Security & privacy
Nexshift for HMR is built around Australian hosting, access isolation and consent, not added afterward.
Every request passes through authentication, application logic and database-level checks. No single layer is relied on alone.
Designed around the obligations that come with handling Australian patient information.
Application data is hosted in Australia. Patient information is not stored offshore.
Patient consent, including method, representative and signature, is captured digitally and stored as a signed PDF record.
HMR and consent PDFs are generated in the browser. No patient report content is sent to a third-party PDF service.
Every pharmacist sees only their own patients, referrals and reports. This is enforced at the database level, not just in the app.
AI assists with drafting. The pharmacist reviews, edits and signs before anything is sent.
A report cannot be marked ready until the pharmacist has added their signature.
Once a report is sent to the GP, the visit and report are locked from further edits automatically.
We're happy to walk through our architecture in detail.
Contact us →