
FedRAMP ᓅᓪᓗᕋᐃᑦ ᐃᓄᒃᑎᑐᑦ ᑲᑎᒪᔨᐅᔪᖅ: ᓰᑦᑎᐊᓗᒃᑕᐅᓯᒪᔪᑦ
FedRAMP ᖁᔭᓃᑦᑐᖅ ᒪᑦᑎᒋᐊᒃᑲᓐᓂᕐᒪᑦ ᐃᓕᖅᑯᓯᐅᔪᓂ ᑕᕐᕋᖃᕐᓗᑎᒃ ᐊᒻᒪ ᑲᔪᓯᑦᓱᑎᒃ ᖃᑦᑏᓐ ᐱᔨᑦᑎᕋᐅᑎᔫᒥᒃ ᐃᓄᒃᑎᕐᓄᑦ ᐃᓕᖅᑯᓯᐅᔪᒥᒃ ᐊᒻᒪ HDS ᑐᑭᓯᒪᔪᓂᒃ ᐃᓕᖅᑯᓯᐅᔪᒥᒃ ᑕᒪᒃᑯᓂᖓ ᑐᑭᐅᒪᐃᓐᓂᖅ ᑕᕐᕋᖃᕋᐅᓚᐅᖅᑕᒥᒃ ᓱᓕᔪᒥᒃ।
Inuugujoq tulimmastuguq, dossier niaquq, jalarutavut uvamniq, organisationi kiviuq allinnianik: allinnianik qitirqit GDPR tulimmastuguq, santé secret tulimmastuguq jalarutavut, SIH allinnianik. Alluulauq Allemagne (UE), chiffrement akuannaq, audit trail horodaté.

HDS certification in progress
Certyneo is not yet certified as a Health Data Host (HDS — Hébergeur de Données de Santé). This certification is currently being obtained. For any processing of personal health data within the meaning of Article L. 1111-8 of the French Public Health Code, please verify regulatory compliance with your DPO before deployment.
Learn more about our security roadmap →Inuugujoq tulimmastuguq atunngitumik organisationi kiviuq allinnianik, jalarutavut uvamniq qilakvingniq, organisationi santé allinnianik qitirqit.
Inuugujoq niaquq, tulimmastuguq jalarutavut niaquq akti medikali uvamniq, operationi kiviuq, treatment tulimmastuguq angutiarniq ilai (article L1111-4 Code santé publique). Allinnianik horodaté naleqqiusiraq akuannaq.
Validation niaquq dossier medikali, update allergies, antécédents, consent kiviuq santé niaqqat. Naleqqiusiraq qannik qitirqit versions.
Consent kiviuq, therapeutic protokola, soins coordonnés. Signature mobile hospitalisaminik.
Jalarutavut niaquq uvamniq (loi Claeys-Leonetti 2 février 2016). Allinnianik qitirqit identification akuannaq, conservation 10 aniilaq, revocable niaquq.
Cooperation organisationi santé, prestations medikali allinnianik, contrats exercise libéral.
Contrats prestataires laboratoire, medical dispositifs fournisseurs, nettoyage sterile: organisationi santé back-office administrative.
Kuut garanties santé secret jalarutavut jalarutavut.
Certyneo data Allemagne (IONOS), infrastructures ISO 27001 tulimmastuguq. Aucun transfer hors UE.
Chiffrement TLS 1.3 transit, AES-256 rest, isolation data organisation. Protection level santé secret article R4127-4 tulimmastuguq.
Identification akuannaq niaquq OTP email + SMS, lien unique akti signé, modification detection. Proof level consent éclairé tulimmastuguq.
Parcours français, accessible WCAG AA, smartphone tulimmastuguq, aucun compte ni application. Niaquq signe 2 minutes téléphone, chez lui ilai hospital chambre.
Durée conservation dossiers medikali (20 aniilaq certain documents, extended). Audit trail PDF, exportable transmission confrère ilai CCI.
Signature allinnianik toujours appropriate: niaquq urgence vitale, niaquq inconscient, mineur. Documentation parcours alternatifs (signature assistée, report stabilisation).
Certyneo amont systèmes information santé: signatures recueille, document signé SIH, DPI, DMP. Aucun connecteur natif published — intégrations SIH (DxCare, Cristal-Link, Mon Espace Santé…) devis; contactez-nous.
Hospital information systems (DxCare, Cristal-Link, Hopital Manager, Easily, etc.) can trigger the sending of a Certyneo envelope through our REST API or webhooks whenever a document is ready to sign in the patient record.
Certyneo does not replace the DMP: it sits upstream to collect patient consent or sign clinical documents. The signed document can then be uploaded into the DMP through your institution's usual tool.
Medical practice software (Doctolib Siilo, Weda, HelloDoc, AxiSanté, etc.): integration through webhooks and Zapier/Make, especially for fee agreements, optical/dental quotes and consent before non-reimbursed procedures.
Specific integration project? Book a call with our team. The Certyneo API is publicly documented at our API documentation.
Health data is among the most sensitive and most tightly regulated in Europe. Certyneo applies the entire applicable framework, transparently — including its current limits.
Certyneo is not an HDS-certified host to date. For documents containing personal health data, we recommend that the relevant institutions discuss a dedicated deployment with a partner HDS host — our roadmap includes HDS certification in the second half of the year. For signatures that do not contain health data (inter-institutional agreements, supplier contracts, HR), Certyneo is suitable out of the box.
Article 9 of the GDPR classifies health data as sensitive. Certyneo applies strict minimisation (only the metadata required for signing is stored), systematic encryption, a standard DPA including a preliminary impact assessment, and an up-to-date processing register.
Medical confidentiality applies to every doctor and to everyone who works with them. Certyneo applies strict data isolation per organisation, end-to-end encryption and exhaustive access logging — every technical prerequisite to preserve medical confidentiality during the signing phase.
Consent must be free, informed and revocable. Certyneo's advanced electronic signature guarantees patient identification, precisely timestamps their consent (to start withdrawal or reflection periods) and supports subsequent revocation through a new counter-envelope tracked in the history.
At the time this page was published, Certyneo is not an HDS host. For documents containing personal health data, we recommend that the relevant institutions discuss the most suitable scenario with our team (dedicated deployment through a partner HDS host, or limiting use to documents with no health data). HDS certification is on our public roadmap.
Yes. Article L1111-4 of the French Public Health Code requires free, informed and revocable consent but prescribes no particular form. Article 1367 of the Civil Code recognises electronic signatures as equivalent to handwritten signatures provided they rely on a reliable process — which Certyneo's advanced signature (AES) delivers.
TLS 1.3 in transit, AES-256 at rest, strict data isolation per organisation, no clear-text access by our teams without documented escalation. Certyneo does not store the medical content itself (beyond what is in the PDF): only the metadata required to manage signatures (envelope identifier, emails, timestamps) is kept in the database.
Yes. The Claeys-Leonetti Act of 2 February 2016 and Article L1111-11 of the French Public Health Code allow advance directives to be drafted freely, with no required form. An advanced electronic signature timestamped with strong patient identification meets the evidentiary requirements — directives of course remain revocable at any time through a new envelope.
Yes. Certyneo exposes a documented REST API (see /docs) and real-time webhooks. DxCare, Cristal-Link, Hopital Manager, Easily and other SIH platforms can trigger the sending of envelopes when a patient document is ready to sign. Zapier and Make connectors also cover private practice software.
Certyneo offers an "in-person signing" mode: the healthcare professional uses their own tablet or workstation to have the patient sign, with identification through an SMS OTP sent to the patient or validation by a trusted third party (carer, caregiver). The audit trail retains the context of the signature.
Our plans include ten-year probative-value archiving. For medical documents requiring longer retention (20 years for some types of hospital file, 28 years for transfusion records, lifetime for some imaging) extended archiving is available on request. Documents remain downloadable at any time.
The right to revoke consent is central in healthcare. In practice, you create a new revocation envelope signed by the patient, which is timestamped and linked to the original consent. The case history clearly shows both acts (consent, then revocation), which fully documents the situation in the event of a dispute.

FedRAMP ᖁᔭᓃᑦᑐᖅ ᒪᑦᑎᒋᐊᒃᑲᓐᓂᕐᒪᑦ ᐃᓕᖅᑯᓯᐅᔪᓂ ᑕᕐᕋᖃᕐᓗᑎᒃ ᐊᒻᒪ ᑲᔪᓯᑦᓱᑎᒃ ᖃᑦᑏᓐ ᐱᔨᑦᑎᕋᐅᑎᔫᒥᒃ ᐃᓄᒃᑎᕐᓄᑦ ᐃᓕᖅᑯᓯᐅᔪᒥᒃ ᐊᒻᒪ HDS ᑐᑭᓯᒪᔪᓂᒃ ᐃᓕᖅᑯᓯᐅᔪᒥᒃ ᑕᒪᒃᑯᓂᖓ ᑐᑭᐅᒪᐃᓐᓂᖅ ᑕᕐᕋᖃᕋᐅᓚᐅᖅᑕᒥᒃ ᓱᓕᔪᒥᒃ।

Sağlık verileriyle ilgilenen dernekler ve STK'lar, bu sektörde sık bilinmeyen HDS çerçevesine tabidir. Gerçek yükümlülükleri ve uyum sağlamak için adımları keşfedin.
Allerqanngimaq immaqa informatiknut kiviuq nutaaq inuksuit suleyannginnirmiut pallirukłuq. Allegaa pijuk qunngiksamik maliguq allerqanngimaq qanuq huumaq takuguq.
Unakinnguaq uqausiuq naglikvara inuktut nanuq allaguluguq taipsumalu nappajukarniq nunavummi. Qaujimajaxa piliriat suliaasigamut pilliriyangit RGPD, HDS allaguluguq eIDAS suliaangit uqausigarnit inuktut unakinnguaq taipsumalu piliraaniq nappajukarniq nunavummi.
Isumaaqatigiillian anisunngituq demateriaaluaq Frantsiimiut tapkoa pijuq. Qallunaatniq ilinniartuq ajunnngitsuq isumaaqatigiillian anisunngituq saqqijuq eIDAS qanunngiriq maliiganngitsuq DMP elaboortumik ataatsiksuq.
Signature électronique-mik inuksuit piginngitok aglaksiat praticiens hospitaliers-mi. Kajjalisarniq, savaqqaq, dématérialisation prosesseq RH inusuguaksannik angijunik malliktuq.
ᑯᒡᒋᓛᒃᑕᑉ ᐅᕝᕙᓘᓐᓃᑦ ᑐᓂᔭᐅᓯᒪᑦᑎᐊᑕᑉ ᐃᓕᓐᓂᐊᕐᕕᑦ ᑕᐃᒃᑯᐃᑦ ᑐᓂᔭᐅᓯᒪᐅᑎᓪᓗᒋᑦ. ᒥᕐᖑᐃᓯᒪᐊᕐᒪᑕ ᐊᒻᒪ ᖃᐅᔨᒪᐧᐃᑦ ᐱᔭᐅᔪᑎᑦ ᐅᐱᒋᔭᖃᖡᓂᐊᕈᑎᑦ. ᐃᓕᓐᓂᐊᕐᕕᑦ