GDPR & security

Client data protected the way it should be.

EMOTIS gives your psychology practice full GDPR compliance: encrypted data, storage held exclusively in the EU, client data export on request.

🔒 What you get

Peace of mind instead
of audit anxiety.

Your notes stay yours

Every session note is encrypted before it reaches the system — access to your notes is yours alone, from your account. No one else ever sees what you wrote after a session.

Data stays inside the EU

Everything belonging to your clients stays in Europe, within the European Union. No transfers outside the EEA, no legal surprises down the line.

Notes that never leak

SOAP, DAP, BIRP — write by voice or by keyboard, and the content goes exactly where it should and nowhere else. Encryption protects every word of your clinical record.

Client protected, you at ease

The client portal needs no installation — you send a link by text or email. Clients fill out questionnaires like PHQ-9 or GAD-7 before the appointment, and only you see the results. No external clouds, no accounts on third-party services.

GDPR in a practice isn't paperwork — it's trust.

Your clients hand you things they haven't told anyone else. They have a right to know those words are safe. EMOTIS encrypts your entire clinical record before it's ever saved, and access to your notes is yours alone, from your account. That's not a marketing promise. It's how the system is built from the ground up.

Data in Europe, because that is how it should be.

All client data is processed exclusively in Europe, within the European Union. No transfers to the US, no subprocessors outside the EEA, no juggling standard contractual clauses. As the data controller, you can point to your legal basis and the location of processing without hesitation — EMOTIS was built for GDPR from the start, not adapted to it afterward.

Less worry about an inspection, more room to do the work.

A data protection audit, or a client asking what you hold on them, is exactly when you want certainty, not hope. EMOTIS keeps your records in a shape that lets you answer any question without a frantic search through files — every interaction with a client's data is logged in an audit trail. Everything lives in one place, encrypted, accessible only to you — and nowhere else.

Security that doesn't get in the way of your work.

Good safeguards should never slow down your day. Voice-dictated notes, questionnaires clients fill out before the appointment, a portal that needs no installation — all of it works quickly and without friction, while encryption and EU data storage happen quietly in the background, with no effort from you.

Questions & answers

Got questions? We've got answers.

Does EMOTIS act as a data processor under GDPR?

Yes. As a psychologist, you are the data controller for your clients; EMOTIS is the processor — we process data solely on your behalf and under your instructions. We can sign a data processing agreement (DPA) that meets the requirements of GDPR Article 28.

Where is my clients’ data physically stored?

Exclusively in Europe, within the European Union. We use no subprocessors outside the EEA and never transfer data to third countries.

What happens to client data if I stop using EMOTIS?

The data is yours. You can export it at any time, and once our relationship ends we delete it from our system on your request — in line with the law and with no hidden fees.

Do I need to tell my clients I use EMOTIS?

Yes, just as with any other tool that processes client data. We can help you draft the right wording for your privacy notice — reach out and we'll gladly send a ready-made template.

Who has access to the content of my notes?

Only you, from your account. Clinical records are encrypted before they are ever saved to the system, and every interaction with a client's data is logged in an audit trail.

Start risk-free. 14 days free.

No credit card needed — see for yourself whether EMOTIS fits your practice.

Start free — 14 days