Security
Your images stay yours. Including on the day you leave.
Patient imaging is the most sensitive data a practice holds. This page says where it sits, who can reach it and how you take it back — and it says plainly what is not in place yet.
- Held in Switzerland
- Encrypted in transit and at rest
- Standard DICOM export, no fee
How we work
Four commitments that do not change per customer
These are not features you negotiate into a contract. They are how the platform is built, and they apply to every plan including the free one.
-
Your data is not the product
Patient data is never sold, never shared with advertisers, and never used to train a model that leaves your tenancy. It is processed to run the service you bought and for nothing else.
-
Leaving has to stay cheap
Your archive is standard DICOM and you can export it at any time, on any plan, without a fee and without a project. An archive you cannot leave is not an archive, it is a hostage.
-
Access is per person, and recorded
Permissions belong to a person, not to an installation or a shared login. Every access is written to a log you can read and hand to an auditor.
-
The viewer leaves nothing behind
Reading happens in the browser. Nothing is installed, nothing is cached to the machine, and a shared workstation does not become a second archive.
Where we stand
What is in place, and what is not
Most vendors publish only the first list. Both are here, because the second one is the one you actually need before a procurement review.
- In place Data residency in Switzerland Imaging data is stored and processed in certified Swiss data centres.
- In place Encryption in transit and at rest Transport is encrypted end to end, and the archive is encrypted where it sits.
- In place Swiss data protection law (FADP) Processing is carried out under the Swiss Federal Act on Data Protection.
- In place GDPR Processing is carried out on a GDPR-compliant basis, with a data processing agreement available.
- In place Per-person permissions and access log Roles are assigned per person and every access is recorded.
- In place DICOM conformance and export The archive is standard DICOM. Query, retrieve and full export are available on every plan.
- On request Data residency outside Switzerland Other regions can be arranged. Tell us which jurisdiction you have to satisfy and we will say plainly whether we can meet it and by when.
- On request On-premise copy of the archive A local archive alongside the cloud, where a policy or a regulator requires one.
- Not yet Independent security certification We do not hold an independent information-security certification today. If your procurement requires one, ask us for the current status before you plan around it.
- Not yet US healthcare compliance UnoPACS is not offered under a US healthcare compliance programme today. We will say so rather than let a form imply otherwise.
This list is maintained by hand and reflects the position on the day it was last edited. If a decision depends on one of these lines, ask us to confirm it in writing.
Ownership
Four questions worth asking every vendor
Including us. The answers below are the ones we are willing to put in a contract.
-
Who owns the imaging data?
You do. We process it on your instruction, under an agreement that says so.
-
What happens if you stop paying?
You get a defined window to export everything before anything is removed. No archive is deleted without notice and a chance to take it with you.
-
What happens if we stop trading?
Your archive is standard DICOM, which means it can be read by software that has nothing to do with us. That is the point of a vendor-neutral archive.
-
Can you read our patient data?
Access by our staff requires a documented reason, is limited to what the task needs, and is logged the same way any other access is.
Security questions before a procurement review?
Send them and you get written answers, not a brochure. If the answer is no, it will say no.
Questions
Security, in plain terms
The questions IT asks once the clinical side is convinced.
Where exactly is the data stored?
In certified data centres in Switzerland. Storage and processing both happen there by default; other regions can be arranged on request.
Is the data encrypted?
Yes, in transit and at rest. The browser viewer holds nothing on the machine after the session ends.
Who at UnoPACS can see our studies?
Access by our staff requires a documented reason, is limited to what the task needs, and is logged. You can request the log entries that relate to your tenancy.
Do you sign a data processing agreement?
Yes. Ask for it before the demo if your process needs it in advance.
Is patient data used to train AI?
Not outside your own tenancy. The patient matching works on your records to serve your workflow; it does not export patient data to train a shared model.
How do we get everything out?
Export the archive as standard DICOM, at any time, on any plan, without a fee. If you want help doing it at volume, we will help.
What happens to our data when we leave?
You get a defined export window before anything is removed. Nothing is deleted silently.
Do you hold ISO 27001 or a HIPAA attestation?
Not today, and we will not imply otherwise. If your procurement requires one, ask us for the current status and timeline before you plan around it.
Next step
Bring your security questionnaire.
Send it before the call and we will have the answers ready. Where the answer is no, you will hear no — that is faster for both of us than finding out in month three.
- Written answers
- No hedging
- A straight no where it applies