Security FAQ (Clinicians)

Plain-English answers on security.

Reassurance for clinicians: no patient records, no EPR connections, and minimal operational risk.

Does this system access patient records?

No. The platform does not connect to EPRs, PAS, Spine, or any local clinical systems, and it does not access patient records of any kind.

Does it store or process patient-identifiable data?

No. No patient-identifiable, patient-level, or special category data is collected, stored, or transmitted.

Do I need to log in with my NHS account?

No. The service does not require NHS login, Smartcards, or local Trust credentials.

Is this a clinical decision support system?

No. The platform is a reference tool only, providing access to published national clinical guidance. Clinical judgement and local policy always take precedence.

Could using this system create a data breach risk?

The risk is very low. Because no patient data is processed, there is no risk of patient data loss or confidentiality breach.

Is this approved by the NHS?

The platform aligns with NHS Digital / NHS England security expectations for low-risk IT suppliers and follows DSPT principles. Local Trust approval may still be required depending on procurement or rollout arrangements.

What happens if the site is unavailable?

The service includes proportionate availability and recovery measures. Because it is informational only, downtime does not affect patient records or operational clinical systems.

Who should I contact with concerns?

Security or governance queries can be raised via: security@clinisearch.co.uk