Built specifically for Indian healthcare infrastructure. Aligned with the DPDP Act 2023, NABH documentation mandates, and certified under ISO/IEC 27001:2022.
1. Digital Personal Data Protection (DPDP) Act, 2023
Patient Lens AI acts as a Data Processor under the DPDP Act 2023. We process digital personal data and protected health information (PHI) exclusively on behalf of and under documented instructions from our hospital partner (the Data Fiduciary).
Grievance Redressal
Designated Grievance Officer accessible for all data principal requests and regulatory queries.
Uploaded clinical documents are retained strictly for the duration of summary compilation and attending review, with verifiable deletion cycles upon discharge sign-off.
2. Data Residency within India
All hospital data, OCR pipelines, and AI inferencing run on servers located physically within the Republic of India. No patient identifiable records leave Indian sovereign borders.
Region: AWS / Azure India Central / South (Mumbai & Hyderabad). {{TODO_OWNER: exact cloud region and data center location}}
3. Ayushman Bharat Digital Mission (ABDM) & ABHA
Discharge summaries produced by Patient Lens conform to standard FHIR / NRCeS digital health record specifications, enabling clean milestone integration with the ABDM health information exchange ecosystem.
Status: Roadmap integration for ABHA linked records. {{TODO_OWNER: ABDM Milestone 1/2/3 integration status}}
4. NABH Documentation Support
Important clarification: The National Accreditation Board for Hospitals & Healthcare Providers (NABH) accredits healthcare organizations and clinical facilities, not third-party software products.
Patient Lens AI actively supports your hospital’s NABH compliance requirements by ensuring that discharge summaries systematically capture every required clinical section (reason for admission, investigation summaries, treatment given, operative findings, discharge medications, follow-up instructions, and emergency red-flags) alongside complete immutable audit trails.
5. ISO/IEC 27001:2022 Certified ISMS
Patient Lens AI operates an Information Security Management System (ISMS) certified to the ISO/IEC 27001:2022 standard.
Certifying Body: {{TODO_OWNER: Certifying body name}}
Certificate ID: {{TODO_OWNER: ISO certificate registration number}}
Scope: Design, development, and hosting of healthcare AI documentation platforms.
6. Global Standards (HIPAA, SOC 2, BAA)
For hospital networks with overseas affiliations or multinational clinical operations, Patient Lens maintains HIPAA-aligned administrative, physical, and technical safeguards. Business Associate Agreements (BAAs) are available upon request for enterprise contracts, and our infrastructure is SOC 2 Type II ready.
4:00→0:10
Need our complete security pack?
We share our SOC 2 readiness report, ISO certificate, and architecture diagram with hospital IT review teams.