Lyrebird Health

    Ambient scribeHQ · AUWebsite As at 25 Sept 2026
    This tracker records only what each vendor has published on its own public pages. It is not an assessment, audit, certification or endorsement. Vendors change their documentation — always verify directly before making a procurement decision.

    Data storage region

    SummaryChecked 25 Sept 2026
    Australia (all patient data)
    “All patient data is processed and stored within Australia, aligned with Australian Privacy Principles and local healthcare expectations.”
    www.lyrebirdhealth.com
    SummaryChecked 25 Sept 2026
    Australia — AWS Asia-Pacific (Sydney) region, stated for application databases, transcripts, authentication and user data, speech processing and encrypted backups.
    “remains stored in Australia (AWS Asia-Pacific Sydney region) and is not transferred overseas”
    www.lyrebirdhealth.com

    Data processing region

    SummaryChecked 25 Sept 2026
    Privacy policy lists overseas transfers to the United States for payment processing (Stripe), system monitoring (Sentry, Honeycomb) and website analytics (Segment), and says all other personal information, including transcripts and speech processing, remains stored in Australia (AWS Asia-Pacific Sydney region) and is not transferred overseas. It names Azure OpenAI (Microsoft) for language processing; no processing location for it is stated on the page checked.
    “Specifically, your information may be transferred overseas to: United States: Stripe for payment processing … Speech processing … remains stored in Australia (AWS Asia-Pacific Sydney region) and is not transferred overseas.”
    www.lyrebirdhealth.com
    SummaryChecked 25 Sept 2026
    Help centre article (dated 13 August 2026) states all transcription is performed in real time on servers located in the user's region, and that data is processed and stored within the region it originates from.
    “We perform all transcription in real time, on servers located in your region, so audio is turned into text during the consult and is never permanently stored.”
    help.lyrebirdhealth.com
    SummaryChecked 25 Sept 2026
    Vendor states all patient data is processed in Australia
    “All patient data is processed and stored within Australia, aligned with Australian Privacy Principles and local healthcare expectations.”
    www.lyrebirdhealth.com

    Model provenance

    SummaryChecked 25 Sept 2026
    External AI model providers not named on the compliance page; states notes and transcripts are never used to train external AI models
    “Notes and transcripts are never sold, shared, or used to train external AI models.”
    www.lyrebirdhealth.com
    SummaryChecked 25 Sept 2026
    Azure OpenAI (Microsoft) stated for language processing; Deepgram and Whisper stated for speech-to-text conversion.
    “Azure OpenAI (Microsoft) for language processing Deepgram and Whisper for speech-to-text conversion”
    www.lyrebirdhealth.com

    Subprocessors

    SummaryChecked 25 Sept 2026
    Named in privacy policy: Azure OpenAI (Microsoft), Deepgram, Whisper, AWS, Supabase, Sentry, Honeycomb, Stripe, Segment.
    “Azure OpenAI (Microsoft) for language processing Deepgram and Whisper for speech-to-text conversion AWS for secure cloud hosting and data storage Supabase for authentication and database services”
    www.lyrebirdhealth.com

    Certifications

    SummaryChecked 25 Sept 2026
    ISO 27001 certification announced by the vendor on 6 July 2026. Vendor states alignment with APP, HIPAA and GDPR. No SOC 2 or IRAP statement found on vendor-published pages.
    “Lyrebird Health is ISO 27001 Certified Clinical AI Platform”
    www.lyrebirdhealth.com
    SummaryChecked 25 Sept 2026
    Alignment with APP, HIPAA and GDPR stated on compliance page; encryption in transit and at rest
    “Aligned with APP, HIPAA, and GDPR.”
    www.lyrebirdhealth.com

    TGA status

    SummaryChecked 25 Sept 2026
    Not found on public pages
    We could not find this on the vendor's public pages as at the check date. This is not a statement that the vendor lacks the capability or has not disclosed it elsewhere.
    help.lyrebirdhealth.com

    PMS integrations

    SummaryChecked 25 Sept 2026
    Named on vendor integrations page: Bp Premier (Best Practice), BetterConsult, Cubiko, Epic, Oracle Health (Cerner), Meditech; standards stated as FHIR, HL7 v2 and SMART on FHIR.
    “Epic, Oracle Health (Cerner), and Meditech plus flexible standards (FHIR, HL7, SMART on FHIR) to support both modern and legacy environments.”
    www.lyrebirdhealth.com

    ANZ entity

    SummaryChecked 25 Sept 2026
    Subsidio Pty Ltd, ABN 57 668 121 248 (named as the policy owner entity in the Lyrebird Health privacy policy).
    “Subsidio Pty Ltd (ABN 57 668 121 248) (we, us or our) is committed to protecting your privacy.”
    www.lyrebirdhealth.com

    Support hours

    SummaryChecked 28 July 2026
    Not found on public pages
    We could not find this on the vendor's public pages as at the check date. This is not a statement that the vendor lacks the capability or has not disclosed it elsewhere.
    www.lyrebirdhealth.com
    Common questions

    What Lyrebird Health publishes — answered from the record

    Where does Lyrebird Health store patient data?
    SummaryChecked 25 Sept 2026
    Australia (all patient data)
    “All patient data is processed and stored within Australia, aligned with Australian Privacy Principles and local healthcare expectations.”
    www.lyrebirdhealth.com
    SummaryChecked 25 Sept 2026
    Australia — AWS Asia-Pacific (Sydney) region, stated for application databases, transcripts, authentication and user data, speech processing and encrypted backups.
    “remains stored in Australia (AWS Asia-Pacific Sydney region) and is not transferred overseas”
    www.lyrebirdhealth.com
    Where does Lyrebird Health process data?
    SummaryChecked 25 Sept 2026
    Privacy policy lists overseas transfers to the United States for payment processing (Stripe), system monitoring (Sentry, Honeycomb) and website analytics (Segment), and says all other personal information, including transcripts and speech processing, remains stored in Australia (AWS Asia-Pacific Sydney region) and is not transferred overseas. It names Azure OpenAI (Microsoft) for language processing; no processing location for it is stated on the page checked.
    “Specifically, your information may be transferred overseas to: United States: Stripe for payment processing … Speech processing … remains stored in Australia (AWS Asia-Pacific Sydney region) and is not transferred overseas.”
    www.lyrebirdhealth.com
    SummaryChecked 25 Sept 2026
    Help centre article (dated 13 August 2026) states all transcription is performed in real time on servers located in the user's region, and that data is processed and stored within the region it originates from.
    “We perform all transcription in real time, on servers located in your region, so audio is turned into text during the consult and is never permanently stored.”
    help.lyrebirdhealth.com
    SummaryChecked 25 Sept 2026
    Vendor states all patient data is processed in Australia
    “All patient data is processed and stored within Australia, aligned with Australian Privacy Principles and local healthcare expectations.”
    www.lyrebirdhealth.com
    Which AI models does Lyrebird Health use?
    SummaryChecked 25 Sept 2026
    External AI model providers not named on the compliance page; states notes and transcripts are never used to train external AI models
    “Notes and transcripts are never sold, shared, or used to train external AI models.”
    www.lyrebirdhealth.com
    SummaryChecked 25 Sept 2026
    Azure OpenAI (Microsoft) stated for language processing; Deepgram and Whisper stated for speech-to-text conversion.
    “Azure OpenAI (Microsoft) for language processing Deepgram and Whisper for speech-to-text conversion”
    www.lyrebirdhealth.com
    What certifications does Lyrebird Health publish?
    SummaryChecked 25 Sept 2026
    ISO 27001 certification announced by the vendor on 6 July 2026. Vendor states alignment with APP, HIPAA and GDPR. No SOC 2 or IRAP statement found on vendor-published pages.
    “Lyrebird Health is ISO 27001 Certified Clinical AI Platform”
    www.lyrebirdhealth.com
    SummaryChecked 25 Sept 2026
    Alignment with APP, HIPAA and GDPR stated on compliance page; encryption in transit and at rest
    “Aligned with APP, HIPAA, and GDPR.”
    www.lyrebirdhealth.com
    Which subprocessors does Lyrebird Health name?
    SummaryChecked 25 Sept 2026
    Named in privacy policy: Azure OpenAI (Microsoft), Deepgram, Whisper, AWS, Supabase, Sentry, Honeycomb, Stripe, Segment.
    “Azure OpenAI (Microsoft) for language processing Deepgram and Whisper for speech-to-text conversion AWS for secure cloud hosting and data storage Supabase for authentication and database services”
    www.lyrebirdhealth.com
    What does Lyrebird Health publish about TGA status?
    Not found on public pages
    We could not find this on the vendor's public pages as at the check date. This is not a statement that the vendor lacks the capability or has not disclosed it elsewhere.
    Which practice management systems does Lyrebird Health list as integrations?
    SummaryChecked 25 Sept 2026
    Named on vendor integrations page: Bp Premier (Best Practice), BetterConsult, Cubiko, Epic, Oracle Health (Cerner), Meditech; standards stated as FHIR, HL7 v2 and SMART on FHIR.
    “Epic, Oracle Health (Cerner), and Meditech plus flexible standards (FHIR, HL7, SMART on FHIR) to support both modern and legacy environments.”
    www.lyrebirdhealth.com
    Which Australian or New Zealand entity does Lyrebird Health contract through?
    SummaryChecked 25 Sept 2026
    Subsidio Pty Ltd, ABN 57 668 121 248 (named as the policy owner entity in the Lyrebird Health privacy policy).
    “Subsidio Pty Ltd (ABN 57 668 121 248) (we, us or our) is committed to protecting your privacy.”
    www.lyrebirdhealth.com
    What support hours does Lyrebird Health publish?
    Not found on public pages
    We could not find this on the vendor's public pages as at the check date. This is not a statement that the vendor lacks the capability or has not disclosed it elsewhere.

    Answered from what the vendor publishes on its own public pages, or from an official register where noted, as at the check date shown. Not an assessment, audit, certification or endorsement.

    Right of reply

    Something wrong or out of date?

    Are we missing something, or has this changed? Vendors and their representatives can submit a correction, and we note each change and credit the source. We review every correction request and update the entry when the source supports it.

    Submit a correction