Overview
What has to be true before a scan-to-plan pilot can be trusted.
A concise operating surface for requirements, compliance boundaries, security controls, and deployment prerequisites.
Overview
A concise operating surface for requirements, compliance boundaries, security controls, and deployment prerequisites.
Platform model
Model development, training, and benchmark orchestration run on NVIDIA GPUs and Pasqal QCs (quantum computing systems), with workload routing selected by task profile, queue health, and validation requirements.
Public documentation focuses on operating expectations and compliance framing while protecting implementation safety and proprietary controls.
Program statement
The statement below is provided for legal and compliance context while preserving proprietary implementation confidentiality.
Compliance
NEXQ documentation is structured for legal, security, and operations review before production onboarding.
Healthcare privacy baseline
Role-based access, minimum-necessary handling, audit trail visibility, and controlled release workflows are built into operational patterns.
Cross-region policy posture
Data lifecycle handling supports access, correction, retention, and deletion request pathways with accountable policy checkpoints.
Human-in-the-loop requirement
Outputs are review-support artifacts and require qualified human review; clinical use requires intended-use classification and any required authorization.
Enterprise implementation gate
Production use requires contractual controls, security review, approved access scopes, and institution-specific legal acceptance.
Security controls
Security controls combine identity governance, transport protection, audit readiness, controlled release boundaries, and the published trust, privacy, and data-collection policies below.
Role-scoped authentication, forced re-authentication pathways, and session lifecycle controls reduce unauthorized access risk.
Security posture requires TLS transport protections and encrypted data lanes for sensitive workflow operations.
Sign-in events, route access, and high-risk actions are designed to be observable for governance and forensic review.
Operational exports and disclosures are expected to pass policy checkpoints before release.
Published Policy
Full audited baseline for security governance, administrative safeguards, technical safeguards, SDLC controls, third-party assurance, and vulnerability disclosure.
Open PolicyPublished Policy
Full audited policy for collection limits, intake review, telemetry, mobile permissions, retention, deletion, vendor collection, and data inventory.
Open PolicyPublished Policy
Operational incident triage and legally required notification posture for security, privacy, and regulated-data events.
Open PolicyPublished Policy
Complete public privacy policy, including categories collected, purposes, cookies/SDKs, AI, health data, retention, security, and rights requests.
Open PolicyDeployment requirements
Organizations integrating NEXQ should complete these requirements before go-live.
Governance
NEXQ provides role-aware systems and documented security controls. Organizations remain responsible for legal review, clinical governance, and policy adoption in their own jurisdiction.
Legal controls
Production use should include documented legal controls that align with privacy obligations, security governance, and regulated healthcare workflows.
Policy lifecycle
NEXQ policy and legal documentation updates are managed as controlled releases with verification, traceability, and confidentiality protections.
IP and licensing
NEXQ maintains a proprietary licensing posture for protected platform IP, while respecting the independent rights of partner and third-party organizations.
Operations
This page is a technical and policy overview and does not replace legal counsel, regulatory assessment, or licensed medical judgment.
Infrastructure profile
Model development and benchmark orchestration may use approved compute resources identified in internal architecture records. Third-party names do not imply endorsement or partnership unless separately authorized.
Runtime reliability
Production operations target controlled latency envelopes, graceful degradation, and guarded release checks before deployment.
Security reporting
Security or privacy concerns should be reported through official contact channels for triage and response coordination.
Documentation scope
Public documentation intentionally excludes proprietary implementation details while preserving legal and operational clarity.
Operating notes
Compliance, security, PACS-oriented exchange, and access controls are the behind-the-scenes work that makes a patient-first workflow credible.
Open contact pathThe work begins before a scan appears on a screen.
Symptoms, imaging, history, constraints, and goals travel together.
Findings stay close to confidence, limitations, and source context.
Diagnosis support and care-pathway discussion remain in the same frame.
Providers, patients, and institutions keep the record moving safely.
Documentation keeps public claims bounded while preserving enough structure for legal, security, and implementation teams to evaluate fit.
Why NEXQ now
Documentation is part of the sale because hospitals need to see how the product would be governed: data boundaries, access roles, audit posture, PACS-oriented exchange, and human clinical review before production reliance.
Hospitals
Adopt intelligence without breaking EHR, PACS, compliance, or purchasing reality.
Clinicians
Spend less time hunting for context and more time judging the case.
Patients
Know what is happening, access their scans, and keep their providers aligned.