Before we ask for any access, here is what you need to know.
To connect Medivis with the CMS your clinic already uses, our technical team needs to see how the data in that CMS is organised — field names, record format, and how the system accepts outside connections. Without that, integration can only be done by guesswork.
We know that granting access to a patient system is not a small thing. So this form starts with an explanation, not a password field. Read first. The form is below.
Our commitments to you
Access for setup, not for ongoing use
We ask for access for the sole purpose of completing the integration between Medivis and your CMS. Once the integration is complete, you can change the password, delete the temporary account, or revoke the token provided — and we encourage you to do so.
Minimum information necessary
We will limit access to the minimum information necessary for the integration work, and will not use patient data for any purpose other than the service directed by your clinic.
Data remains your clinic's
Data in your CMS belongs to your clinic. Medivis acts on your clinic's instructions as a technology provider, not as the owner of the data.
No selling data, no marketing
We do not sell, rent or trade your data or your patients' data, and do not use it for our own marketing.
Access restricted to the on-duty team
The login details you submit are stored encrypted and can only be opened by the on-duty platform technical team handling this request. Every time it is opened, an audit record is written — who, and when.
You can withdraw consent at any time
You can withdraw this consent at any time by contacting us. Login details that have not been used are also automatically discarded after 14 days.
Personal data protection (PDPA — Act 709)
Patient data in your clinic's CMS remains data controlled by your clinic. Medivis processes it on the clinic's instructions as a technology provider — we are not the owner of that data, and we cannot use it for our own purposes.
We take reasonable technical and organisational measures to protect the information you provide here: login details are stored encrypted (AES-256-GCM), transmitted over HTTPS, can only be opened by the on-duty platform administrator, and every time they are opened an audit record is written. No system is completely free of risk, and we will not claim otherwise.
Our full PDPA notice is available at /pdpa.
What we access
- CMS data structure — field names, format, how records are organised
- Test data or sample records you show us during setup
- Endpoint, API key and connection settings
- Error logs while the integration is being tested
- User names and roles, if needed to map access
What we do NOT touch
- Patient clinical records for any purpose other than integration testing
- Bulk export without written instruction from the clinic
- The clinic's financial, payroll or HR information
- Your data used to train general AI models or for Medivis marketing
- Sharing your login details with other clinics or third parties
Integration request form
Four fields only. Fields marked (optional) can be skipped — we will contact you for the rest.
Contact us
- Company
- KOBARAN TEGUH SDN. BHD.
- Registration No. (SSM)
- 202601001919 (1664016-P)
- Business address
- No. 49, Jalan SILC 2/16, Taman Perindustrian SILC, 79200 Iskandar Puteri, Johor, Malaysia
- Phone
- +60 19-273 3732