VB Virtual Scribe — AI-Powered Clinical Data Processing
The Virtual Scribe mobile application (“Virtual Scribe” or “the App”) where required, uses third-party artificial intelligence services to provide automated medical transcription and clinical note generation. This section describes what data is collected, how it is processed, and who it is shared with.
Data Collected
When you use the App’s encounter recording features, the following data may be collected and processed:
– Audio recordings of clinical encounters, captured through the device microphone
– Text transcripts generated from those audio recordings
– Clinical notes (e.g., SOAP notes, assessments, billing codes) generated from the text transcripts
– Patient demographic information you enter (name, date of birth, vitals, chief complaint)
AI Processors
VB Virtual Scribe shares certain data for processing:
1. Audio recordings are transmitted to a speech-to-text API (Deepgram-Inc) for transcription. Audio data is processed in real time and is not retained after transcription is complete.
2. Text transcripts (not audio) are sent to API, PHI (redacted) to generate structured clinical notes, including SOAP notes, assessments, and billing code suggestions.
Audio Deletion Policy
Audio recordings are used solely for the purpose of transcription. Once a transcript has been generated, the original audio is deleted and is not stored on our servers. Only the text transcript and generated clinical notes are retained.
In-App Consent
Before accessing any AI-powered features, users are must provide in-app consent that clearly discloses:
– What data is sent (audio recordings, text transcripts)
– Who the data is sent to
– How the data is handled
Users must explicitly agree to these terms before using the App. Users who decline cannot access AI-powered features.
HIPAA Compliance
Virtual Scribe is designed for use by healthcare professionals and handles protected health information (PHI). We maintain administrative, technical, and physical safeguards consistent with the Health Insurance Portability and Accountability Act (HIPAA). Our third-party AI processors operate under Business Associate Agreements (BAAs) where applicable.
Data Security
All data transmitted between the App and our servers, and between our servers and third-party processors, is encrypted in transit using TLS 1.2 or higher. Data at rest is encrypted using AES-256 encryption.