Data security

Define the data boundary first.

The public website is an information and contact channel. It is not a clinical-data portal, analysis environment or document-transfer system.

01

Public website

The public website does not accept patient data, clinical datasets or confidential study documents. It has no upload facility or project workspace.

02

Initial contact

Initial enquiries should contain only a high-level description of the problem, intended outcome and timing.

Do not send patient, clinical or confidential study data.

03

Approved environments

Real patient or confidential study data remains within the client, sponsor, CRO or another contractually approved environment.

04

Contract and access

The permitted data, processing role, access model, responsibilities, retention and deletion expectations are defined before work begins.

05

Proportionate controls

Access, credentials, multifactor authentication, encryption, logging and review controls are agreed for the environment and engagement rather than assumed from a generic website claim.

06

Automation and AI

Patient or confidential study data is not sent to third-party AI tools by default. Any exception would require explicit contractual approval, an agreed environment and defined human oversight.

Service boundary

Algoria Biometrics does not currently offer hosted GxP infrastructure or present this website as a validated clinical system.

Project-specific evidence and safeguards are discussed during contracting and technical scoping.

Before data access

Agree the environment, roles and controls.

Start with a non-confidential description. Detailed materials follow only through the agreed channel.

Discuss your project. Do not send patient, clinical or confidential study data.