MyWay Digital Health (MWDH)
Regulations, Operating Processes, Usability and Quality Standards

MyWay Diabetes has been designed to be easy to use. Here we discuss features and why you, as a user, can trust the content and approach taken. If you are a health care professional, this information will help you to understand how we support those in your care.

Before you read on, you may like to watch the following video showing what patients and clinical experts who have experience with the system in Somerset have said about how they all benefit.

How easy is it to use the system?

The system should be usable without any prior training, but we do have a user tutorial video to help if needed. We have a range of educational resources available including leaflets, short videos, PDF documents and infographics (which you can download for future reference) and structured learning which is designed to guide you through key elements associated with diabetes. The system also enables health data access. Data are displayed in an easy to understand colour coded dashboard format; we believe data access is pivotal to users being able to understand key care measures.

What if my sight or hearing are impaired?

We have adopted good practice for making our site as easy to use and accessible as possible (if you want to know more, we comply with WCAG 2.0 and level AA). This means that all images have alternative text, there are subtitles for our videos and adaptations for screen readers. You can read below about how we continually review our system components and the external accreditation which it is subjected to.

Why you can trust MyWay Digital Health

The company was set up by co-founders Dr Debbie Wake (a consultant diabetologist and expert on use of data to support patients) and Dr Scott Cunningham (an academic and expert on interoperability and safe handling of NHS patient data at scale). It was founded in direct response to requests across the UK to have a similar diabetes platform to the one Debbie and Scott have managed in Scotland for the last decade.

The company is registered with the Information Commissioners Office (the ICO) and we operate to their standards and guidance.

There are several important aspects to this, which are covered in detail below, through a series of frequently asked questions:

  1. How are my data kept safe and do I have control over my online use of the MWDH platform?
  2. Is the content overseen by clinical and educational experts?
  3. Is the platform content good quality, in line with current NHS recommendations and kept up to date?
  4. Are any possible risks to users identified and managed appropriately?
  5. How are we regulated?

1. How are my data kept safe and do i have control over my online use of the mwdh platform?

It all starts with people and recruitment. A number of MWDH employees are also NHS staff, with expertise in diabetes and patient-data handling. As well as the usual HR checking processes, each staff member undergoes vetting through Disclosure Scotland which ‘… helps employers make safer decisions when they’re recruiting people’. All staff are required to complete information security training at least annually, so that if they do find themselves in contact with sensitive information, they know how to handle it. Many staff have a personal link to or have diabetes themselves. It is, therefore, a core value of our company to keep data as safe as possible.

Here are other things we do to keep your data safe and put you in control.

All our websites and products have specific privacy notices and policies which explain our approach to data security, transparency around how your data is used, and where it is securely stored. Users are asked to review and opt-in or opt-out of various permissions, in line with personal preferences

You will have noticed when you first land on the web site that you were asked about Cookies. You need to select those which are required to run the service effectively to be able to use the platform. You can opt in to other Cookies which will enable us to improve our service for the whole population and make the product better – currently you will be reminded every 30 days to give you an opportunity to review and amend your choices if so desired

We fully comply with GDPR 2018 and the Data Protection Act 2018 – this means you are in control of your data and have rights in relation to use of that personal data such as whether we can contact you and how we can contact you, should you give your explicit consent

We host your data on encrypted drives on NHS compliant servers which are independently penetration tested at least annually to maintain security and minimise the chance of a cyber-attack being successful

All data is protected using HTTPS with transport layer encryption between the device and the host, so it is secure in transit between Servers and your device

As a company, we are ISO 27001* accredited and operate to recognised standards, are Cyber Essentials certified, and have been certified for both the NHS Data Security & Protection Toolkit and have a CE Mark as a Class I Medical Device.

*ISO27001 requires the organisation to set up an Information Security Management System. This is a whole organisation policy and set of processes which identifies what we need to protect and sets out goals to ensure security is maintained (this applies to physical and online security). We have passed our 2020 annual audit and staff training is regular and ongoing to maintain standards.

2. Is the content overseen by clinical and educational experts?

Clinical oversight

The content behind the platform is co-ordinated and supervised by the Chief Medical Officer (Dr Debbie Wake, MBChB, BSc, PhD, Dip Med Ed, MRCPE) who is a practicing NHS consultant in diabetes. Working alongside Debbie is a multi-disciplinary education team which meets fortnightly including an educational expert, two further diabetes consultants, a diabetes specialist nurse and a patient user. Included and consulted on an ad-hoc basis are diabetes specialist dieticians with significant experience supporting multi-ethnic communities.

3. Is the platform content good quality and in line with current nhs recommendations?

Quality assurance built in

The Chief Medical Officer sits on the Clinical oversight and Education group which routinely consists of an educational expert, a patient representative, a diabetes specialist nurse, a junior doctor plus another diabetes consultant. Ad hoc advisors are used to review/and or deliver content, for example, we have several dieticians who specialise in diabetes and assist with cultural adaptations to content.

The group meets fortnightly and the remit is a combination of writing new content, updating existing content, reviewing all external links for quality and continued relevance.

The education lead also submits the structured learning courses for external accreditation to the Quality Institute for Self-Management Education & Training (QISMET) which is an independent not-for-profit body that supports self-management education providers and commissioners to achieve the highest possible quality service for people living with long-term health conditions.

Their oversight means our courses are externally validated for quality of content and the accessibility adaptations which are built into our website designs.

Our current structured eLearning courses have been accredited by QISMET:

  • My Type 2 Diabetes
  • Understanding Type 1 Diabetes
  • Growing Up With Type 1
  • Considering an Insulin Pump?
  • My Insulin Pump
  • My Gestational Diabetes
  • Carbohydrate Counting
  • Type 2 Diabetes Prevention
  • Freestyle Libre

The whole platform is also independently assessed by ORCHA (the Organisation for the Review of Care and Health Apps) which offers app review and accreditation in health and care. This review covers three broad domains: Data Privacy, Clinical Assurance and User Experience.

Our current ORCHA review can be found on the ORCHA website and is included in the COVID response section. See

Behavioural Change model

MWDH self-management/ behaviour change tools are underpinned by various well founded theoretical principles, and are most closely aligned with the health belief model (one of four models described in a NICE paper – PH6:

  • This health belief model is reflected in the MWDH structured education goal setting tools/ pre and post course questionnaires and pre-clinic questionnaires which support identification of modifiable risk factors, grading of importance, and identification of benefits and barriers to behaviour change. These tools also align with the year of care ( personalised care approaches, and are designed to help people with diabetes to prepare for consultations with their care team and take ownership of setting their own health goals and priorities.
  • In addition, the MyWay Diabetes self-management web app provides users with choice in all self-management approaches (e.g. we discuss a number of evidence based dietary approaches for the user to choose), understanding that one-size does not fit all and care should be personalised taking into account preferences of the individual.

Clinical Standards

The education content and the rules which drive the data presentation are all aligned with NICE Clinical guidelines for treatment of Type 1 and Type 2 diabetes, as is the educational content for Gestational diabetes and Diabetes Prevention. All content is in alignment with UK government standards on healthy living, Chief Medical Officer recommendations on exercise and alcohol consumption and/ or nationally agreed standards, targets and recommendations by the National Institute for Clinical Excellence (NICE), the World Health Organisation (WHO) or the Scottish Intercollegiate Guidelines Network (SIGN) in Scotland.

If you would like to look at NICE guidelines for diabetes yourself, NICE pathways are a good starting point and very accessible:

4. Are any possible risks to users identified and managed appropriately??

MWDH maintains a clinical risk register which is aligned with the NHS standard DCB0129 (Clinical Risk Management: its Application in the Manufacture of Health IT Systems). This is under the guidance of the Chief Medical Officer and is routinely reviewed by the Clinical Oversight and Education group. The register is not published but is made available to clinical staff in the NHS on request. This level of transparency and oversight is appropriate to ensure that MWDH are operating to the correct standard and to protect system users from exposure to unnecessary levels of risk.

5. How are we regulated?

Because our software system contains data dashboards which use simple computer-rules comparing the data (information) in the clinical record to recommended levels in clinical guidelines , it is considered a medical device and falls under the Medical Device Regulations, which represent the Medical Device Directive, operating in the UK, after 1st January 2021. This product is registered as a Class 1 CE Mark, which is the level required for this simple data display approach. Our processes align with all Medical Health Regulatory Authorities requirements, the UK’s independent regulator. In addition, we comply with NHS Digital software standards and the Data Security & Protection Toolkit.

We have, in development, some additional functions which include elements of risk measurement and prediction. We have a research programme in place to test this new functionality and to support a submission for Class IIb medical device status which will be implemented before wider roll out.

ORCHA Cerified
EU GDPR Compliant
ISO 27001