Skip to main content

Security and clinical governance

Patient control.Clear clinical responsibility.

Vitaspan brings patient-controlled sharing, source information and clinician review into connected care. Understand how access works and how the responsibilities for your service are agreed.

Trust is a responsibility we share.

We are custodians of patient information. Patient sovereignty, privacy and security are foundational to Vitaspan, and we do not sell or monetise patient data. Our network brings together trusted participants, while access to information remains governed by appropriate permissions.

Read our founding principles

Make sharing part of the care relationship.

Patient-controlled permissions support the sharing of relevant information with care teams. Roles and access arrangements help define who can use information within the service.

We work through the patient journey, authorised users and sharing process with each provider so the people involved understand their responsibilities.

Keep the source information in view.

An organised overview is most useful when clinicians can return to the original information. Vitaspan retains source records alongside the patient history to support review and clarification.

Role-based access, activity records and source references support the management and review of how information is used.

Clinical judgement stays with clinicians.

Clinical Intelligence prepares report and care-plan drafts for review. Policy Auditor highlights potential documentation omissions. Supported predictive models contribute information for consideration within their defined use.

Clinicians remain responsible for assessing the information, correcting outputs and approving their use in care.

Agree the data arrangements for your service.

Before implementation, we work through the information involved, the organisations processing it and the relevant hosting and storage arrangements. We also agree access responsibilities, retention requirements and how your team will use the platform.

This gives clinical, operational and technology owners a shared understanding of the service they are introducing.

Bring your assessment questions to the conversation.

We will work through the security and clinical-governance information relevant to your review, including:

  • Access and sharing arrangements.
  • Data flows, hosting and processing responsibilities.
  • Source information and activity records.
  • Clinical review and use of AI-assisted outputs.
  • The supporting assurance information relevant to the proposed service.
Discuss security and governance

Questions from clinical and technology teams.

Who approves AI-assisted reports?

The clinical team reviews, edits and approves reports before they are used in care. Vitaspan supports preparation; the accountable clinician retains clinical judgement.

Where will our information be stored and processed?

We will explain the hosting, storage and processing arrangements relevant to your deployment before implementation, including the suppliers and responsibilities involved.

Can our security and clinical teams join the demonstration?

Yes. Include the people responsible for your assessment so we can address the information and workflow questions together.

Make the right people part of the discussion.

Bring your clinical, operational and security priorities. We will focus the conversation on the service you want to introduce.

Discuss security and governance