Yritys
Tietoa meistä
We always ensure your data is handled with the highest security standards and that both your and your patients' privacy is protected.
ISO 13485
Tandem Health’s Quality Management System is certified to ISO 13485:2016by Scarlet.
ISO 27001
Tandem Healthin tietoturvan hallintajärjestelmä on sertifioitu standardin ISO/IEC 27001:2022 mukaisesti Insight Assurancen toimesta.
GDPR
Tandem Health käsittelee henkilötietoja EU:n ja Yhdistyneen kuningaskunnan GDPR-asetusten mukaisesti varmistaen lainmukaisen käsittelyn.
NHS Compliant
Tandem Health meets NHS Data Security and Protection Toolkit standards, confirming compliance.
UK Cyber Essentials
Tandem Health is certified under CyberEssentials, demonstrating baseline protection against cyber threats.
UKCA
Tandem Health’s medical devices conform to the UK Medical Devices Regulations2002 (UKCA requirements).
CE (EU MDR)
Tandem Healthin lääkinnälliset laitteet noudattavat EU-asetusta 2017/745 (CE) ja täyttävät EU:n turvallisuus- ja suorituskykyvaatimukset.
ENS Nivel Alto
Tandem Health is certified to ENSat Nivel Alto, demonstrating compliance with Spanish security standards.
Valvira A1
Tandem Healthin lääkinnällinen ohjelmisto on rekisteröity Valviran A1-luokkaan ja täyttää Suomen sääntelyvaatimukset.
Tandem Health on sertifioitu ISO/IEC 27001:2022 -standardin mukaisesti Insight Assurancen toimesta ja ISO 13485:2016 -standardin mukaisesti Scarletin toimesta.

Tandem follows GDPR and local patient data laws to ensure data is handled securely. Tandem Health’s Information Security Management System is certified to ISO IEC 27001:2022 by Insight Assurance, and its quality management system is certified to ISO 13485:2016 by Scarlet. Tandem is also Cyber Essentials certified and UKCA marked. In addition, Tandem Health is fully compliant with the 2024 to 2025 Data Security and Protection Toolkit, meeting NHS requirements for data security and the handling of personal information.
Oliver Åstrand
Chief Technology Officer, Tandem Health
All patient data is processed and stored in data centers within Europe. Tandem has specific enterprise agreements in place to ensure compliance and maintain the highest security standards.
Trusted by 1,000+ organizations within healthcare



Certified to ISO 27001 and 13485, compliant with GDPR and local patient data laws
Tandem ensures that all your information is handled with the highest standards of security. Protecting your data is a core priority for us, and we are committed to continually strengthening our practices to exceed industry expectations.
All patient data in Europe
All patient data is processed and stored within Europe. Tandem has specific enterprise agreements in place to ensure compliance and uphold the highest security standards.
No link to patient
There is no explicit link to a specific patient. No personal identification numbers or names are logged in association with a note in Tandem.
No audio recordings stored
Audio is streamed and processed in real-time during conversations. There is never a complete audio file from the conversation, and as soon as it is transcribed, the audio file is deleted.
Your data is never used to train AI
If AI models are trained on data, there's a risk that training data could leak when the model is used. Therefore, Tandem does not train any of its AI models on personal data to ensure that your data remains private.
Regular penetration testing
Tandem conducts regular penetration testing by engaging external security firms to review our security measures and attempt to hack the system.
Is Tandem compliant with required data standards?
Absolutely. Tandem meets all relevant data handling standards. You can find a full list of our certifications and our data processing agreements in our trust center.
Do you have access to my patients’ records?
No. Tandem never reads your medical record system or patient records. We have ‘write-only’ access to save the clinical notes you generate into your medical record system.
Is Tandem a medical device?
Tandem luokitellaan EU:n ja Yhdistyneen kuningaskunnan säädösten mukaan luokan I lääkinnälliseksi laitteeksi. Siten pidämme kiinni niistä korkeista turvallisuus- ja luotettavuusstandardeista, joita lääkinnälliseltä laitteelta voi odottaa – riippumatta siitä, missä toimimme. Olemme myös aktiivisesti mukana muovaamassa, miten terveydenhuollon sääntely kehittyy tekoälyn ja suurten kielimallien osalta.
Is my data used for training AI models?
No, we never use your data for training AI models.
Are audio recordings stored from the consultations?
No, the audio is transcribed in real-time during the consultation and is thereafter permanently deleted.
Who is legally responsible for the clinical documentation?
Ultimately, you are responsible for verifying the accuracy of your notes. Like any transcription method—human or AI - errors can sometimes occur. We encourage clinicians to review Tandem’s note draft before finalising it in the medical record system.
Where is the data stored and processed?
All transcripts and clinical notes are stored on a database located in Europe. We never retain or store any audio recordings from your consultations.
Learn more in our Trust Center or contact us directly. You can also reach our external Data Protection Office at dpo@tandemhealth.ai.