AI in healthcare, no compromise on medical secrecy.
AI consulting and training for physicians, nurses, pharmacists, lab technicians, healthcare institutions. Reports, anonymization, therapeutic monitoring. HDS hosting and local AI required for patient data.
Colombani.ai helps healthcare professionals and institutions use AI to structure medical reports, anonymize patient files and conduct therapeutic monitoring. HDS hosting and local AI required for patient data. AI Act high-risk classification compliant, reinforced GDPR, French medical secrecy (art. L.1110-4 CSP).
Use cases
Clinical reports and summaries
First version of consultation, surgical, lab reports from voice or text notes. Run locally for HDS compliance.
Patient record anonymization
Pseudonymization for multidisciplinary review meetings, internal training, clinical research. Preserves relevant medical content, removes direct and indirect identifiers.
Therapeutic and bibliographic monitoring
Weekly synthesis of PubMed, Cochrane, HAS publications on your specialty. Sourced, dated, exportable.
Plain-language patient communication
Reformulation of complex reports into accessible explanations for the patient or family. You retain control over medical content; AI handles tone.
Ethics and regulatory framework
Medical secrecy and HDS hosting
Any nominative health data must be hosted on an HDS-certified host or processed locally. No transmission to a non-HDS cloud LLM without strong anonymization. We design compliant architectures from the start.
AI Act: high-risk classified uses
The EU AI Act classifies certain healthcare uses as high-risk (diagnostic aid, triage, medical devices). Enhanced obligations: documentation, risk management, human oversight. Our training covers up-to-date obligations.
What we don't do
- Medical diagnosis: reserved for licensed healthcare professionals. AI never establishes a diagnosis; it assists the clinician.
- Drug prescription: reserved for licensed physicians. No substitution possible.
- Medical device qualification (CE, MDR, IVDR): handled by other bodies (notified bodies, ANSM).
- HDS hosting certification: issued by accredited certifiers, not by us.
- Replacing the institution DPO: we collaborate with your DPO, never substitute.
How we work with you
Training: AI for regulated professions
1 to 2 days. Healthcare case studies (reports, anonymization, AI Act).
Consulting: sovereign architecture
Local or HDS-cloud AI setup to process patient data with full compliance.
Consulting: AI Act compliance
Risk classification of your AI uses and compliance roadmap.
Frequently asked questions
Can I dictate my reports to ChatGPT voice? +
No, not with identifying patient data. ChatGPT is not an HDS host. Solutions: (1) local dictation with Whisper + a local LLM (Ollama), (2) HDS-certified medical solution (Doctolib, Maincare), (3) prior anonymization.
Does my DPO need to be involved? +
Yes, systematically. Any AI use on health data triggers a DPIA and must be documented in the processing register. Our training includes a DPO module and we work with your DPO on consulting engagements.
Discuss your project
First call is free. Straight answer on what is feasible and what is not within your ethics framework.