To prevent unauthorized access, every login attempt on Medora requires a high-security One-Time Password sent to the user's verified mobile number.
We use modern, industry-standard hashing algorithms (bcrypt) to store user credentials. Your raw passwords are never stored in our database.
Each session is uniquely bound to the user's browser environment and IP address. Automated session handling ensures idle connections are terminated.
We prioritize the privacy of clinical data and the protection of academic assets. Our security framework is reviewed regularly to meet the high standards of the medical community.
INDUSTRY STANDARD COMPLIANT