Least necessary access
Design access around roles, purpose and the minimum information required for the task.


Security
Doxyte’s security direction starts with clear data boundaries, least-necessary access, traceable workflows and preparation for failure.
Security posture
Security requirements vary by product, deployment and organisation. We share verified controls and supporting evidence during an appropriate technical or procurement review.
Design access around roles, purpose and the minimum information required for the task.
Preserve provenance, review state and important system events so decisions can be examined.
Use disciplined development, dependency, review and deployment practices for product changes.
Prepare incident, recovery and communication paths before they are needed.
Keep enquiry, product, clinical and analytics information separated according to purpose.
Make assistance, uncertainty, review and human accountability visible in clinical workflows.
Report a concern
If you believe you have identified a security issue involving Doxyte, use the Get in Touch page and select “General enquiry”. Do not include live patient data, credentials or exploit details in the first message. We will establish an appropriate channel for follow-up.
Contact Doxyte ↗