Home Features For Hospitals Get Started
🛡️

Your health data is yours — protected

We built Mobile Health Vault from the ground up with security first. Every technical decision — from database schema design to API authentication — was made to protect your most sensitive data.

Our security principles

Three principles guide every security decision we make.

🔐

Privacy by Default

No data collection beyond what's necessary. No advertising. No sharing with third parties. Your health records are never used to train AI models.

🏰

Defence in Depth

Multiple independent security layers — if one fails, the others hold. No single point of failure in our authentication or data access architecture.

🔍

Full Transparency

Complete audit trails. Every access to your data is logged. You can see who accessed what and when. Export or delete all your data at any time.

Seven layers of protection

Layer 1 — Authentication

OTP + JWT — No Password Stored

Login is OTP-only via mobile number — no passwords to leak. Short-lived JWT access tokens (15 min expiry) and rotating refresh tokens. All tokens invalidated on logout.

OTP via SMS/WhatsApp JWT HS256 15-min access token Rotating refresh
Layer 2 — Transport Security

TLS 1.3 — Encrypted in Transit

All communication between app and server uses TLS 1.3 with certificate pinning in the mobile app. No HTTP fallback. HSTS enforced on all web endpoints.

TLS 1.3 Certificate Pinning (iOS ATS NSPinnedDomains) HSTS
Layer 3 — Data Encryption

AES-256 — Encrypted at Rest

All uploaded documents (PDFs, images, DICOM files) stored with AES-256 server-side encryption. Encryption keys managed via hardware security module (HSM). Database fields with PII encrypted at column level.

AES-256 at rest HSM key management Column-level PII encryption
Layer 4 — Multi-Tenant Isolation

Separate Schema Per Organisation

Each hospital, lab, or enterprise customer gets a completely separate PostgreSQL schema (pod). Database-level row security policies prevent any cross-tenant data access — even in the event of application bugs.

Schema-per-tenant PostgreSQL RLS Pod isolation
Layer 5 — Device Security

Biometric Lock for Secure Vault

The Secure Vault within the app requires a separate biometric authentication (Face ID or fingerprint) or PIN before any document is displayed. Vault auto-locks on app background. Failed attempts trigger progressive lockout.

Face ID Fingerprint PIN fallback Auto-lock timeout
Layer 6 — Access Control

Role-Based Permissions

Granular role-based access: patient, family member, doctor, lab_staff, pod_admin. Shared records have expiry dates. Doctors see only what patients explicitly share. Provider staff see only their institution's records.

RBAC Share expiry Minimal privilege
Layer 7 — Audit & Monitoring

Immutable Audit Microservice

Every API action — record upload, view, share, delete, OTP generation — is logged to an isolated audit microservice (separate DB, write-only). Anomaly detection alerts on unusual access patterns. Real-time security dashboard for administrators.

Immutable audit log Anomaly detection Real-time alerts

Built to meet regulatory standards

🇮🇳
DISHA
Digital Information Security in Healthcare Act
🏥
ABDM Ready
Ayushman Bharat Digital Mission compatible
🌍
GDPR-aligned
Data subject rights, consent management, right to erasure
📋
ISO 27001
Information security management standard

Security technical details

Authentication & Sessions

Login MethodOTP via WhatsApp/SMS
Token TypeJWT (HS256)
Access Token Expiry15 minutes
Refresh Token Expiry30 days (rotating)
OTP Validity5 minutes
OTP Length6 digits
Failed Attempts Lockout5 attempts → 15-min lock

Encryption & Storage

Encryption at RestAES-256-GCM
Encryption in TransitTLS 1.3
DatabasePostgreSQL (encrypted)
File StorageObject store (server-side encrypted)
Key ManagementHSM-backed
PII HandlingColumn-level encryption
DICOM PHIStripped from viewer metadata display

You're always in control

📦

Export All Your Data

Request a complete export of all your health records in standard formats (PDF, FHIR JSON, DICOM). Delivered within 48 hours.

🗑️

Delete Your Account

Permanently delete your account and all associated data at any time. Deletion is irreversible and completes within 30 days per our data retention policy.

📋

Access Log

See a complete log of every time your records were accessed, shared, or modified — by you, family members, or healthcare providers.

🔍

Responsible Disclosure

Found a security vulnerability? We appreciate responsible disclosure. Our security team reviews all reports within 48 hours and provides updates throughout our remediation process.

📧 security@mobilehealthvault.in

Please do not publicly disclose vulnerabilities before we've had a chance to address them. We commit to responding within 48 hours.