In the eCRF, the confidentiality is guaranteed by :
- Password Policy
- Concurrent Access
- Session Timeout
Password Policy
At his first connection, each user is invited to set-up a secured personal password according to a specific password policy.
The password rules are specifically indicated to the user (as shown below).

The password policy is specific to each eCRF platform and is configured in agreement to sponsor requirement.
Concurrent Access
A user can not access to a patient file if another user is already connected on that specific patient file. However, monitor can unlock investigator read only mode using the unlock button on the monitor area.

It will lock monitor page on read only mode and will unlock investigator page after reloading the page.
Session Timeout
A specific session timeout is configured for each eCRF platform. If the user is connected without any action performed in the eCRF for a time duration exceeding the session timeout, the system automatically disconnects the user.
A pop-up message (as shown below) informs the user to re-new his password entry if he wants to remain connected to the eCRF.

This feature avoids that the eCRF access to an unauthorized person.