Security

How BIOS protects your data

How processing purposes, consent, limited access and your own actions help you stay in control of your data.

At a glance

  1. 01

    Technical capability does not grant a right of access: a purpose, legal basis, role and limited duration are required.

  2. 02

    You manage your consents and permissions; withdrawal ends future access but does not always delete records that must be retained.

  3. 03

    A strong password, checking devices and sharing invitations carefully remain important parts of protection.

Principles that limit processing

BIOS starts with a defined purpose and the minimum data necessary. A new task should not automatically expand an existing permission. Your role, or a doctor's role, determines which views are available, and the specified period limits how long access lasts.

AI should receive only the context needed for a particular task. If the legal basis or data quality is insufficient, it is safer to withhold the result and ask for clarification.

How to protect your account

Use a unique password and never forward login codes. Regularly check active devices and security notifications. If you notice an unfamiliar login, end the unrecognised session, change your password and contact support.

Before sharing a link with a doctor, check the recipient and expiry date. Do not post invitations in public channels. On a shared device, sign out and do not save your password in a browser profile that other people can access.

What to do if you suspect an error

If someone else's document, unknown access or an unexpected change appears in your profile, stop working with that data. Record the time and visible event without sharing medical content with others, revoke access if possible, and contact support.

Next step

Open the relevant section of BIOS Personal and follow the guide in your account. If your question concerns symptoms, diagnosis or treatment, consult a doctor.

Open BIOS Personal