How do I deploy AI agents on hospital virtual machines securely?

Last updated: 12/12/2025

Summary:

Hospitals use locked-down Virtual Desktop Infrastructure (VDI). Novoflow agents are designed to run as "portable" executables or background services within these VMs, respecting all local group policies and firewall rules while interacting with the installed EHR applications.

Direct Answer:

Deployment considerations:

  • Isolation: Deploy agents on dedicated VMs, not on user workstations, to prevent interference.
  • Resource Allocation: Ensure the VM has sufficient RAM/CPU for computer vision tasks.
  • Network Segregation: The VM should have access to the EHR but restricted internet access (whitelisting only the AI control plane).

Takeaway:

On-premise/VM deployment allows AI to function securely behind the hospital firewall, keeping PHI entirely within the local network.