Guide7 min read

AI for French Doctors: Medical Secrecy Under Pressure

AI helps draft without patient data, but pasting a record into a consumer ChatGPT breaks French medical secrecy and the HDS hosting rule.

By Pierre de ONYRI

The answer fits in one line. AI can help draft and summarise, but never with identifying patient data. A report, a letter, a synthesis: the clinician is tempted to paste the full record into a consumer ChatGPT. Yet that record holds a name. Symptoms. A diagnosis. This is health data, the most sensitive there is. Two French rules stand against it. Le secret médical, medical secrecy, a duty of public order. And the HDS regime, the hosting of health data. There is a clean method: ask your questions, but anonymise before you send.

Medical secrecy is a legal duty, not an internal policy

Le secret médical is not a matter of courtesy. It is a legal duty at the heart of practice. Its basis is article L.1110-4 of the Code de la santé publique (CSP), the French public health code. The code of medical ethics restates it in article R.4127-4 CSP. The Conseil National de l'Ordre des Médecins (CNOM), the French medical council, publishes it as « article 4 ». This duty binds every professional in the health system.

Its reach is very broad. The secret covers all information that comes to the doctor's knowledge. Not only what the patient confides. Also what is seen, heard or understood during care. A name tied to a reason for consultation already falls inside this scope. Pasting such information into a third-party tool not meant for it steps outside the legal frame.

Sharing between clinicians is itself framed. It is allowed only within a strict scope. Between identified professionals who take part in the same patient's care. And only for information strictly necessary to the coordination or continuity of care. A consumer AI meets none of these conditions.

The distinctive French point: HDS hosting

France adds a rule of its own. Hosting personal health data requires a certified HDS host (Hébergeur de Données de Santé, a certified health-data host). The basis is article L.1111-8 CSP. Since 2018, this certification has replaced the old ministerial approval.

The certification is not a mere declaration. It is issued by a body accredited by COFRAC, the French accreditation authority. It rests on frameworks steered by the Agence du Numérique en Santé (ANS), the French digital health agency. These frameworks build on ISO-type security requirements, including the ISO 27001 standard. The revised framework even tightens rules on transferring data outside the European Union.

The consequence is clear. A general consumer AI is not a certified HDS host. Pasting patient data into it is not only a confidentiality leak. It is also a breach of the HDS regime. This point is specific to French health law. It adds to medical secrecy, it does not replace it.

You assumeThe reality
“A record summary is no big deal”A name tied to a diagnosis is still health data covered by the secret
“AI is one of my care tools”It is neither an identified professional nor a certified HDS host
“This data isn't that sensitive”The GDPR ranks it as special-category (article 9), tightly framed
“The CNIL banned ChatGPT”No: Italy's Garante blocked it temporarily in 2023, not the CNIL
The risk isn't using AI — it's the patient data you leave behind in it.

Under the GDPR: special-category data

European law points the same way. Health data is special-category data under article 9 of the GDPR. It is also called « sensitive ». Its processing is prohibited in principle. It is allowed only in framed cases, one of which is care.

The CNIL is France's data protection regulator. It publishes frameworks and guides dedicated to health to frame these processing operations. It urges caution on AI, but it did not ban ChatGPT in France. It was the Italian authority, the Garante, that ordered a temporary block in 2023. The CNIL chose instead a path of guidance and recommendations.

In plain terms: pasting a patient record into a consumer AI is not a harmless move. It is processing health data, the most protected category under the GDPR. Medical secrecy keeps binding you, whatever the tool.

The fix: anonymise before you send

Good news: AI is still useful for a clinician's work. It can help structure a report. Reword a letter to a patient. Summarise a body of literature. For that, it needs no identifying data. Ask the request in general terms. Keep the name, the date of birth, the address and the diagnosis out of the prompt.

Two-part diagram: at top, a patient record with a name and a diagnosis note in the clear (amber), marked with a medical cross and a confidentiality seal, travels toward an AI card that receives the exposed record; at bottom, the same record anonymized shows only cobalt tokens, with a checkmark under a shield.
After article 4 of the code of ethics (CNOM), the ANS HDS certification (esante.gouv.fr) and the CNIL's health frameworks.

When a concrete case is truly needed, anonymise it first. Replace each identifying field with a token. The AI reasons about the clinical shape, without ever seeing the real values. You restore the real values afterwards, locally. For hosting health data, reserve it for vetted, HDS-certified tools.

  1. 1Spot the identifying fields: name, date of birth, address, diagnosis.
  2. 2Replace them with reversible tokens, in the browser.
  3. 3Send only the anonymized text to the AI.
  4. 4Restore the real values in the reply, locally.
  • Never paste an identifying patient record into a consumer AI.
  • Check that a health tool is HDS-certified before trusting it with data.
  • Remember that medical secrecy binds you, whatever the tool.

That's what ONYRI Sanitize is for. The engine detects sensitive data — name, date of birth, address, clinical details — and replaces it with reversible tokens before sending. Detection and the mapping stay in your browser. Only anonymized text reaches the model. The AI finds only tokens, never your patient's identity. You get the help, without breaking the medical secrecy the law requires of you.

Frequently asked questions

Is it safe for French doctors to use AI without breaking medical secrecy?
Yes for general work, no with identifying patient data. AI can help structure a report or reword a letter with no name at all. But never paste an identifying record into a consumer ChatGPT. Medical secrecy is a legal duty (article L.1110-4 CSP), and health data is special-category data under article 9 of the GDPR. Anonymise before you send.
Can a consumer AI host health data?
No. In France, hosting personal health data requires a certified HDS host (article L.1111-8 CSP), a certification issued by a COFRAC-accredited body against ANS frameworks. A general consumer AI is not HDS-certified. Pasting patient data into it is both a breach of medical secrecy and a breach of the HDS regime.
Did the CNIL ban ChatGPT for doctors?
No. The CNIL did not ban ChatGPT in France. It was the Italian authority, the Garante, that ordered a temporary block in 2023. The CNIL chose a path of guidance and publishes health frameworks. That does not lift medical secrecy or the HDS regime: do not hand identifying patient data to a consumer AI.

Sources & references

Keep your sensitive data in your browser

ONYRI Sanitize detects and masks your sensitive data before it reaches the AI, then restores the answer — from names to API keys.

Anonymize my prompt

Read next