Case Studies

Hospify

Secure, EU & UK compliant, and free-to-use clinical messaging app that allows live chat between healthcare professionals and patients

Case Study

About Hospify

Discover secure and compliant mobile messaging service for healthcare professionals and patients in the UK & EU.

Hospify is a secure and compliant mobile chat app for healthcare professionals and patients across the UK and EU. It provides users with the simplicity and power of consumer messaging solutions, ensuring that all communication stays within UK & EU legislative guidelines for patient confidentiality and data protection.

In March 2020, after 12 months of rigorous technical and security testing, Hospify was the first industry-wide, general-use healthcare communications platform to be made available in the NHS Apps Library for UK healthcare professionals. Hospify is already being used by 1000s of healthcare professionals at over 100 hospitals across the UK.

Hospify Use Case

Hospify has set out to make secure communication universally accessible not just to just to doctors but to all healthcare professionals and their patients, while ensuring compliance with NHS Information Governance including the NHS Data and Security Protection Toolkit, UK Data Protection Law, GDPR, the ISO27001 information security standard, the DCB0129 Clinical Safety Risk Assessment, and the NICE Evidence Standard Framework.

The Hospify service provides secure individual and group messaging functionality by using Ably’s Pub/Sub messaging to publish a stream of realtime data over channels instantly to large numbers of users. To ensure compliance, it does this without storing user message data or patient identifiable information on its servers.

Due to the sensitivity to data payloads, Hospify uses its own TLS encryption model combined with Ably’s token-based authentication to ensure that shared data stays secure and that patient confidentiality is respected. As a result, messages sent to the doctor’s or patient’s mobile device remain secure and can only be seen after entering a PIN.

Hospify Challenges

Solving the EU only storage problem for chat apps in healthcare

During proof-of-concept testing, the team at Hospify discovered that its initial solution for message delivery – a polling mechanism – was insufficient to meet the fast-paced demands of the healthcare environment, and decided that a real-time Pub/Sub messaging platform was required in order to handle long-term scalability.

It was also crucial that any such platform had European data centres, in order to ensure that users’ messages were transmitted in accordance with coming GDPR legislation.

After evaluating various solutions, many of which turned out to be expensive and only available as part of a full enterprise bundle, the team decided to use Ably’s EU-only storage based enterprise solution, which allowed to it to keep all message transmission and storage within the EU and – furthermore – ensure that all messages were deleted within 72 hours of delivery in a regulatory-compliant manner.

Key Technologies used

  • Pub/Sub messaging

  • EU only storage

  • Guaranteed delivery & ordering

  • Message History

  • Token Based Authentication

  • Transport Layer Security

The Ably Solution

Unreliable networks don’t have to mean lost messages for your users

Loss of connection and constant reconnection is a major pain point for a realtime healthcare messaging service trying to make sure that, even in the difficult environment of a large hospital where networks are patchy and users are constantly on the move, messages don’t get delivered in the wrong order or lost altogether. Dealing with these kinds of situations presents a difficult challenge for Hospify.

Hospify was facing the prospect of building out its own engineering solution to address this. But instead the team decided to use Ably’s unique message queueing and ordering feature, which combines with message history to provide robust, correctly ordered message delivery – saving the team significant time and spend and eliminating the need for ongoing dev-ops maintenance.

Ably’s realtime platform achieves this by retaining a connection state when a user gets disconnected, allowing it to continue to receive and store any messages that don’t get delivered until such time that the users’ device can reconnect to the server. It then replays all the messages in a guaranteed order of delivery, making sure that no messages are lost or muddled when clinicians are communicating with their teams or with their patients.

Choosing Ably meant we were able to simplify our realtime architecture, saving us valuable engineering time to redeploy elsewhere and focus on growing our user base. Plus the combination of Ably’s unique capability of guaranteed message ordering and delivery and EU-only data storage for our compliance needs meant Ably was the right realtime platform for us.

Neville Dastur

Co-founder and CTO / Hospify

Hospify relies on Ably for

  • Using channels devices can broadcast out realtime updates to any number of subscribers.

    See how
    See how
  • We can ensure your messages are routed and stored only in the geographic locations you require based on your legal or privacy requirements.

    See how
    See how
  • Realtime data persisted into our database can be retrieved at a later time by devices or servers.

    See how
    See how
  • You maintain complete control over which devices can publish or subscribe to realtime data.

    See how
    See how
  • We never inspect payloads and are a registered ICO data processor. We ensure your data is secure and sandboxed within your account.

    See how
    See how
  • When devices lose their connection, they don't need to lose message continuity and data integrity.

    See how
    See how
  • Our quality of service and reliable message ordering guarantee lets you focus on building your service.

    See how
    See how
  • We ensure data transferred between devices is always routed using the most efficient path, which means it's fast.

    See how
    See how