Security and data protection
Client, health and team data in one place demands clear rules about who sees what. These are the ones in the app today.
Permissions
85
Down to each field
85 distinct permissions grouped into editable profiles. Every record field has its own visibility per role — the front desk doesn't see what only the practitioner should.
Audit
Who opened and changed what
Document views and downloads are logged with time and origin. Changes to records, HR, roles, permissions and professional credentials are too.
Passkeys
Sign in without a password
Sign in with your own device's fingerprint or face recognition (WebAuthn).
Hosting
Database in the EU
The application database is hosted in the EU region (Ireland). The optional AI features use OpenAI and Google models through the Lovable AI Gateway and may be processed outside the EU, under GDPR transfer safeguards.
AI: external providers
Portability
Your data is yours
Export profiles define which columns leave, and every export run is recorded. No lock-in and no permission needed to leave.
Retention
Periods per category
Retention periods set per document category, per organisation.
AI · early access
AI works within your rules.
The assistant inherits the permissions of whoever uses it and leaves every proposal waiting for a person.
Copilot, HR assistant and survey analysis: OpenAI models. File import, document drafts, kiosk speech recognition and cover images: Google Gemini models. All through the Lovable AI Gateway.
01
Human approval
No proposal is carried out without a person's approval.
02
Kill switch
Switches agents off for the whole organisation at once.
03
Proposals expire
Anything not approved expires — 48 hours by default.
04
Usage log
Every question is logged with its sources — and refusals, with the reason.
At the front desk
The front-desk tablet handles client check-in and team clock-in. So it isn't an open screen.
- Clock-in by personal PIN or a QR code that expires within seconds
- Temporary lockout after failed attempts
- Leaving kiosk mode is PIN-protected
- Time-clock corrections are audited
Transparency
What this page doesn't show
We don't display certification badges we don't hold. The data processing agreement (DPA), the sub-processor list and the impact assessment are published in the app; if your organisation needs a security questionnaire, ask us — we'll answer in writing.
Questions
Where is the data stored?
The application database is hosted in the EU region (Ireland). AI features are optional and use OpenAI and Google models through the Lovable AI Gateway; they may be processed outside the EU under GDPR transfer safeguards. The full sub-processor list is in our data processing agreement (DPA): https://app.myfarol.tech/dpa
Can the Farol team see my data?
Actions taken by platform administrators are recorded in the security log, with the resource, the action and the reason.
Can I take my data with me if I leave?
Yes. Export profiles let you choose the columns, and every export is recorded. There's no lock-in.
Do you offer a data processing agreement (DPA)?
Yes. The DPA, with the sub-processor list, is published at https://app.myfarol.tech/dpa, and the impact assessment (DPIA) at app.myfarol.tech/aipd. For specific questions, use the contact form and choose “Data protection and GDPR”.
Need more detail?
DPA requests, security questionnaires and GDPR questions — a person replies.







