Legal & Privacy Center

Transparency is fundamental in medical diagnostics. Here you find all info on how we protect your data and your patients' data.

Last updated: January 21, 2026

Privacy Policy

Pursuant to EU Regulation 2016/679 (GDPR)

1. Data Controller

The Data Controller for Doctor registration data is Histyon Team.

2. Collected Data

Professional Data, Usage Data, and Patient Health Data (encrypted).

3. Purpose

SaaS Service delivery, Diagnostic Support, Security and Compliance.

4. Location

Data is hosted within the EEA (European Economic Area). Primary providers: - Supabase (Database, Auth & WSI Storage): Dublin, Ireland (AWS eu-west-1). Server-side encryption and secure delivery.

5. Right to Erasure (Art. 17 GDPR)

You have the right to permanent deletion of patient data and all associated analysis files. Deletion can be performed at any time from the patient folder in the dashboard. The operation is immediate and irreversible: all scans, DZI tiles, QuPath projects and region masks are permanently removed from our cloud storage.