Security notes, in plain language

A short overview of encryption, hosting in Switzerland, backups, deletion, and access logs.

Encrypted in transit. Data is sent over an encrypted connection, which protects it from being read on public networks.

Encrypted storage. Sensitive fields, like name, email, and phone number, are stored encrypted.

Access logs. When personal data is viewed or deleted, we record the action and time for accountability.

Login security. Passwordless sign in links expire quickly. Optional HIN sign in is available for verified professionals.

Swiss DSG. therapylist is designed for Swiss DSG expectations, with data minimization, deletion windows, and access logging.

Backups. We take regular backups to support recovery after mistakes or outages.

Vault option. With Vault, identity details can be encrypted in the browser, and therapylist does not hold the private key. If the key is lost, encrypted identity data cannot be recovered.