
The statistics do not lie: every month, security incidents arise because a professional identifier has been misused or shared carelessly. Access to My Health Space, far from being just a digital entry point, imposes strict rules set by the Digital Health Agency. Even behind the walls of a trusted internal network, strong authentication is non-negotiable. Mistakes are unforgiving; the slightest flaw in access management can have serious repercussions. As for the traceability of actions, it is not negotiable. Every connection, every manipulation of medical data leaves a trace, by legal obligation. And whether working in a small structure or a large establishment, the law applies equally: size or experience does not protect against the consequences of a breach.
My Health Space: a central tool for the digital management of health data
My Health Space is not just a digital gadget. It is the cornerstone of the digital shift undertaken by healthcare professionals and their patients. Designed and managed by Health Insurance, the Digital Health Agency, and the Ministerial Delegation for Digital Health, this portal gathers all major medical data, from the Shared Medical Record to prescriptions, including hospitalization reports and care histories. All of this converges into a unique medical profile, accessible to each patient via a secure space.
Further reading : How to Get Started in Investing as a Beginner: A Practical Guide and Tips
Health authorities have published a practical guide explaining precisely how to access the platform and use it. It emphasizes the necessity for connecting as a healthcare professional to use compliant authentication devices and protect the confidentiality of exchanged information. By centralizing data and ensuring rigorous traceability, My Health Space simplifies care coordination and reduces the risk of errors in the patient journey.
At the heart of the tool, the DMP facilitates dialogue between practitioners. Patients, as well as healthcare professionals, thus benefit from a robust interface to consult, enrich, or correct their medical records. Two pillars reinforce the reliability of the ecosystem: secure access and delegated consent management, both guarantees to establish trust in the use of digital health.
Further reading : Practical Guide to Successfully Connect to mycampus.eduservices.org
To clarify the foundations of the platform, here are the key points to remember:
- Strong authentication: a prerequisite for accessing sensitive data.
- Traceability: every operation is recorded, every access is dated.
- Interoperability: business tools are natively integrated into the ecosystem.
The joint publication of the guide by Health Insurance, the ANS, and the DNS reminds us of the existence of a unified national framework. My Health Space stands as the foundation upon which the digital management of medical records and the harmonization of care pathways rest.
What are the security requirements for healthcare professionals?
Access security to digital platforms must be viewed as the anchor point of trust, not just a formality. With every connection, whether to consult, modify, or transmit medical information, strong authentication is required. Since January 2023, Pro Santé Connect has become the mandatory gateway for all digital health services. Based on the OpenID Connect protocol, this system guarantees secure and unique identification of professionals.
To reinforce this lock, the CPS card or its digital equivalent, the e-CPS application, comes into play. The card, equipped with a cryptographic chip, or the mobile application, validates each session and significantly reduces the risk of leaks. Thanks to access traceability, it becomes possible to know precisely who consulted a record and at what moment. This level of requirement applies to all professionals, whether registered with the RPPS or referenced via ADELI.
These security measures rely on several levers, detailed below:
- Strong authentication: systematically required to access sensitive services.
- Professional references: prior identification via RPPS or ADELI before any use of the platform.
- Secure messaging: exclusive use requirement for any exchange containing confidential medical data.
The adoption of Pro Santé Connect centralizes access rights management, simplifies compliance checks, and limits the risk of data leaks. This architecture embodies the backbone of digital health, ensuring the confidentiality and reliability of every patient journey.

Software certificates and best practices: ensuring a reliable and compliant connection
The digital security of healthcare professionals is not limited to authentication. Software certificates play a crucial role in ensuring the reliability of connections and regulatory compliance. Every medical software used for managing patient records, coordinating care, or billing must comply with HDS certification (health data hosting). This regulatory foundation, stemming from the Ségur numérique, governs all systems handling medical data in France.
Regularly updating software is not optional. An outdated tool becomes an open door to vulnerabilities, compromising records or stealing information. Whether working in a health center, laboratory, clinic, or privately, it is essential to ensure with the publisher that the software complies with the current standards. Checking the validity of installed certificates, choosing an environment where every connection and document benefits from systematic encryption: these are essential reflexes.
To summarize the rules to integrate into daily practice, keep these practices in mind:
- HDS certification: mandatory for hosting or processing medical data.
- Compliance with Ségur regulations: an essential basis for any medical software used.
- Best practices: regularly changing passwords, managing access rights, quickly deactivating inactive accounts.
From record management to appointment scheduling, everything relies on a solid technical architecture. Vigilance is required from the installation of the software and continues through rigorous maintenance, placing confidentiality at the heart of every professional action. Because in health, an unsecured access can turn a simple mistake into irreversible damage, it’s best not to leave anything to chance.