Template — verify every claim before publishing. Only state certifications and controls you actually hold. Have this reviewed alongside your privacy and security teams, then delete this notice.

Trust

Compliance & Security

Your clients trust you with their health information, and you trust us with it. Here’s how IsoEvolve protects it.

Built for regulated practice

IsoEvolve was built originally for healthcare practitioners in the UK and South Africa, and is compliant with POPIA, GDPR, HPCSA, HPC and HIPAA. Data protection was considered from the outset rather than bolted on.

GDPR & POPIA

We align our handling of personal and health information with the principles of the UK/EU GDPR and South Africa's POPIA, including lawful processing, data-subject rights and accountability. [Confirm exact posture and any registrations with your DPO/counsel.]

Access control and accountability

Notes and client records are only visible to the users who should see them, and the Audit Trail records key actions and changes across the system — supporting transparency and professional-body requirements.

Security and availability

Your data lives securely in IsoEvolve rather than on your laptop, so losing or changing a device doesn't put it at risk. Our systems have 99.99% availability. [State your specific controls — encryption, hosting regions, backups — and any audits or certifications you actually hold.]

Signed consent

Digital Forms capture intake details and consent with electronic signatures, so you hold a clear record of what each client agreed to and when.

Reporting a concern

If you believe your data has been handled improperly, email info@kitrin.com with the details and we will investigate promptly.

Our legal documents. Read our privacy policy, terms of service and PAIA manual.