Encrypted in transit
All data is encrypted in transit over HTTPS/TLS, with secure transmission practices and access controls.
VOSS is built to the standard patient data demands โ encrypted, redacted, and never retained on our servers after processing.
All data is encrypted in transit over HTTPS/TLS, with secure transmission practices and access controls.
Audio files are deleted immediately after transcription โ on both the device and the server.
On-device transcription keeps all audio on the phone. If it's turned off, we warn you before anything is sent.
Protected health information is redacted during backend processing and never stored in our infrastructure.
We do not retain session or user content in our infrastructure after processing is complete.
No cross-app tracking, no advertising identifiers, and we never sell personal data.
Data is used only to run the feature you asked for, then deleted.
The visit is recorded on your device, with explicit consent before anything is processed.
If sent for processing, data travels encrypted over HTTPS/TLS โ never in the clear.
Our backend runs transcription, notes, and possible explanations under a zero-retention AI policy.
Audio is deleted immediately; no session content is kept in our infrastructure.
The safeguards below aren't add-ons โ they're how VOSS is built.
PHI redaction, non-identifying logging, and a BAA path for enterprise deployments.
Our AI providers operate under a zero-data-retention policy โ data is not stored or used to train models.
VOSS drafts and suggests; every note is reviewed and signed by a clinician.
A clear consent screen discloses what's collected, who processes it, and how it's protected โ before use.
Our Privacy Policy covers data handling, retention, third-party AI services, and your rights in full.