Pre-pilot · research prototype · no production clinical writes

Home/Security

Threat model · as of September 2026

Security of the write, not security of the chat

Most “AI security” is about prompts and models. This page is about the moment a finding becomes a fact other clinicians will trust. We are not an AI security company. We research that moment.

What can go wrong at the write.

None of these threats has had adversarial security testing.

Controls, mapped to clinic.

  • Typed claim

    The chart does not receive a paragraph of model prose. It receives concept + value.

    Tested
  • Evidence required to construct

    No source → no finding object.

    Tested
  • Refusal stays visible

    The clinician sees the attempt. Nothing is quietly omitted.

    Presentation path.

    Tested
  • Hash-bound approval

    The person approved these bytes. Mutation → APPROVAL_HASH_MISMATCH.

    Proposed
  • Append-only decision log

    A later reviewer can replay what was decided.

    Open
  • Policy version on the object

    You can see which vocabulary ran.

    Registry built. Clinical content unverified.

    Built

Named gaps.

Designed for clinical systems of record; not certified for production use.