
Encrypted on the device
Clinical data is fully encrypted end to end, on the device itself. That matters most in a shared clinical environment, where a phone gets handed between shifts.
Access follows the role
Permissions are granted by role, department and ward. A nurse on one ward sees what that role needs, not the whole hospital.
Every access is logged
Each patient carries an audit trail — records viewed, documents created, messages sent — named to the individual user with a timestamp.
VIP identity protection
For patients whose presence in the hospital is itself sensitive, the record can be shielded from casual browsing while the clinical team keeps working.
Password for relatives
A dedicated credential for a nominated family member, so information reaches the right person and not the waiting room.
AWS or your own hosting
Run Pulsonics on AWS, or have the environment managed on your side. A private cloud deployment is a supported configuration.
Offline by design
Working offline is a security property too: a dropped connection never becomes a reason to write patient data somewhere unofficial.
German engineering, GDPR
Pulsonics is built by Pulsonics GmbH in Germany under European data protection law, whichever region it is deployed in.
What IT and data protection officers ask
Where is the data hosted?
Pulsonics runs on AWS by default, and can also be hosted under your own management if your regulator or ministry requires it. We are happy to go through the specific arrangement, sub-processors and the data processing agreement with your data protection officer before you commit to anything.
What happens when the internet goes down?
Staff keep documenting. Pulsonics works offline and synchronises automatically once connectivity returns, which is why we ask for “stable” rather than “uninterrupted” coverage.
The phones are shared between staff. Is that safe?
It is the case we designed for. Data is encrypted on the device, each user signs in individually, and the audit trail records actions against the person rather than the handset — so a shared phone does not become an anonymous one.
Who can see a given patient's record?
Access is granted by role, department and ward, assigned when users are set up and changed as people move. Sensitive cases can be given VIP identity protection. Every access is recorded in that patient's audit log.
Can we use our own diagnosis and medication catalogues?
Yes. You can use standard ICD-10 diagnosis, infection and procedure lists, upload your own, or combine both. The same applies to the medication database, and you can decide whether users may add medications themselves.
Do you support our language?
Pulsonics is available in English, French, Portuguese and German today, and the application is built so a new language can be added within hours. Tell us what you need.
Bring your data protection officer
We would rather answer the hard questions early than discover them during a rollout.