We implement industry-leading security practices to protect your medical data. Your privacy and safety are at the core of everything we do.
All data in transit is encrypted using TLS 1.3. Medical records are encrypted at rest using AES-256.
We comply with HIPAA, GDPR, and Nigeria's NDPR regulations to ensure your data meets international standards.
Strict role-based access controls ensure only authorized personnel can access your medical information.
We conduct regular security audits and penetration testing to identify and fix vulnerabilities.
We maintain backups and use checksums to ensure your data is never corrupted or lost.
We collect only the information necessary to process your lab request. All data is stored on secure, certified servers with redundant backups.
We never sell your data. We only share medical information with partner laboratories to fulfill your request, and only with your explicit consent.
You have the right to access, correct, or delete your data at any time. Contact us to exercise these rights.
We retain your data for as long as necessary to provide our services and comply with legal obligations. You can request deletion anytime.
In the unlikely event of a security incident, we have a robust incident response plan. We will:
Found a vulnerability? Please report it responsibly to our security team.
security@poveon.com