How ScreenMe protects screening data
ScreenMe handles health-related data for organisations across Europe. This page explains what is collected, who can see it, how long it is kept and how it is protected. It does not describe detection methods; those are deliberately not published.
What is collected
The information needed to verify a screening and issue a certificate: the member's enrolment details, the screening session, the result the kit shows, and the certificate itself.
Who can see what
Members see their own results and certificates. A coordinator sees the screening status and certificate of members who have chosen to share results with that organisation, never the session recording. ScreenMe staff access data only for support, under audit.
Members control sharing
Each member decides which organisations may see their results, and can withdraw that access. A member can be screened for several organisations without any of them seeing the others' data.
Encryption and hosting
Data is encrypted in transit and at rest with AES-256. ScreenMe is hosted in the European Union.
Retention
Session data is kept only as long as needed to verify the screening and support audits, for a period the organisation configures within legal limits; after that it is deleted. Certificates are kept for the organisation's audit period.
GDPR
ScreenMe acts as processor for the organisation and provides a data processing agreement, a record of processing, and support for access and deletion requests. Biometric identity confirmation is performed with the member's explicit consent.
Frequently asked questions
Is the test video shared with my employer or school?
No. Organisations see the status and certificate only.
Where is data stored?
In the European Union.
Can a member delete their data?
Yes, subject to the organisation's legal retention obligations for certificates.