NizHealth Security & Privacy
Learn about NizHealth security architecture, privacy boundaries, account protection and how personal health information is handled.
Account protection
NizHealth uses server-side authentication, password hashing, session protections and CSRF defenses for account actions.
Health data boundaries
Application queries are scoped to the authenticated user. Sensitive provider credentials and AI service credentials are intended to stay on the server.
Document protection
Medical documents are handled through protected application paths rather than normal public browsing.
Production operations
A secure deployment should use HTTPS, private database access, secret management, backups, monitoring and disciplined key rotation.
Privacy by design
NizHealth aims to minimize unnecessary exposure of personal health information and does not position its AI as a substitute for clinical care.