Encryption
Clinical media and expense receipts are encrypted (AES-256-GCM) before they are written to storage, with server-side encryption also enabled on object storage. All traffic to and from Medara is encrypted in transit via TLS.
Effective 12 July 2026
An overview of the technical and operational controls Medara uses to protect clinical data.
Clinical media and expense receipts are encrypted (AES-256-GCM) before they are written to storage, with server-side encryption also enabled on object storage. All traffic to and from Medara is encrypted in transit via TLS.
Media files are never publicly addressable. Every view is served through a signed URL that expires after 60 minutes, whether served from object storage or the application itself.
Role-based access control is enforced on every clinical and financial endpoint. Access to patient records, including reads, is written to an append-only audit log that cannot be altered or deleted at the database level.
Practitioners can enrol in TOTP or SMS-based multi-factor authentication, and practices can require it for practitioner and locum roles.
Clinical data and encrypted media are backed up on a regular schedule, with restore procedures tested periodically against a documented checklist. Encryption keys are escrowed alongside backup sets so encrypted media can be recovered independently of the primary environment.
Suspected credential compromise triggers immediate secret rotation and session revocation. Confirmed data incidents are communicated to affected practices in line with our breach notification commitments under the Data Processing Agreement.
Related documents