Lyrebird Health AVT AI Scribe
AI-powered clinical documentation platform designed to reduce clinician workload by securely generating accurate, real-time consultation notes and subsequent documentation. The solution automatically transcribes clinician patient conversations, producing high-quality, structured and editable transcripts and notes. Content feeds into auto-generated custom templates and other documents.
Features
- Clinical consultation speech recognition, digital dictation and ambient voice technology
- Real time speech-to-text transcription for clinician and patient consultations
- Full Electronic Patient Record and Electronic Medical Record system integration
- Patient Administration System (PAS) system integration and in-built telehealth compatibility
- AI scribe generated clinical notes and speciality specific documentation
- AI template generation built from existing organisational uploaded examples
- Customise macros and shortcuts to alleviate repetitive tasks
- Multilingual translation capabilities to conduct consultations in different languages
- Full clinician editorial control over generated notes (Clinician-in-the-loop)
- SSO integration and mapping users to existing RBAC groups
Benefits
- Launch in Context via patient’s EPR record or appointment directly
- Reduce letter turnaround from 6.7 days to <24 hrs
- Average admin time saving of 26 mins/day per clinician
- Average time saved per patient consult of 8 minutes
- 6.2-7.2% improvement in documentation quality vs manual notes
- 95% of patients consent to Lyrebird use in consultation
- AI trained on medical terminology for improved clinical accuracy
- 100% of clinicians reported improved focus during consultations
- Elevated patient care through clinicians building stronger connections with patients.
- Reduced administrative burden increasing clinical capacity
Pricing
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
8 4 8 1 3 2 4 6 4 7 9 3 4 7 7
Contact
Lyrebird Health
Tenders Team at Lyrebird
Telephone: n/a
Email: tenders@lyrebirdhealth.com
About your service
- Service categories
-
Application Development and Deployment
AI platforms
AI life cycle
- Trustworthy AI Software
AI software services
- Conversational AI Software Services
- Generative AI Software Services
- Document AI Software Services
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Public cloud
- Service constraints
- The AI scribe is limited to the information it is given through EMR (Electronic Medical Records) or populated manually by the user and that is provided via verbalised input from clinicians and patients during consultation.
- System requirements
-
- Microphone-enabled device and access granted to Lyrebird
- Stable 4G, 5G or Wi-Fi connection (≥5 Mbps recommended)
- JavaScript enabled
- HTTPS connectivity
- Desktop/laptop with modern CPU, Minimum 8GB RAM
- Directional external microphone recommended used within a clinical-grade environment
User support
- Email or online ticketing support
- Yes
- Support response times
- Within 3 business days
- User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- None or don’t know
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- Yes
- Web chat support availability
- 24 hours, 7 days a week
- Web chat support accessibility standard
- None or don’t know
- How the web chat support is accessible
- Compatible with screen readers, dictation option instead of typing
- Web chat accessibility testing
- None/unknown - accessibility testing will be introduced during 2026
- Onsite support
- No
- Support levels
-
Each customer will have a dedicated Customer Success Manager. Support responsiveness and resolution times are listed below:
P1 – Response target 1 hour, Resolution target <4 hours.
P2 – Response target 3 hours, Resolution target <24 hours.
P3 – Response target 6 hours, Resolution target <2 days.
P4 – Response target 12 hours, Resolution target <3 days.
P5 – Response target 2 days, Resolution target <5 days. - Support available to third parties
- Yes
- AI chatbot
- Yes
Onboarding and offboarding
- Getting started
- There are self-serve in app demo plus online help pages and articles. Training is provided for all enterprise customers according to customer's needs which will be determined during delivery planning. Users are able to start using the tool immediately after onboarding as the simple, intuitive user interface does not require guided training to get started.
- Service documentation
- Yes
- Documentation formats
-
- HTML
- Other
- Other documentation formats
- Web-based help centre
- End-of-contract data extraction
- Lyrebird stores minimal data by design. Generated transcripts and notes are stored within Lyrebird according to the data retention period set by the customer for only as long as is required for the clinician to review, make any edits and send to the organisation's EPR/EMR. Lyrebird offers a number of integration options via open APIs, HL7, FHIR standards either off-the-shelf or bespoke solutions according to customer needs.
- End-of-contract process
- Loss of access to the service and deletion of all patient data according to the data retention period set by the customer.
- Documentation accessibility standard
- None or don’t know
- How the documentation is accessible
- A range of documentation is provided and supported with in-person and pre-recorded training sessions to support a diverse range of preferences for learning/accessibility needs. Online content can be read via screen readers.
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Opera
- Other
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- User interface only, all features and functionality will be the same
- Service interface
- Yes
- User support accessibility
- None or don’t know
- Description of service interface
- Once you log in to the service, it will direct you to the consult tab, wherein the user can simply click the 'start listening' button and the audio will begin being recorded. At the top of the screen, the user can also fill out the patient details, and click to other tabs such as History, Customise, and Settings.
- Accessibility standards
- None or don’t know
- Description of accessibility
- Accessibility considerations are addressed through user interface design and support for formatting customisation to meet diverse clinical needs.
- Accessibility testing
- Inclusion of accessibility and inclusion assessments in design reviews.
- API
- Yes
- What users can and can't do using the API
- Lyrebird OpenAPI - Secure Launch: Lyrebird's Open API for secure launch allows 'in context' launch from EPR/EMR systems, passing patient demographic data to remove the need for manual input by a clinician. Lyrebird OpenAPI - FHIR Integration: Lyrebird's Open API for FHIR integration allows electronic medical records (EMRs) to integrate with Lyrebird’s AI scribe, pull and push information to and from Lyrebird using Open FHIR Integration allowing any EMR to integrate with Lyrebird over the FHIR open standard. The integration makes it easy to push upcoming appointments into Lyrebird, and write your notes back to the EMR. Lyrebird OpenAPI - Partner API: Lyrebird's Open API, allows electronic medical records (EMRs) to integrate with Lyrebird’s AI scribe, pull and push information to and from Lyrebird allowing any EMR to push upcoming appointments into Lyrebird, and write consultation notes back to their EMR using a webhook. The integration makes it easy to push upcoming appointments into Lyrebird, and write your notes back to the EMR.
- API documentation
- Yes
- API documentation formats
-
- HTML
- Other
- API sandbox or test environment
- Yes
- Customisation available
- Yes
- Description of customisation
- Users can make custom notes, PDF, or other document templates. Users can also create custom macros to automate tasks further.
Scaling
- Independence of resources
- AWS auto-scaling
Analytics
- Service usage metrics
- Yes
- Metrics types
- These include, but are not limited to, scalability, availability, resilience, response times and latency for key user interactions. Individual customer requests for provision of service metrics will be considered.
- Reporting types
- Reports on request
- Resource tagging
- No
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- None
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- No
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- ‘IT Health Check’ performed by a CREST-approved service provider
- Protecting data at rest
-
- Encryption of all physical media
- Other
- Other data at rest protection approach
- Data at rest is encrypted with AES-256.
- Data sanitisation process
- Yes
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
- Data sanitisation type
- Data Erasure
Data importing and exporting
- Data export approach
- Data can be transferred into electronic patient records (EPRs) and other systems through integration. Lyrebird offers a number of integration options via open APIs, HL7, FHIR standards either off-the-shelf or bespoke solutions according to customer needs. At the end of the contract the data will be deleted according to the customers data retention policy. There is no further transfer/export of data.
- Data export formats
- Other
- Other data export formats
- Via integration with customer's systems
- Data import formats
- Other
- Other data import formats
- Via integration with customer's systems
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
- Other
- Other protection within supplier network
- Data at rest is encrypted with AES-256, any data in transit is encrypted with TLS (version 1.2).
Availability and resilience
- Guaranteed availability
- The service is available 24 hours, 7 days a week. Uptime guarantee of 95%, Uptime target of 99.9%.
- Approach to resilience
- Through AWS auto-scaling, elasticity, and constant monitoring of system and production errors. An engineering response team is on-call at all times in the event of an incident.
- Outage reporting
- The service is monitored for outages with multiple software monitoring systems and production errors, traffic volumes, and alerts to the engineering team of an outage. Customers are notified of outages by their designated Customer Success Lead, who issue timely communications whenever a production-impacting event occurs and a plan for resolution, in accordance with the escalation and communication procedures in Lyrebird's Business Continuity Disaster Recovery plan.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Public key authentication (including by TLS client certificate)
- Username or password
- Other
- Other user authentication
- Username and password with MFA enabled. SSL certificate is required for the service. Compatible with SSO login through Azure Entra ID if required by customer.
- Access restrictions in management interfaces and support channels
- All users are provided member status that have lower privileges. Some clinicians can invite other members to the platform but only as the role of member. Management interfaces are strictly given to Lyrebird Health administrators.
- Access restriction testing frequency
- At least every 6 months
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Username or password
- Other
- Description of management access authentication
- MFA (authenticator app), RSA key to specific higher-privileged instances, VPN usage needed when connecting to prod environment, username and password needed. AWS Single-Sign On authentication tied to security groups is needed to reach the management interface of AWS.
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- At least 12 months
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- At least 12 months
- How long system logs are stored for
- At least 12 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
-
- ISO/IEC 27001
- Other
- Other security governance standards
- Cyber Essentials, Cyber Essentials+, GDPR, HIPAA
- Information security policies and processes
-
Lyrebird Health maintains a formal, risk-based security governance framework aligned to ISO 27001, SOC 2 and applicable healthcare regulations. Security governance is overseen by Executive Management and led by the Security Operations Team, who is responsible for maintaining the Information Security Management System (ISMS), ensuring continuous compliance, and coordinating risk management, incident response, change management and ongoing security monitoring. Governance activities are supported by clearly defined roles and responsibilities across Engineering, Operations, Privacy, and Compliance teams, with segregation of duties and least-privilege enforced across all environments.
Information Security Policy, Access Control Policy, Remote Access Policy, Cryptography Policy, Data Management Policy, Risk Management Policy, Secure Development Policy, Business Continuity and Disaster Recovery Policy, Physical Security Policy, Operations Security Policy, Asset Management Policy, Change Management Procedure.
Lyrebird Health personnel are made aware of their responsibilities through:
- Mandatory presentation and acknowledgement of policies
- Role-specific and organisation-wide security training
- Clear, documented responsibilities for all personnel
- CEO oversight to ensure competency and adherence
- Formal communication channels and expectations for reporting issues - Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Configuration and change management approach
- Lyrebird Health’s Change Management Procedure ensures all changes to systems, infrastructure, applications, and security settings are planned, reviewed, tested, approved, and documented to protect confidentiality, integrity, and availability. It defines standard, normal, and emergency change types with corresponding approval levels. All changes require logging, peer review, testing in non-production, controlled deployment, and post-implementation verification. Emergency changes are expedited but must be reviewed within 24 hours. Roles include requesters, reviewers, Security Operations, and Engineering leadership. All changes are recorded for auditing, and the procedure is reviewed annually for continuous improvement.
- Vulnerability management type
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Vulnerability management approach
- Lyrebird Health manages vulnerabilities through a structured risk management process based on ISO 27005 and NIST 800-30/37. Risks and vulnerabilities are identified through annual risk assessments, penetration tests, vulnerability scans, and other technical evaluations. Each vulnerability is assessed for likelihood and impact, then prioritised and recorded in the Risk Register. Risks are treated through mitigation, acceptance, transfer, or avoidance, with treatment plans created where required. Senior leadership reviews risk status regularly, and controls are monitored continuously. Risks are reassessed at least annually, with all findings communicated to executives to guide remediation and ensure ongoing protection of systems and information.
- Protective monitoring type
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Protective monitoring approach
-
Lyrebird uses multiple software (continuous endpoint protection and cloud monitoring) to alert the Incident Response/Engineering team of web-based attacks, downtime/uptime, suspicious probing, suspicious user interaction, privileged account access, and attempted sign-ins to all accounts. We employ both Continuous Log and Event Monitoring and Infrastructure-Level Monitoring.
Suspicious behaviour will trigger our documented Incident Response Process involved detection and triage, containment, investigation and root cause analysis, eradication and recovery, and notifications to nominated recipients. - Incident management type
- Complies with a recognised standard, for example, CSA CCM v4.0 or ISO/IEC 27035:2011 or SSAE-18 / ISAE 3402
- Incident management approach
- Lyrebird Health's incident management process covers all information security and privacy events. Staff, contractors, and customers must immediately report suspected incidents via defined channels. Incidents are logged, triaged, and assigned a severity (S1–S4) with clear escalation paths for high and critical issues. For critical incidents, an Incident Manager leads an Incident Response Team through investigation, containment, eradication, recovery, and remediation, using a central “war room” if needed. All actions are documented, root cause analysis is performed for major incidents, and legal/executive teams oversee breach assessment, notifications, and long-term mitigations. The plan is reviewed and formally tested at least annually.
- Post-quantum cryptography secure
- No
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- No
- Free trial available
- Yes
- Description of free trial
- Users have access to the standard functionality of Lyrebird AVT AI scribe but are limited to 50 actions a month (one action is equal to e.g. a consultation, generating one letter, creating a template).
- Link to free trial
- App-uk.lyrebirdhealth.com
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0%
- Between £250,000 and £500,000
- 0%
- Between £500,001 and £1,000,000
- 0%
- Between £1,000,001 and £2,500,000
- 0%
- Between £2,500,001 and £5,000,000
- 0%
- Over £5,000,001
- 0%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- No
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- No
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 36293278-c6d3-48b8-8624-ec08d6a7a509
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- 520a4be0-11fe-4df0-b06c-85e630fb6bf3
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
- Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
- Volunteering opportunities for staff
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 3: Resilient, innovative and flexible supply chains: Support economic growth through enabling resilient businesses, opportunities for small businesses and voluntary, community and social enterprises
- Measures to involve local stakeholders and/or users in design (e.g. in the design of services, systems, products or buildings)
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Understanding of opportunities for additional environmental benefits delivery in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
-