What MedProof does, and what stays with you

The lab, doctor or hospital that makes a record remains its data fiduciary and takes the patient's consent directly under Section 6. MedProof gives them the means to do that with proof.

MedProof isMedProof is not
A utility for moving health records with the patient's consentPractice or lab software (an HMS or LMS)
A data processor to every facility it serves, under a written contractA custodian of health records
The data fiduciary for the wallet account only: name, phone, ABHA link, login recordsA registered Consent Manager under the DPDP Act
A Personal Health Record app on the ABDM networkA fiduciary for anyone's health data

The record stays with the facility that made it

The wallet holds an index: which records exist, who has been given access, and for how long. The report file itself stays with the issuer, encrypted. When the patient wants a copy, it is saved to their own device or DigiLocker. MedProof's servers never hold a patient-side record, so there is no central store of the nation's health records to breach.

Diagram: facility, patient wallet, register and recipient

The DPDP Act, section by section

SectionTitleHow MedProof meets it
5NoticeItemised notice with purpose, data categories and retention, in 22 Eighth Schedule languages; its hash is bound to the consent.
6ConsentAffirmative one-tap consent via QR; structured, purpose-limited, signed by the patient or the entitled person.
6(4)WithdrawalOne-action withdrawal from the wallet; access ends at the receiving facility and the withdrawal is recorded.
7(f)Medical emergencyProcessing without consent in an emergency, recorded as such and visible to the patient afterward.
8Fiduciary obligationsSecurity safeguards, purpose limitation, retention and erasure handled at the facility through MedProof-peer.
8(2)Data processorMedProof-peer is provided to each facility as its processor under a written contract; the facility remains the fiduciary.
8(6)Breach notificationAutomated alerts to the facility's contact, affected patients and the Board within the prescribed window.
9Children's dataVerifiable parental consent and lawful-guardian consent handled at the scan.
11Right to accessThe wallet is the patient's own access record: every consent and every access event.
12Correction and erasureRequests routed to the issuing facility and logged; expired consents leave nothing to erase at MedProof.
14Right to nominateNominee and guardian recorded in the consent; family proxies are lawful and visible.

This table describes product behaviour. It is not legal advice.

On the national health network

MedProof works with the Ayushman Bharat Digital Mission. A patient with an ABHA number can link it in the wallet, and reports can be tied to it at delivery. Facilities need only their Health Facility Registry entry; MedProof's software carries the certification.

Where both sides are on ABDM, the record moves on ABDM. Where they are not, it moves on MedProof's own rail. Either way, the consent is checked every time the record is opened.

An ABHA card beside a phone showing the ABHA-linking screen

The technology behind the scan

Three things make a three-second scan safe to rely on.

AI

When your staff say what they need in plain language, an assistant drafts the notice in the patient's language and lists exactly what is being asked. A fixed check then confirms every consent against that notice before anything is recorded. The assistant drafts; it never decides who gets access.

Cryptography

Each report is sealed for one person, one purpose and one period. The patient, the lab and the doctor hold their own keys; MedProof carries the sealed envelope and cannot open it. When the consent ends, the copy stops opening.

Blockchain

Every notice, consent, delivery and withdrawal is written to a register on the MOI network that nobody, including MedProof, can change afterwards. The register holds proof of what happened, never the report itself.

Diagram: AI for understanding, cryptography for control, blockchain for proof

Identity

A phone PIN or fingerprint for everyday use; an OTP or ABHA check at the counter; the doctor's presence recorded before care; and Aadhaar eSign for anything that goes beyond the visit, such as a copy to an insurer. Family members who act for a patient are named in the consent.

Talk to us

Tell us your facility name and a phone number. We will call you within a working day.

Or email contact@algix.xyz.

We use this only to send you your code and set you up. Nothing else.

Thanks. Your mail app should open with the details filled in; press send and we will call you within a working day.
₹2 per scan, free to joinTalk to us