Ensuring Your Security on SigmaMD
SigmaMD implements multiple security measures across its systems, applications, and platforms to help ensure a safe and secure environment for both clinical staff and patients.
Session Security
- User sessions are protected through automatic access token expiration.
- Tokens are silently refreshed while the user is actively using the application.
- When a user logs out, the session is fully revoked on the server side.
Browser Security Recommendations
If a user is automatically signed back in after logging out, the likely cause is the browser auto-filling saved credentials.
Users should review and remove saved SigmaMD passwords from their browser if needed.
On shared computers, it is recommended to:
- Use private/incognito browsing mode.
- Fully log out after use.
- Close the browser after each session.
Two-Factor Authentication
- SigmaMD supports OTP-based (One-Time Password) two-factor authentication.
Mobile App Biometric Security
The mobile application supports Face ID and Touch ID.
Biometric re-authentication is triggered:
- When reopening the app after inactivity.
- When returning to the app from the background.
- On first open after login.
Face ID Troubleshooting
If Face ID prompts are not appearing:
- Verify that Face ID is enabled on the device.
- Confirm that SigmaMD has permission to use Face ID under:
- Settings → Face ID & Passcode → SigmaMD enabled.