Security & trust
Safe to adopt in a clinical setting.
Two distinct things, both engineered in: guardrails that keep the AI safe on every turn, and security that protects your patients’ data.
AI guardrails
Guardrails, built for the AI
Defence-in-depth safety layers
Multiple independent layers screen every turn of every conversation: model instructions, output checks, continuous risk screens and human review. Safety is the architecture, not a feature.
Escalation triggers
Concerning disclosures, such as red flag symptoms or risks to patients, trigger immediate silent escalation to your care team’s dashboard while TESSA continues to engage the patient calmly. TESSA also spots patterns across conversations and learns the things your teams look out for, supporting early risk identification and management.
Human-in-the-loop
TESSA never diagnoses and never acts alone. Every report is reviewed, amended where needed and signed by a nurse or clinician before it becomes part of care. The AI prepares; your team decides, and the record shows exactly who decided what.
Retrieval-grounded AI (RAG)
Outputs are grounded in retrieved passages from your institution’s own protocols, pathways and guidelines, not the model’s training data. That bounds what the AI can say to what your organisation has approved, and keeps guidance current as your documents change.
Citations and references
Every finding in the report links back to the exact patient words or source document it came from. Reviewers verify in seconds instead of re-interviewing, and gaps are flagged rather than smoothed over: an audit trail built into the writing itself.
Explainable AI
For every priority read and risk flag, TESSA shows its reasoning and its confidence: what it saw, where, and how sure it is. Clinicians can interrogate a conclusion before trusting it, the difference between a tool your team uses and one it works around.
Security & data
Your data, handled to your standard
Pseudonymous by design
The patient surface runs on session codes, never names or identifiers. Linking a session to a patient record happens only inside your institution’s systems, under your control.
Tenant-isolated
Each institution’s data sits in its own space, with row-level isolation enforced at the data layer, not just the app. Your patients’ records can never mix with another organisation’s.
Full audit trail
Every view, edit, reveal and sign-off is logged as an auditable event: the paper trail your governance board asks for, generated automatically.
Deployment and residency
Hosted in-region to your data residency requirements. Hosting, data handling and integration scope are agreed in the security review, documented to your standard.

Why TESSA
The clinical AI your team will actually trust.
Take the first step to transforming care for your patients and staff.