Healthcare
Patient data has one boundary: the care relationship.
Clinical assistants and patient-support agents sit next to some of the most sensitive data an organisation holds.
Enforcement pipeline
01Cross-patient record access
A patient-support agent, given an ambiguous query, retrieves or discusses another patient's records, diagnoses or prescriptions.
Agents are scoped strictly to the authenticated care relationship. Cross-patient queries never reach the database.
02Clinical actions without oversight
An agent modifies a record, schedules a procedure, or alters a care plan based on a single unverified instruction.
Any action with direct clinical consequence is paused and routed to a clinician for review before it executes.
03PHI leaking into outputs
Diagnosis codes, medication names or identifiers appear in a response to someone outside the authorised relationship.
Sensitive field patterns are detected and redacted before a response reaches the end user or gets logged.
Regulatory frameworks this scenario touches — not certifications CuriousDevs holds