Compliance & trust
Privacy & compliance you can build a practice on
Your clients trust you with their most sensitive information. Quzek is designed to help you honour that — with the privacy, security and consent tools you need to meet your obligations across the regions you work in.
Practices on Quzek operate under many different privacy laws depending on where they and their clients are. Rather than treat privacy as an afterthought, we build the underlying safeguards — consent, strong authentication, audit trails, encryption and strict data isolation — into the platform so you can meet your responsibilities wherever you practise.
Built to support the regulations that matter to you
-
🇪🇺
GDPR (EU & UK)
Consent records, data export, deletion and a DPA on request for the EU & UK General Data Protection Regulation.
Learn more → -
🇺🇸
HIPAA (USA)
Access controls, audit trails, encryption and automatic logoff — with a Business Associate Agreement available.
Learn more → -
🇦🇺
Privacy Act / APPs (Australia)
Record consent to your privacy policy and direct marketing, and destroy or export records as required.
Learn more → -
🇨🇦
PIPEDA (Canada)
Easily obtain and store client consent, with transparent handling of personal information.
Learn more → -
🍁
PHIPA (Ontario)
Strong safeguards for personal health information and a full audit trail of access.
Learn more → -
🐻
CCPA (California)
Transparency over what is collected, with export and deletion to support consumer rights.
Learn more → -
🇿🇦
POPIA (South Africa)
Consent, purpose limitation and data-subject rights aligned closely with GDPR.
Learn more →
The safeguards built into Quzek
-
✅
Consent management
Record and audit each client's consent to your privacy policy, data processing and direct marketing — with a full, timestamped history of every grant and withdrawal.
-
🔐
Two-factor authentication
Optional app-based 2FA for every team member, with encrypted secrets and one-time recovery codes.
-
🗄
Per-practice data isolation
Every practice runs in its own separate database — client data is never mixed between practices.
Learn more → -
🔒
Encryption in transit & at rest
Strong, industry-standard encryption protects data as it travels and while it is stored.
Learn more → -
👤
Role-based access control
You decide exactly what each person can see and do, so people only access what they need.
Learn more → -
📤
Data export & deletion
Export your practice data whenever you like, and have it deleted on request when you leave.
A note on honesty. Quzek gives you the tools and safeguards to meet your obligations — it does not, on its own, make your practice compliant, and we do not claim certifications we do not hold. Where a regime needs a signed agreement (such as a Data Processing Agreement or a Business Associate Agreement) we can provide one on request. Compliance is a shared responsibility between the platform and how your practice uses it.
Read more about how we protect your data on our Security page, what we collect in our Privacy Policy, and how we process data on your behalf in our Data Processing Agreement.
Compliance questions, answered
Is Quzek HIPAA compliant?
Is Quzek GDPR compliant?
Do you have ISO 27001 certification?
Can I get a signed BAA or DPA?
Where is my data stored, and who can see it?
Practise with confidence
Start a free 14-day trial and see the privacy and security tools built into every plan.
Start your free trial