Question of the month: Can cybercriminals access medical data in the Compassana app?
All digital systems are vulnerable to malicious attacks by individual or organised cybercriminals (advanced persistent threats). Bluespace Ventures AG, the company behind Compassana, has put extensive precautions in place for Compassana with a view to rendering such attacks impossible or, in a worst-case scenario, to fend them off quickly.

Security by design: Both the Compassana app and the Compassana platform are based on proven security standards and a recognised, secure system architecture that has already been successfully implemented in major medical information systems around the world.
Privacy by design (data protection using technology): Refers to the development of products and systems with data security built in from the start.
Privacy by default: Is a privacy setting that does not require any action by users. Both concepts are set out in Article 25 of the General Data Protection Regulation (GDPR).
Technical oversight: extensive precautionary measures are taken in terms of security technology and organisation, including intrusion detection (logging, monitoring, alerting systems) and incident management. This enables us to ensure the availability, integrity, confidentiality, authenticity and assignability of the data in the best possible way.
Security tests: independent security experts assist us in taking a proactive approach to identifying and averting digital threats and checking for potential gaps in security. We perform regular tests to assess the current security situation.


