Privacy and India readiness
- Purpose-specific consent records
- Patient access, correction and deletion request tracking
- Immutable access and administrative audit events
- Role and clinic-tenant access boundaries
Back to SynQTrust center
SynQ has implemented technical and product controls mapped to India privacy duties, HIPAA safeguards and SOC 2 trust criteria. This is a readiness statement, not a certification, legal determination, BAA, or independent audit report.
HIPAA legal applicability and BAA decisions, a SOC 2 examination, independent penetration and accessibility assessments, breach exercises, and external malware-service assurance remain blocked until qualified third parties complete them. SynQ does not present these as passed.
Files are private, screened before use, opened with expiring links after a server-side ownership check, and each successful opening is written to access history.