Draft for review — placeholder copy, not yet legally approved.
Security
Security and resilience.
Security is foundational to a CPD platform trusted by clinicians and healthcare organisations.
Last updated · May 2026
Encryption
Data is encrypted in transit (TLS 1.2+) and at rest (AES-256).
Access control
Role-based access, least-privilege staff access, audited administrative actions, and SSO available for organisation customers.
Hosting
Hosted on Lovable Cloud infrastructure in EU/UK regions. Logical isolation between organisations.
Backups and continuity
Automated daily backups with point-in-time recovery; documented disaster recovery objectives.
Monitoring and incident response
Continuous monitoring, alerting and a documented incident response plan aligned with UK GDPR breach notification timelines.
Assurance
Cyber Essentials and ISO 27001 alignment is on the roadmap. We support organisation security questionnaires.
