Skip to main content
All CollectionsAPIPrivacy and Security
How does Corti foster responsible use of AI and ML? What privacy and security standards does Corti uphold?
How does Corti foster responsible use of AI and ML? What privacy and security standards does Corti uphold?
Updated today

Corti was founded in 2016 as an artificial intelligence (AI) research and development lab with the mission of using breakthrough technology to augment healthcare professionals. Achieving this requires a strong commitment to transparency, compliance, and adherence to industry standards and controls.

Commitment to Responsible AI

By 2020, the first-generation Corti Assistant became available for use in virtual care, following clinical trials and publicly published research on AI advancements. By 2025, Corti has scaled to support 100 million interactions annually. This rapid growth has been fueled by unwavering adherence to key principles that define responsible AI in healthcare:

  • Focus – Corti employs a purpose-built large language model designed exclusively for the healthcare domain.

  • Trust – Explainability and transparency are prioritized, ensuring AI outputs are clear, understandable, and backed by research.

  • Quality – Continuous model improvement through training on healthcare data ensures high accuracy with minimal hallucinations compared to general public AI models.

  • Compliance – Corti rigorously adheres to industry regulations, including GDPR, HIPAA, SOC 2, FedRAMP (moderate), NHS DSPT, NHS DCB0129, and BSI C5.

  • Security – Deployed on a fully protected private cloud, Corti ensures dedicated customer data tenants and end-to-end encryption. Customers can choose whether to share or ring-fence their proprietary data to prevent it from being used in other models.

Privacy and Security Standards

Corti operates as a data controller, ensuring that personal data is only disclosed to third parties under strict contractual agreements. These third parties may include service providers for IT support, cloud storage, and data analytics. Data sharing is limited to necessary purposes such as enhancing services, ensuring security, and maintaining compliance.

To further protect personal information, Corti implements key safeguards, including:

  • Data minimization strategies to limit unnecessary data collection.

  • Regular audits to ensure compliance with privacy regulations.

  • Secure cross-border data transfers in accordance with applicable laws.

How Corti Uses Collected Data

Corti utilizes collected data strictly for specific operational purposes:

  • To provide and maintain the Corti platform.

  • To notify users about updates and changes.

  • To enable interactive platform features when chosen by the user.

  • To deliver high-quality customer support.

  • To conduct analyses that enhance platform performance.

  • To monitor platform usage and detect potential technical issues.

  • To detect, prevent, and address security concerns.

  • To provide relevant news, offers, and information about similar services (unless opted out).

Transparency and User Control

Corti is dedicated to ensuring that users have control over their data. The complete privacy policy is available here. For any privacy-related inquiries or concerns, users can contact Corti at [email protected].

Through a combination of robust security measures, ethical AI principles, and strict compliance frameworks, Corti remains committed to fostering responsible AI in healthcare while prioritizing user trust and data protection.

Did this answer your question?