Security

Your patient data never leaves your machine

Clinosys follows a strict local-first model. No cloud sync, no telemetry, no online accounts.

AES-256Loi 09-08Cohort 01FR · AR · EN
macOSWindowsLinuxRuns on all three
Security

Your patient data never leaves your machine

Clinosys follows a strict local-first model. No cloud sync, no telemetry, no online accounts.

AES-256-GCM encryption

All identifiable info, clinical notes and documents are encrypted at the column level. The key never leaves your machine.

Morning-passphrase model

A clinic passphrase entered at startup derives via Argon2id the KEK that unlocks the DEK, NEK and DOK keys. Held in memory only.

SHA-256 chained audit

Every action — consultation, print, export — is logged and cryptographically linked to the previous one. Impossible to tamper with undetected.

Local-first, always

SQLite encrypted on disk. No cloud server. No telemetry. An internet connection is never required to work.

Role-based access control

7 predefined roles (Owner, Director, Doctor, Head Nurse, Nurse, Secretary, Assistant) with a granular permission matrix.

Aligned with Loi 09-08

Architecture designed to respect Morocco's personal data protection law — consent, minimization, right of access.

How your keys live throughout the day

Morning

Passphrase entered once

The owner enters the clinic passphrase at startup. Argon2id derives the KEK, which unlocks DEK (patients) / NEK (notes) / DOK (documents).

Day

Staff log in normally

Each user signs in with their password. The server encrypts and decrypts in memory on the fly. Auto-lock after inactivity.

Evening

Keys wiped on shutdown

When the app closes, the DEK/NEK/DOK keys are wiped from memory (zeroize). The disk contains only encrypted data.

Dr. Fahd Idrissi-Aatouf
Early voices
I've waited years for a practice app that starts in Arabic, prints a proper Moroccan prescription, and never asks me to trust a foreign cloud. Clinosys is that app.
Dr. Fahd Idrissi-AatoufDental surgeon · Morocco
@dr.fahdidrissiaatouf
Cohort 01 · early access

Ready to modernize your practice?

Join the early access list. No commitment — just news when your version is available.

Limited seats in the first cohort14-day evaluation · no credit card · cancel anytime