SiriusHealth Logo
SiriusHealth
Data Governance & Security Standards

User & Data Privacy Policy

Last Updated: August 2026 • Governing Data Practices, HIPAA Safe Harbor, and GDPR Pseudonymization Protocols

1.Clinical Data Privacy & De-Identification

SiriusHealth provides longitudinal healthcare analytics and real-world evidence (RWE) datasets normalized to the OHDSI OMOP Common Data Model (CDM v5.4). All patient data licensed, processed, or modeled by SiriusHealth undergoes rigorous, automated de-identification under the HIPAA Privacy Rule Safe Harbor Method (45 CFR § 164.514(b)) and GDPR Recital 26 principles for anonymized and pseudonymized data.

  • All direct identifiers (names, exact dates of birth, social security/national IDs, phone numbers, email addresses, and detailed addresses) are removed.
  • Dates are shifted longitudinally per patient cohort to preserve relative time delta integrity while preventing re-identification.
  • Geographic markers are aggregated exclusively to state or regional levels.

2.Interactive Health Meter & Simulation Data

When using the interactive Sirius Health Meter or resilience simulator on this web portal:

  • Slider adjustments, persona selections, and What-If calculations run entirely in your local client browser session.
  • No personal health biomarkers or test inputs are stored, tracked, or sold to third parties without explicit authentication and enterprise data agreement execution.

3.Enterprise Data Security & Access Controls

For authorized biopharma researchers, health systems, and data licensees accessing SiriusHealth cloud data lakes or APIs:

  • Data is encrypted in transit via TLS 1.3 and at rest via AES-256 bit encryption.
  • Access to provisioned Snowflake, Postgres, and cloud Parquet partitions is governed by multi-factor authentication and role-based access control (RBAC).
  • All API keys issued for the Clinical Decision Support (CDS) engine are audited and subject to rate-limiting and access logging.

4. Inquiries and Data Governance Contact

If you have any questions regarding data governance, research ethics, or institutional compliance, you may reach our compliance officers directly through our secure contact portal: