Skip to main content

Built for responsible clinical use—with Norwegian foundations.

MediVox processes information on behalf of the healthcare provider and keeps the clinician in control before any text is used. Agreements, local assessments, and access controls must be in place before launch.

Security throughout the workflow

Secure login

Users create an account and log in with BankID or BuyPass, providing clear and familiar identity verification.

Limited retention

Audio and temporary processing data are retained for up to 24 hours. Retention of generated text follows the selected service and agreement.

Encrypted processing

Data is protected in transit and at rest. Access is limited to authorized roles and necessary system processes.

Human review

MediVox generates the journal note. The healthcare professional must review, correct, and approve the note before it is transferred to the patient record.

Roles and responsibilities

A correct allocation of roles is required for lawful and safe use.

Healthcare provider

The organization is normally the data controller for patient information and determines purpose, access, legal basis, and local use.

MediVox

MediVox normally acts as a data processor for patient information and processes it under documented instructions in the data processing agreement.

Healthcare professional

Each user is responsible for clinical review and for handling the text according to the organization’s procedures.

Compliance and standards

The labels below describe different kinds of requirements. They are not all certifications.

GDPR

Data protection law

Processing must be governed by a data processing agreement and the organization’s legal basis, procedures, and assessments.

The Norm

Norwegian security foundations

Security work is grounded in relevant Norwegian requirements and recommendations, with multilingual and international use in mind.

CE

CE-marked software

MediVox Helse is CE-marked as medical software. CE marking must not be confused with a general security certification.

ISO 27001

Ongoing management work

The information security management system is being developed using ISO 27001 as a framework. This page does not describe MediVox as ISO 27001 certified.

Before your organization uses MediVox

  • Enter into and review the data processing agreement.
  • Clarify the legal basis, patient information, and any consent requirements.
  • Complete the necessary risk and privacy assessments.
  • Define roles, access, training, and clinical review procedures.
Read the privacy notice

Ready to evaluate MediVox?

Create an account and get started on your own. Contact us if your organization wants to clarify needs, agreements, or adoption.

We use cookies for necessary functionality and traffic analysis. Read more.