KVKK compliant

KVKK-Compliant Security

Data in Türkiye, complete audit logs, encrypted health data.

All patient data is stored on servers in Türkiye. AES-256 encryption, full audit logs, patient deletion rights, and IYS compliance meet your KVKK obligations; security is the design itself, not an add-on.

KVKK
GDPR
AES-256
IYS
Servers in Türkiye
Audit logs

Why it matters

Health data is not ordinary data

Where data lives has become a purchasing criterion for clinics: patients and auditors openly ask where information is kept. Health data breaches can lead to severe administrative penalties under KVKK. Most general-purpose AI tools store data outside Türkiye and cannot meet health-data requirements.

How it works

Security is part of the architecture

  1. 1

    All patient data is stored in data centers located in Türkiye.

  2. 2

    TLS 1.3 encryption in transit, AES-256 encryption at rest.

  3. 3

    Every data access is recorded in a timestamped audit log.

  4. 4

    Patients can submit KVKK deletion and export requests; requests are processed without delay.

  5. 5

    Marketing consent is managed in line with IYS (the Turkish Message Management System).

What you get

What it means for your clinic

Detailed policies

Questions about security and compliance?

Book a short call and we'll walk you through how your clinic's data is stored and protected.

Get in touch