Industry
Medical Transcription — patient data stays in Germany
Discharge letters, surgical reports and study interviews with ICD-10- and ATC-aware custom vocabulary.
Patient data is highly sensitive — § 203 StGB and GDPR Art. 9 set clear requirements, tightened further by the German KHZG hospital digitisation act. DeepScript processes all recordings on its own servers in Germany, with no US subprocessor and no model training on customer data. Custom Vocabulary understands ICD-10 codes, ATC classifications and common medical terminology — from internal medicine to pharmacovigilance. A 30-minute dictation costs about €0.09 on Standard, €0.14 on Premium.
Compliance
- § 203 StGB medical confidentiality
- We process as auxiliary personnel under § 203(3) StGB. Staff are explicitly bound to patient confidentiality.
- KHZG-compatible
- Processing meets German Hospital Future Act requirements for IT security (funding criterion 10), incl. encryption and audit log.
- No training on customer data
- Patient data is never used for model training — neither by us nor by a subprocessor. Contractually excluded in the DPA.
- ISO 27001 + servers in Germany
- Own infrastructure in German data centres, ISO 27001 certified. No Schrems II exposure through US cloud connections.
Typical workflows
- Dictating discharge letters — structured letters covering history, diagnosis and therapy transcribed automatically.
- Drafting surgical reports — word timestamps for later verification of individual steps.
- Recording ward rounds and handovers — speaker diarization across attending, resident and nursing voices.
- Transcribing pharma study interviews — pseudonymisable speaker roles for GCP-compliant analysis.
- Documenting case conferences — capturing decisions with word timestamps for an auditable record.
Recommended setup
- Model
- Premium (€0.27/hour) — highest accuracy, DACH dialect optimization, priority queue.
- Vocabulary
- Add ICD-10 codes, ATC classifications, active ingredient names, specialist terminology and department-specific abbreviations.
- Exports
- DOCX for the patient record, structured JSON for hospital information system integration (e.g. Orbis, ish.med).
What a workflow looks like
- 1
Sign the DPA with the clinic
Sign the data processing agreement electronically in the Trust Center, including KHZG-relevant technical and organisational measures.
- 2
Set up Premium + medical vocabulary
Enable the Premium model, create a vocabulary with the department's ICD-10 codes and terminology. One vocabulary per specialty works well.
- 3
Upload dictation or record live
Upload recordings from your dictaphone or dictate live in the browser/app via Live Transcription.
- 4
Structure and import into the HIS
Structure the transcript in the editor, then export DOCX to the file or push JSON via API into the hospital information system.
Frequently asked questions
Is DeepScript compatible with medical confidentiality under § 203 StGB?
Yes. We act exclusively as auxiliary personnel under § 203(3) StGB, staff are bound to patient confidentiality, and data never leaves our German infrastructure. The Art. 28 GDPR DPA documents this.
Does DeepScript meet KHZG requirements for IT security (funding criterion 10)?
Yes. ISO 27001 certification, encryption at rest and in transit, full audit log and two-factor authentication cover the BSI baseline that KHZG funding criterion 10 references.
Can the system reliably recognise ICD-10 codes and active ingredient names?
With Custom Vocabulary, yes. You add ICD-10 codes, ATC classifications and active ingredient names there — the Premium model gives those entries elevated weighting. We recommend one vocabulary per specialty.
Are patient data used for model training?
Never. This is contractually excluded in the DPA and extends to our subprocessors.
How long may a clinic retain transcripts?
We delete after 30 days by default. Since medical records typically require 10 years of retention (§ 630f BGB), we recommend exporting to the HIS and using the Pro subscription (€22/month) for longer in-app retention.
Is this the right fit for your firm, hospital or agency?
Three transcriptions free, no credit card. Data stays in Germany. DPA ready to sign at /trust-center.