Instructions for Use

Medicilio RPM

Remote Patient Monitoring software — Patient Manual

SymbolParticularValue
ManufacturerManufacturerCantieri Digitali Medtech S.r.l., Corso di Porta Romana 6, 20122 Milano (IT), VAT/P.IVA IT11328810962
CautionConsult the Instructions for UseThis document
UDIUDI-DI[UDI-DI placeholder to be assigned before placing on market]
MDDevice categoryMedical Device: Class IIa software (MDSW)
REFTrade nameMedicilio RPM
VersionSoftware version1.0.0
CECE mark[CE-NUMBER placeholder] · Notified Body: [NB-NUMBER placeholder]
DateDate of issue2026-09-07
eIFUElectronic IFUAvailable at https://ifu.medicilio.it per Regulation (EU) 2021/2226

EU MDR 2017/745 · Class IIa Medical Device Software (MDSW)
Software version 1.0.0 · Date of issue 2026-09-07
Cantieri Digitali Medtech S.r.l. · Corso di Porta Romana 6, 20122 Milano (IT)

1. Introduction

1.1 About the product

Medicilio RPM is a software medical device intended for the remote monitoring of patients enrolled in a clinician-prescribed care pathway. It collects measurements from compatible connected medical devices and from manual patient input, evaluates each measurement against clinician-set thresholds, raises alerts when thresholds are breached, and supports clinicians in producing AI-assisted telemonitoring reports that they must review and sign before any report is released to the patient.

Medicilio RPM is qualified as Medical Device Software (MDSW) per MDCG 2019-11 and is classified as Class IIa under EU Regulation 2017/745 (MDR).

1.2 About this manual

This document is the Instructions for Use (IFU) for Medicilio RPM. It combines the regulatory IFU content required by Annex I §23 of the MDR with the operational depth required by the intended users to operate the device safely.

1.3 Hardware, software and network specifications

Medicilio RPM is delivered as two end-user applications that connect to the manufacturer's cloud back end:

Component Required platform Notes
Clinician / operator web application Modern evergreen web browser supporting current Chrome, Firefox, Edge or Safari (latest two major versions) React 18 single-page application; minimum screen resolution 1280×800.
Patient application Delivered preinstalled on a Medicilio-provided Lenovo Tab M11 tablet (MediaTek Helio G88; 4 GB or 8 GB RAM; 64 GB or 128 GB storage; Android 13 with manufacturer-supported upgrades and security patches at least until January 2028), locked by a Mobile Device Management (MDM) tool to run only the Medicilio application. See §6.2.
Network : clinician web Stable broadband (≥10 Mbps download / ≥2 Mbps upload), HTTPS to manufacturer cloud and to video provider Required for video consultations
Network : patient mobile Mobile data or Wi-Fi (≥5 Mbps recommended), HTTPS Required to upload measurements and to receive notifications
Account Personal account, provisioned by an authorised role See §7
Time Device time set automatically via OS network time Manual time skew may cause incorrect activity scheduling

The "label" of a software medical device is the in-app device-identification screen, which carries the device identification per §23.2 and §23.4(a). In the patient application it is the foot of the Profile screen, below Logout: it states that Medicilio RPM is a medical device, with the software version, the release date and the device UDI, and carries a link to these Instructions for Use.

Patient app Profile screen scrolled to the bottom, below "Esci", showing a boxed device-identification statement : CE mark, manufacturer symbol, "Medicilio S.r.l., Corso di Porta Romana 6, 20122 Milan, Italy", the MD (medical device) symbol, the app version ("App 2.6.6"), the release-date field showing the placeholder "YYYY-MM-DD" rather than a real date, the UDI ("(01)08052859050004 (21)App 2.6.6"), and a link to ifu.medicilio.it.
NOTE

The Medicilio cloud back end is hosted on Google Cloud in the EU region (Belgium, Frankfurt and Milan). All clinical data remains in the EU.

2. Contact details

2.1 Manufacturer

Cantieri Digitali Medtech S.r.l. Corso di Porta Romana 6 20122 Milano (MI), Italy VAT / P.IVA IT11328810962

2.2 Technical and clinical support

Channel Contact
Support email info@medicilio.it
Support telephone +39 0238592673
Support hours Lun–Ven 8:00–20:00, Sab 9:00–13:00 Europe/Rome
In-app chat (Medicilio Customer Support) "Supporto di Medicilio" channel inside the patient app and clinician web app.

2.3 Feedback

Feedback on these Instructions for Use, or on the device, may be sent to info@medicilio.it. Feedback is not a substitute for the serious-incident reporting procedure described in §15.

2.4 Request a paper copy

These Instructions for Use are delivered electronically as permitted by Regulation (EU) 2021/2226. A printed copy is available, at no charge, within 7 calendar days of a written request sent to the support email above.

You can also open the current Instructions for Use from inside the app, using the link at the foot of the Profile screen. The link always opens the current patient edition.

3. Definition of symbols and precautions

The following symbols are used on the cover page and throughout this document, in accordance with ISO 15223-1:2021. Where a harmonised symbol does not apply, a description is provided in this section.

Symbol ISO 15223-1 reference Meaning
Manufacturer §5.1.1 Identifies the manufacturer of the medical device
Date §5.1.3 2025
SN §5.4.1 Medicilio RPM v1.6
Caution §5.4.4 Consult the Instructions for Use
eIFU §5.4.3 Electronic Instructions for Use indicator
MD §5.7.10 Identifies a medical device
UDI §5.7.7 Unique Device Identifier
Translated eIFU §5.7.8 Electronic Instructions for Use indicator in Italian
CE (EU MDR) The device complies with applicable EU regulations

The IFU also uses four in-text callouts to draw attention to information of different criticality:

WARNING

Information about a hazard that, if ignored, may lead to patient harm, clinically incorrect decisions, or device misuse.

IMPORTANT

Information whose disregard may degrade device performance or cause an avoidable workflow failure, without immediate patient harm.

NOTE

Operational context that helps the user act correctly.

TIP

Optional guidance to use the device more effectively.

4. Warnings

The following warnings apply to all users of the device.

WARNING
Not for emergency use.

Medicilio RPM is intended for the asynchronous remote monitoring of patients in stable clinical conditions. It must not be used for medical emergencies, real-time monitoring, ICU or perioperative monitoring, continuous in-person observation, or any clinical situation requiring an immediate response. In a suspected emergency, the patient or user must call the applicable emergency number (in Italy: 112) and must not rely on Medicilio, its alerts, chat, notifications, or messages.

WARNING
Intended patient population.

Medicilio RPM is intended for adult patients. Do not use the device for patients outside the intended population, or for patients unable to understand or operate the patient-facing application, unless a designated caregiver is available and use has been assessed and authorized by the responsible healthcare organization.

WARNING
Device is not autonomous diagnostic.

Medicilio RPM displays measurements, computes threshold breaches and drafts telemonitoring reports as decision support for qualified healthcare professionals. It does not replace clinical judgement. All clinical decisions, including modifications to therapy or escalation, must be made by a qualified clinician.

WARNING
Verify device suitability.

Only measurements obtained with the compatible medical devices listed in §6 may be relied on as clinical data. Measurements entered manually by the patient are recorded with an explicit manual data source and are not equivalent to a verified Class IIa measurement.

WARNING
Single user per account.

Each Medicilio account is personal. Users must not share login credentials or one-time passwords. A pathway must not be activated for a patient other than the one identified in the patient record.

WARNING
Distinguish clinical from administrative communications.

Patients and healthcare professionals must distinguish clinical communications from administrative messages, automated notifications, and non-clinical support communications. Administrative, automated, or support-channel communications must not be interpreted as individualized clinical advice unless clearly identified as such by the responsible healthcare professional. Clinically relevant exchanges in chat must be summarized in the patient's clinical record according to the healthcare organization's procedure.

WARNING
Chat is not a substitute for medical advice.

Messages exchanged in the Supporto Medico Dottore chat are a communication channel, not a substitute for medical advice or a clinical consultation. Patients must not rely on chat messages in place of contacting their clinician directly or, in an emergency, the applicable emergency number (in Italy: 112). Clinically relevant exchanges are summarised by the clinician in the patient's pathway notes.

WARNING
Foreseeable misuse.

Using the device outside its intended use, environment, or user profile described in this section may invalidate the intended performance and may put the patient at risk.

5. Intended use

5.1 Product name

Medicilio RPM : Remote Patient Monitoring software, software version 1.0.0.

5.2 Intended use / Intended purpose / Indications for use

Medicilio RPM is a medical device software platform intended for remote monitoring of adult patients by receiving, transmitting, storing, and presenting physiological parameter measurements from compatible connected devices and patient-reported data entered by the patient, to support healthcare professionals in clinical follow-up and chronic disease management.

Medicilio RPM includes an AI-assisted report generation function that produces draft summaries of patient data for review by a healthcare professional.

Medicilio RPM does not itself perform physiological measurements; physiological measurements are provided by the connected devices.

5.3 Intended user profile

Medicilio RPM addresses two target client populations: (1) healthcare provider organisations (hospitals, clinics, independent practices) that prescribe and operate the pathway, and (2) patients assigned to a pathway.

Within each client, the device has the following intended users.

5.3.5 Patient

Field Value
Type Lay user : adult patient responsible for entering patient-reported data and viewing their own data via the patient interface
Age Adult (≥18)
Level of instructions Lay person; no prior clinical training assumed
User training Reads this IFU and completes the in-app onboarding tutorial; receives a telephone briefing from the Medicilio Customer Support upon kit delivery
Interface Patient mobile application

5.4 Intended operational environment

Medicilio RPM is operated in two environments:

The device is not intended to be used in operating theatres, intensive care units, or in any environment where life-supporting decisions must be made in real time.

5.5 Intended patient population

Adult patients (18 years of age and older) requiring remote monitoring as part of clinical follow-up or chronic disease management. Patients must be able to use the mobile application, or have a designated caregiver acting on their behalf, and must have been prescribed a remote-monitoring pathway by an authorised clinician.

5.6 Intended clinical benefits

Candidate clinical benefits:

5.7 Performance characteristics

Medicilio RPM is not a measuring device in itself: it records, evaluates and presents measurements taken by compatible connected medical devices listed in §6, each carrying its own CE marking and its own accuracy specification. The performance characteristics of Medicilio RPM are:

5.8 Contraindications

6. Compatible medical devices and accessories

Who can perform this action (associating devices to a pathway): Department Doctor, Independent Practice Doctor, Department Doctor Head, Medicilio Customer Support, Ops.

6.1 Compatible measurement devices : overview

Medicilio RPM is used with a configured patient home kit. The devices included depend on the monitoring pathway prescribed to the patient.

Each device has its own Instructions for Use. The user must follow the device manufacturer's IFU for setup, positioning, cleaning, calibration, battery handling, warnings, contraindications, and maintenance.

Category Regulatory framework Treatment in Medicilio RPM
EU MDR medical devices : predominantly Class IIa, with one Class I device (Omron VIVA) (§6.1) Regulation (EU) 2017/745 (some devices under MDR Article 120 transition from MDD 93/42/EEC) Measurements are ingested as clinical data and evaluated against per-pathway thresholds.
EU IVDD / IVDR in-vitro diagnostic device (§6.1) Directive 98/79/EC (IVDD) / Regulation (EU) 2017/746 (IVDR) Measurements are ingested by Medicilio RPM as clinical data and evaluated against per-pathway thresholds.
Non-medical wellness devices (§6.1) Not regulated as medical devices Some parameters (body weight, step count, heart rate) may be ingested by Medicilio RPM but are not equivalent to clinical-device measurements. See the warning in §6.1.3
IMPORTANT
Each accessory has its own Instructions for Use.

For correct positioning, cleaning, calibration, battery handling, warnings and contraindications of each device, consult the IFU supplied by the device manufacturer. The Medicilio RPM Instructions for Use do not replace those documents.

6.1.1 Medical devices

Medicilio RPM connects to CE-marked medical devices, predominantly Class IIa (with the possible exception of Class I devices, e.g. body-composition scales), across the following categories:

Each device retains its own CE marking, accuracy specification, and manufacturer's Instructions for Use, which must be followed for setup, positioning, cleaning, calibration, battery handling, warnings, contraindications, and maintenance (see the IMPORTANT note below).

The current list of compatible devices is kept updated and is available to users upon request by contacting Medicilio support (see §2.2).

IMPORTANT

Each accessory has its own Instructions for Use.

6.1.2 Non-medical wellness devices

Medicilio RPM may also ingest data from non-medical wellness devices in the following categories: smartwatches (step count, heart rate) and body-composition scales. These devices are not regulated as medical devices; their manufacturers explicitly declare this, and their accuracy claims (where present) are wellness-grade, not clinical-grade. The specific models currently in use are available upon request by contacting Medicilio support (see §2.2).

WARNING
Wellness-device readings are NOT clinical measurements.

Medicilio RPM ingests body weight, step count and heart rate from non-medical wellness devices such as smartwatches and body-composition scales. The manufacturers of these devices have explicitly declared that they are not medical devices. Their accuracy claims, when present, are wellness-grade and do not satisfy the performance requirements of EU MDR Class IIa measurement. Clinicians must treat these readings as informative wellness data only. They must not be used as the sole basis for any clinical decision and must not be treated as equivalent to a measurement obtained with one of the Class IIa devices listed in §6.1.1.

6.2 Patient tablet (MDM-locked): Lenovo Tab M11

The patient receives, as part of the home kit, a tablet on which the Medicilio patient application is preinstalled. The tablet is locked by a Mobile Device Management (MDM) tool so that only the Medicilio application can run on it; navigation outside the app, installation of other applications, and access to the operating system are not permitted.

Field Value
Brand and model Lenovo Tab M11.
Processor MediaTek Helio G88 Octa-core (2× Arm Cortex-A75 @ 2.0 GHz + 6× A55 @ 1.8 GHz); Arm Mali-G52 MC2 GPU
Memory 4 GB or 8 GB LPDDR4x (soldered, not upgradable)
Storage 64 GB or 128 GB eMMC 5.1; microSD card slot up to 1 TB (exFAT)
Operating system Android 13 at delivery, with manufacturer-supported OS upgrades to Android 15 and security patches at least until January 2028 (per Lenovo PSREF)
Connectivity Wi-Fi (WLAN model) or Wi-Fi + cellular nano-SIM (WWAN model); Bluetooth; USB-C 2.0
SIM SIM card with dedicated data plan, supplied in the home kit on WWAN variants.
Provided to The patient, for the duration of the pathway only
Permitted use Solely for the prescribed monitoring activities described in §8
End of pathway The tablet must be returned to Medicilio together with the rest of the home kit. See §16.1.
NOTE
Locking the screen, and leaving the tablet on.

You can lock the tablet's screen at any time, so that it does not disturb you at night. The tablet cannot be switched off: it needs to stay on so that your activities, notifications and measurements keep working. Leave it connected to its charger.

WARNING
The tablet is a configured medical-device accessory, not a general-purpose computer.

Attempts to bypass the MDM lock, install third-party applications, change network settings, or use the tablet for any purpose other than the prescribed monitoring invalidate the intended performance and may interrupt monitoring. Report any tablet fault to the Medicilio Customer Support (see §2.2) rather than attempting to repair it.

6.3 Measurement types

Medicilio RPM supports the following measurement types:

7. Logging in and logging out

7.1 Authentication method

Medicilio RPM uses passwordless authentication via one-time password (OTP) sent by email. There is no permanent password to remember.

7.2 Logging in

  1. On the tablet provided in your home kit, open the Medicilio app.
  2. Enter your email address. A 6-digit one-time password is sent to the same email.
  3. Enter the OTP within its validity window.
  4. The app loads to the home screen of your pathway.
Patient tablet app login screen titled "Bentornato", with instructions in Italian to enter an email to receive an access code. It offers "Continua con CIE" and "Continua con SPID" buttons above an "Oppure" divider, an email input field with a "Passa al numero di telefono" link, and a dark blue "Continua" button; the Medicilio logo appears at the top.
IMPORTANT

If you do not receive the OTP within a few minutes, check the spam folder of your email account. Do not request multiple OTPs in rapid succession; only the latest one is valid.

WARNING
Identity verification.

The Medicilio Customer Support verifies your identity by phone (e.g. tax code, date of birth) before your pathway is activated.

7.3 Logging out

Open the profile screen and select Esci.

Patient app Impostazioni screen listing Il mio percorso, I miei dispositivi and Richiedi Teleassistenza, an Assistenza section (Domande frequenti), a Note legali section (Termini e condizioni, Privacy policy), a Development section (Dev Playground), and a red Esci action at the bottom, above the Home/Storico/Chat/ Profilo navigation bar with Profilo selected.

7.4 Session management

Sessions expire automatically after a period of inactivity:

30 days for the patient, on the Medicilio-provided MDM-locked tablet (see §6.2);

Closing the mobile app does not, by itself, terminate the session, explicit logout is required to terminate the session on demand.

8. Using the patient app

8.1 Daily activities

The patient operates Medicilio RPM exclusively from the MDM-locked tablet supplied in the home kit (see §7.2). Once the pathway is active, the app presents the activities scheduled for the day, ordered by how soon they must be done.

Activities include:

Where an activity has a recommended time, that time belongs to one of three slots, always shown with its hours: Morning 05:00–12:00, Afternoon 12:00–18:00, Evening 18:00–24:00. Whatever the activity, the day closes at 23:59:59 and nothing can be recorded for that day afterwards.

Your clinician decides, for each measurement, whether its timing matters clinically:

Questionnaires have no time slot at all: you can complete them at any point in the day.

NOTE
Medications can be recorded after their time has passed.

If you take a medication but cannot record it straight away, for example because you are away from the tablet, you can still record it later the same day. You are asked which part of the day you took it in. See §8.5.

8.2 Today screen

The first screen on the tablet shows the Today view. It is split into two zones.

The top zone stays in place while the rest of the screen scrolls. It carries a small number of summary cards, each of which opens a panel with more detail when tapped:

The lower zone scrolls and contains, in order:

Each activity shows its name, its recommended time, and its current state.

NOTE
Missed activity reminders.

If a scheduled activity (measurement, drug intake, questionnaire) is not completed within its time window, the app sends a reminder notification.

Patient app Home screen, fixed top zone (Aderenza alle cure, Video di aiuto, steps), above a technical-issue card ("La chiavetta si è scollegata") with a Risolviamo insieme action, and the start of Da fare oggi (Frequenza Cardiaca, Livello di affaticamento).
Patient app Home screen, fixed top zone, above Da fare più tardi listing three locked activities with their unlock time (Pressione Sanguigna, ECG, Ossigeno), and Completate showing one finished activity (Temperatura, 36°C at 10:28).

8.3 Taking a measurement with a connected device

  1. Tap the measurement activity in the Today list. The screen shows the title, a tutorial video for that device, and the same instructions as numbered steps. The video does not start on its own: tap play to watch it, or open it full screen.
  2. Follow the positioning instructions for the device carefully. The home kit also includes the manufacturer's printed instructions for each device.
  3. Start the device as instructed by its own IFU (typically a single power-on or Start button).
  4. Hold still and wait for the device to complete the measurement.
  5. Once the device transmits over Bluetooth, the measurement appears in the app and is sent to the Medicilio cloud back end for threshold evaluation.
  6. The app shows a confirmation screen with the recorded value(s). Tap Done to return to the Today list.

Device-specific notes and tutorial videos

Patient app single-step blood-pressure screen titled "Misura pressione sanguigna", with a photo of the cuff and monitor above four numbered "Come si fa" steps (relax and insert your arm, start by pressing the button, stay still and relaxed, data sent automatically to the doctor), an "Avvia la misurazione" button, and a "scrivi manualmente i risultati" link below it.
Patient app single-step ECG screen titled "Esegui ECG", with a photo of two hands holding the device between index and middle fingers above two numbered "Come si fa" steps (hold the device's ends between index and middle fingers as shown on the screen that lights up automatically, wait 30 seconds and the data is sent to the doctor), and an "Avvia la misurazione" button. No manual-entry link is shown.
Patient app single-step oxygen-saturation screen titled "Misura ossigeno", with a photo of a finger in the oximeter above four numbered "Come si fa" steps (ensure fingers are not cold, insert the index finger fully with the sensor snug, wait 15 seconds, results appear and are sent to the doctor), an "Avvia la misurazione" button, and a "scrivi manualmente i risultati" link below it.
Patient app single-step body-temperature screen titled "Misura la temperatura", with a photo of the ear thermometer reading 36.8°C above four numbered "Come si fa" steps (switch on the thermometer, gently insert the tip in the ear canal, press the measurement button and hold until the beep, data sent automatically to the doctor), an "Avvia la misurazione" button, and a "scrivi manualmente i risultati" link below it.
Patient app single-step body-weight screen titled "Controlla il peso", with a photo of bare feet on a scale above three numbered "Come si fa" steps (stand barefoot and still in the centre of the scale, wait 10 seconds, results sent to the doctor), and an "Avvia la misurazione" button with a "scrivi manualmente i risultati" link below it.
Patient app single-step peak-flow screen titled "Misura picco espiratorio", with a photo of a person blowing into the spirometer mouthpiece above three numbered "Come si fa" steps (sit comfortably with a straight back, breathe in deeply and blow hard into the mouthpiece for at least 3 seconds, data sent automatically to the doctor), and an "Avvia la misurazione" button. No manual-entry link is shown.
WARNING
Manual entry.

Manual entry must be used only when a connected device is not available or has failed. Manual values are not equivalent to a verified measurement from a compatible medical device and may be excluded from clinical decision-making by the clinician.

8.4 Taking a manual measurement

  1. Open the activity in the app.
  2. Tap Enter manually.
  3. Type the value(s) in the input fields and confirm.
  4. The measurement is stored with an explicit manual data-source tag, visible to the clinician.

Peak flow cannot be entered manually. The reading reaches your care team only from the device.

Patient app manual-entry screen titled "Inserisci il valore" with the subtitle "Scrivi il valore che leggi sul dispositivo", a single input field labelled "Temperatura (°C)", and a "Salva" button below it.

8.5 Drug intakes

  1. Open the drug-intake activity. You can do this at the recommended time, or later the same day if you were not able to record it straight away.
  2. The app shows the drug name, the dose and any clinician notes.
Patient app drug-intake screen titled "Assumi [drug name]", showing the Dose and Quantità fields, with "Ho preso il farmaco" and "Non ho preso il farmaco" buttons below.
  1. The app asks whether you have taken the dose.
  2. If you have taken it within the recommended time, tap to confirm. The intake is recorded as taken on time.
  3. If the recommended time has passed, select the part of the day in which the dose was actually taken. Only parts of the day that have already gone by can be selected. The intake is recorded as taken outside the recommended time.
  4. If you have not taken the dose, select one or more reasons from the list and confirm.
Patient app "Perché non hai preso il farmaco?" screen, with a checkbox list of reasons ("Ho finito le medicine", "Ho sperimentato effetti collaterali", "Il medico mi ha detto di non assumerlo", "Altro") ; "Altro" is checked and reveals a free-text field, with a Salva button below.

A medication can be recorded until 23:59:59 of the day it was due. If nothing is recorded by then, it is closed as not recorded. Your care team sees this as distinct from a dose declared as not taken.

"Quando hai preso il farmaco?" window selector, with Mattino (05:00-12:00) marked as the current choice and Pomeriggio (12:00-18:00) and Sera (18:00-00:00) shown greyed out and disabled below it, and a Conferma button at the bottom.
IMPORTANT
What you confirm cannot be changed afterwards.

Once you confirm a medication as taken, the record is sent to your care team and cannot be corrected from the app. Before confirming, check that you have chosen the right part of the day. If you realise afterwards that you recorded something incorrectly, tell your care team through the in-app chat (see §10.4).

8.6 Questionnaires

  1. Open the questionnaire activity, at any point in the day that suits you : questionnaires are not tied to a time of day. The app shows the questionnaire title and the number of questions.
  2. Answer each question. Question types include single choice, multiple choice, free text, and numeric scales.
  3. Review the answers in the summary screen.
  4. Tap Continue. The answers are stored against the pathway and are visible to the clinician.
Patient app questionnaire screen with a progress indicator "Domanda 1/2", the question "Hai avuto fiato corto (dispnea) oggi?", marked "Risposta obbligatoria", and single-choice options (No, Sotto sforzo, A riposo) with No selected, above a Continua button.
Patient app confirmation screen with a green check icon, the heading "Attività completata" and the message "Perfetto, hai completato l'attività.", above a Prossima attività button.
NOTE
If somebody else took the measurement.

When you are asked who took a measurement and you answer that it was somebody else, the reading is not filed as yours: your care team does not see it in your history, your trends or your reports. The activity stays open so you can still measure yourself.

WARNING
Your entries may need verification.

Values you enter manually, questionnaire answers, and symptom descriptions may be reviewed and verified by your care team before any clinical decision is made based on them.

8.7 Receiving an alert after a measurement

If a measurement result requires attention, you will receive a push and in-app notification prompting you to repeat the measurement, and see a Re-measurement requested screen immediately after the result. You are asked to repeat the measurement within a short window (typically 5–10 minutes). One of two outcomes follows:

This notification to your care team is not an emergency response. It is handled without a guaranteed immediate reply, and it is not a substitute for calling 112 in a suspected emergency. If you feel unwell, do not wait for the app or for Medicilio staff to respond, call 112.

Patient app screen titled "Chi ha effettuato la misurazione?" asking who performed the measurement, with two options ("Sono stato io", "Un'altra persona") and a disabled Continua button until one is selected.

If you miss the notification

Whenever a measurement needs confirming and you have not yet responded, a card appears among your activities on the home screen, naming the measurement concerned. It stays there until you complete the flow or your care team closes the alert.

Tapping the card asks who took the measurement and then guides you through measuring again if that is needed. If the repeat measurement is within range you can move on to your next activity; if it is still out of range you are advised to call the emergency number.

If a measurement could not be read

The device itself may signal that a reading did not work: the cuff moved, the ECG trace was too noisy, or the value is outside what is physically possible. The reading is then not shown to you or to your care team. The app shows an error screen, you receive a notification, and the activity reopens so you can measure again.

IMPORTANT
A discarded reading is not a result.

If the app tells you a measurement could not be used, no value has reached your care team for that attempt. Repeat the measurement following the on-screen instructions. If it fails repeatedly, contact support (see §2.2).

8.8 Viewing one's own measurements, reports and appointments

Procedure — View own measurement history

Open the History entry from the main menu. Select the day for which you want to see the completed or uncompleted activities.

Patient app History screen on the Attività tab, with a September 2026 week calendar (day 4 selected, every day flagged with a red dot), a list of completed activities for that day grouped under "Settembre 2026" (a medication marked "Assunto in orario", a Frequenza Cardiaca reading of 84 bpm, an Ossigeno reading of 96%), a "Aggiunta da te" section with a manually entered Temperatura reading, and a "Cosa hai dimenticato" section listing a missed Temperatura activity.

Procedure — View own signed telemonitoring reports

Open Reports from the Documents tab in the History.

  1. The list shows all signed reports. Reports not signed yet are not visible.
  2. Tap a report to read it in full screen. Tap the download icon to save a PDF copy to the tablet.

Procedure — View own appointments

  1. Open Appointments from the Visits tab in the History.
  2. Upcoming appointments are at the top; past appointments below.
  3. Tap an appointment to see the detail, the assigned clinician, and (for televisits/teleassistance) the Join televisit action when the slot opens
Patient app History screen on the Visite tab, titled "Le tue visite" with a Periodo filter. A "Future" section (Settembre 2026) lists a submitted teleassistenza request with "Vedi richiesta" and "Elimina" actions, and a confirmed teleassistenza appointment ; a "Passate" section (Agosto 2026) shows a completed in-studio visit.

Procedure — Create a new appointment request

The patient can request an appointment from the mobile app; the Medicilio Customer Support confirms the slot.

  1. From the Profile tab, tap Request teleassistance.
Patient app Impostazioni screen listing Dati personali, Contatti di emergenza, Il mio percorso, I miei dispositivi and Richiedi Teleassistenza, followed by an Assistenza section (Domande frequenti) and a Note legali section (Termini e condizioni, Privacy policy).
  1. Choose the appointment type and a preferred date / time slot.
  2. Optionally add a reason or symptom description.
Patient app "Richiedi Teleassistenza" form, explaining the form is only for requesting teleassistance with a healthcare professional (with a link to the FAQ), with dropdowns for Prestazione, Preferenza data and Orario preferito, a free -text Dettagli aggiuntivi field, and a disabled Invia richiesta button.
  1. Submit. The Medicilio Customer Support receives a notification and the Appointment is now available in the visit history under the Future Visits section, where it is possible to review the request or delete it.

8.9 Updating personal info, emergency contacts and subscription

Procedure — Update personal information

  1. Open the Profile entry from the main menu.
  2. Edit the editable fields (phone, address); identity fields (tax code, date of birth) are read-only and can be changed only by the Medicilio Customer Support.
  3. Tap Save.
Patient app "Dati personali" screen with Nome and Cognome shown read-only (greyed out), and editable Telefono (with country-code selector) and E-mail fields, above a Salva button.

Procedure — Update own emergency contacts

  1. From the Profile screen, tap Emergency contacts.
  2. Add, edit or remove contacts.
  3. Tap Save. The alert service is updated immediately.
Patient app "Contatti di emergenza" screen with editable Nome, Cognome, Telefono and Relazione fields for one contact, above a Salva button.

Procedure — View subscription details

  1. From the Profile screen, tap Subscription.
  2. The app shows the current pathway, the activation fee, the monthly fee, and the next billing date.
Stripe billing portal page (billing.stripe.com) showing the current subscription "Percorso di Telemonitoraggio personalizzato" with its monthly amount redacted, the payment method on file (a Visa card), billing details (name, email, address, phone, redacted), and an invoice history entry marked "Pagata".
NOTE
Payment and pathway status notifications.

The patient receives an email when: the activation fee and first month's subscription are due; a payment attempt fails (after the second consecutive failure, the pathway is paused and the patient is notified); the pathway is reactivated following a successful payment; or the pathway becomes active.

WARNING
When to consult a healthcare professional.

The patient must contact a healthcare professional in the following circumstances:

9. Appointments and video consultations

9.1 Appointment durations and types

Durations: 30, 45 or 60 minutes.

Two appointment types require a video session:

NOTE
Appointment notifications.

The patient (and caregiver, where applicable) receives an email and SMS confirmation when a televisit or teleassistance is scheduled or rescheduled, a reminder email and SMS the day before, and a push notification 10 minutes before the appointment (followed by an SMS after 5 minutes if the push is not opened). Home visits and in-studio visits do not generate these notifications to the patient.

Procedure — Patient joins a televisit

  1. On the tablet, open the Today screen at the scheduled time. Starting 15 minutes before the appointment, the Join button becomes active, allowing the user to connect to the appointment.
Patient app Home screen with the fixed top zone (Aderenza alle cure, Video di aiuto, steps), and Promemoria di oggi showing two teleassistenza/in-person reminders for "Oggi", one with an active, unlocked "Accedi" button, above the start of Da fare oggi (Frequenza Cardiaca, Livello di affaticamento).
  1. Tap Join. A confirmation screen appears, tap Connect to proceed. The patient app opens the video session in full-screen. Grant the app permission to use the camera and microphone (only asked on first use).
  2. During the call, the local video feed is displayed at the top of the screen and the clinician's video is shown below. The following controls are available:
Patient tablet app video-call screen titled 'Televisita con Dott.ssa Rossi' showing the patient's own video feed (Sofia Rossini) at the top and the clinician's video (Maria Rossi) below, with call controls along the bottom for Video, Microfono, Chat and Persone and a share button.
  1. When the consultation ends, the clinician closes the session. The patient returns to the Today screen automatically.
IMPORTANT
Appointment reports.

After a televisit or teleassistance, the clinician produces an appointment report. The report is signed electronically and only the signed version is visible to the patient.

Procedure — Cancel an appointment

  1. Open the History tab and navigate to the Visits section.
  2. Locate the teleassistance request and tap Delete. A confirmation dialog appears asking whether the request should be deleted.
  3. Tap Confirm. The request is removed.

Note: Only teleassistance requests submitted by the patient can be deleted, and only while they have not yet been accepted by the Medicilio Customer Support. Once the request has been taken in charge, it can no longer be deleted or modified. To change the details of a pending request, delete it and submit a new one. Appointments scheduled by a clinician cannot be cancelled from the patient app.

Procedure — Sign and download an appointment PDF

After an appointment moves to Completed status, the clinician can produce a report or clinical note for that session. The signed report is visible to the patient under the Documents section in the patient menu on the tablet.

10. Documents and chat

10.1 Documents

Who can upload documents: Patient

Who can delete a document: Patient (only their own documents, and only if the healthcare professional has not yet viewed the document).

10.2 Document constraints

Constraint Value
Maximum file size 20 MB
Maximum batch size 5 files
Allowed MIME types PDF, JPEG, PNG
Download URL validity 1 hour
QR-upload session validity 30 minutes

10.3 Patient document upload

A patient can upload supporting documents (e.g. lab results) directly to their pathway from the patient tablet. Two upload methods are available: taking a photo with the tablet camera, or transferring files from another device via QR code. QR-code sessions expire after 30 minutes.

Procedure

  1. On the tablet, open Documents in the History tab and tap Upload documents
Patient app History screen on the Documenti tab, titled "I tuoi documenti" with a "Carica documenti" button, Anno and Mese filters, and an empty state illustration with the message "Nessun documento corrisponde ai filtri selezionati. Prova a modificare l'anno o il mese."
  1. When prompted, select how to upload:
Patient app Documents screen with a modal titled "Come vuoi caricare i tuoi documenti?" offering two options: "Scatta una foto" (using the tablet camera) and "Carica da un altro dispositivo" (via a secure link).
  1. If uploading from another device, scan the QR code with the camera of any other device (e.g. a personal phone). The QR code opens a browser page on that device.
"Carica in sicurezza da un altro dispositivo" page with a countdown chip, a QR code to scan (Metodo 1), and a link-plus-code alternative (Metodo 2) with a Copia link action.
  1. Select the file or files on the second device and confirm.
  2. The tablet shows the upload progress and a confirmation when complete. The same session can be reused until the countdown expire

Procedure — Delete one's own document

Who can perform this action: Patient (only on documents uploaded by the patient and not yet reviewed by a healthcare professional).

  1. On the tablet, open the Documents in the History tab and select the document you want to remove.
  2. Tap Delete.
Patient app Documents tab listing a document ("image.jpg", uploaded 07/09/26, marked "Da visualizzare") with active Visualizza and Elimina buttons, above an older document uploaded by the clinician.
  1. If a healthcare professional has already reviewed the document, the action is blocked and the app shows a message instructing the patient to contact the clinical team.
The same document now marked "Visto dal professionista" (viewed by the professional), with the Elimina button disabled while Visualizza stays active.
  1. Confirm to remove. The deletion is recorded in the audit log.

10.4 In-app chat

Both chat channels are created as soon as your pathway becomes active. The chat icon shows a badge when there are messages you have not read.

Two chat channels exist in the patient app.

Channel Purpose Allowed participants
Supporto di Medicilio Non-clinical operational support (Medicilio Customer Support) Patient, Medicilio Customer Support, Ops
Supporto Medico Dottore Clinical communication channel with the assigned clinical team Patient, Department Doctor, Independent Practice Doctor, Department Doctor Head, Healthcare Professional

Procedure — Send a chat message

  1. Open the Chat entry from the main menu.
  2. Tap the relevant channel ("Supporto di Medicilio" or "Supporto Medico Dottore").
Patient app Chat screen listing two channels: "Supporto di Medicilio" with preview "Avrei bisogno di aiuto tecnico" and an unread-count badge, and "Supporto Medico Dottore" with preview "Buongiorno dottore".
  1. Type the message in the input box; attach a photo or document if needed (subject to the constraints in §10.2).
  2. Tap Send. A read indicator appears once the message is read by the Medicilio Customer Support or the clinical team.
Open "Supporto di Medicilio" chat thread with a dated welcome system message, a sent message ("Avrei bisogno di aiuto tecnico") with a read-receipt indicator, and the message input box with an attachment control.

You can edit or delete a message after sending it, from that message's own actions. This applies only to messages you sent yourself. If editing or deleting is no longer available, the app explains why.

WARNING
Chat is not for emergencies.

The chat channels are not monitored in real time. Messages may be read with significant delay. In an emergency, call 112 and do not use the chat.

11. IT security and data protection

11.1 Hosting and data residency

Medicilio RPM is hosted on Google Cloud Platform in the EU region (Belgium, Frankfurt and Milan). All clinical data and personal data are stored in the EU. Databases and their backups are held in the regions named above. Object storage, which holds archived application logs, uses Google Cloud EU multi-region storage and may therefore hold data in any European Union member state.

11.2 Personal data and GDPR

Personal data is processed in accordance with Regulation (EU) 2016/679 (GDPR) and Italian Legislative Decree 196/2003 as amended. The Data Controller is the healthcare provider organisation that prescribes the pathway; Cantieri Digitali Medtech S.r.l. acts as Data Processor.

11.3 Transport and at-rest protections

Medicilio's information-security controls follow the principles of confidentiality, integrity and availability appropriate to a Class IIa MDSW under MDR §23.4(ab) and MDCG 2019-16. This Instructions for Use does not cite specific information-security management standards; the underlying organisational controls are documented in Medicilio's internal Quality Management System.

12. Cybersecurity for users

12.1 Account

12.2 What to do if your account is compromised

If you suspect that an unauthorised person has access to your Medicilio account or to the email inbox associated with it:

  1. Stop using the device for any clinical action.
  2. Notify Medicilio support at the email and phone numbers in §2.2, providing the email address associated with the account and a brief description of the suspected compromise.
  3. Medicilio support revokes the affected email from the Kinde identity provider back office, which terminates the user's ability to authenticate. Any active session is invalidated at the next token refresh, and no further one-time password can be issued for that email until the account is re-provisioned.
  4. The user must be re-provisioned by an authorised role before regaining access (see §7: provisioning).
  5. The data controller documents the suspected compromise in line with its incident-response procedure (GDPR Article 33 / 34 where applicable).

12.3 Patient device hygiene

IMPORTANT

The tablet provided for the use of the Medicilio application is managed and locked through a Mobile Device Management (MDM) tool. The device is configured so that only the Medicilio application can be used. Patients are not permitted to access the operating system, browse outside the application, install or remove applications, modify device settings, or attempt to unlock, reset, jailbreak, root, or otherwise alter the device configuration. Patients should handle the tablet with care, keep it clean and dry, avoid exposing it to liquids, heat, dust, or physical damage, and promptly report any malfunction, loss, theft, damage, or unexpected device behavior to Medicilio or the designated support contact.

13. Maintenance and software updates

13.1 Software updates

Medicilio RPM is delivered as cloud software (back end) and as two client applications (web and mobile). The release cadence is approximately one release every three months; security and hotfix releases may be issued more often.

13.2 Data backup

Patient and pathway data are backed up by the manufacturer as part of the cloud back-end operation. Users do not need to perform local backups.

13.3 Account recovery

See §12.2.

13.4 Patient-side maintenance

The patient is responsible for:

14. Troubleshooting

The table below covers the most common user-facing failure modes.

Symptom Likely cause Action
OTP email never arrives Email filtered as spam, or wrong email Check spam folder; ensure the address matches the one on file; contact support
Measurement does not appear in the app Connectivity loss; gateway off; device battery low Restore network; charge the device
Video session does not start Browser permissions for camera/microphone denied; firewall blocks Whereby Grant browser permissions; check the network; restart the browser
Patient cannot delete a document Healthcare professional has already reviewed it This is intended behaviour. Patient must contact the clinical team.

14.1 Technical-issue cards in the app

When something in your home kit stops working, a card appears on the home screen for as long as the problem lasts. Tapping it opens a page explaining what the app has detected, with numbered steps to put it right and the technical-support telephone number at the bottom.

Card What it means What to do
The gateway has come unplugged The home gateway is no longer connected, so your measurements are not reaching your care team Follow the steps on the card to reconnect it, then tap "I have done this, check"
The router has no signal The router is connected but has no usable network signal Follow the steps on the card to reposition it, then tap "I have done this, check"
The tablet is almost out of battery The tablet's battery is at or below 10% Connect the tablet to its charger. The card disappears on its own once the battery recovers

When you tap "I have done this, check", the app checks whether the problem is fixed. If it is, the card disappears. If it is not, the service centre is alerted and will contact you, and the card stays on the home screen. If more than one thing needs attention, you see one card per problem.

NOTE
Missing measurements during a technical problem.

While the gateway or the router is not working, measurements you take may not reach your care team. Do not assume that a measurement you took during the problem has been received.

15. Reporting of serious incidents

Any serious incident that occurs in relation to Medicilio RPM must be reported to:

A "serious incident" is defined in Article 2(65) of MDR 2017/745 as an incident that, directly or indirectly, led, might have led or might lead to: the death of a patient, user or other person; the serious deterioration of a person's state of health; or a serious public-health threat.

IMPORTANT

Reporting a serious incident is mandatory under the MDR. The reporter (clinician, Medicilio Customer Support operator, or patient) should preserve any screenshots, message threads, or device logs that may help reconstruct the incident.

16. End-of-use, account deletion and data retention

16.1 Ending pathway use

When a pathway reaches its planned end, it is marked as Completed. If it needs to be ended early, it is marked as Cancelled. In both cases, any future scheduled activities are removed and the associated devices are released from the patient's record. The patient receives an email when the pathway reaches its planned end or is cancelled early.

IMPORTANT
Return of the home kit.

At the end of the pathway, the patient must return the entire home kit, including the MDM-locked tablet (see §6.2), the home gateway, the SIM card, and all measurement devices, to Medicilio using the return instructions provided by the Medicilio Customer Support. The tablet remains locked to the Medicilio application and must not be retained for personal use.

16.2 Patient and account deletion

Who can delete a patient record: Department Doctor Head, Independent Practice Doctor, Medicilio Customer Support, Ops.

When a patient record is deleted, the following sequence is applied:

  1. Personally identifying information (PII): name, surname, tax code, date of birth, address, contact details, emergency contacts, is exported to a sealed audit-only store maintained by Medicilio under documented data-protection controls.
  2. The operational patient record is then removed from the application; PII is no longer accessible through the Medicilio RPM user interface to any role.
  3. Clinical and billing data that must be retained for the periods set out in §16.3 are kept in their respective retention stores in scrubbed form, i.e. without PII linkage, so that data retention obligations can be met without continued processing of the patient's identity.
WARNING
Patient deletion is irreversible at the application layer.

Once a patient is deleted, the personal data are not visible or recoverable through the Medicilio RPM user interface. Restoration from the sealed audit store is performed only by Medicilio data-protection staff and only in response to a documented data-subject or regulatory request. Confirm the patient's identity and the deletion intent before proceeding.

16.3 Data retention

Clinical data linked to a pathway are retained for 10 years from the end of the pathway, in accordance with the applicable Italian SSN rules on healthcare records and with the GDPR principle of storage limitation. At the expiry of the retention period, retained clinical data are deleted or further anonymised so that they can no longer be attributed to an identified or identifiable patient.

NOTE

The 10-year retention period applies to clinical data associated with the pathway. Operational records, billing records, and vigilance-related records may be subject to different statutory retention obligations under Italian law.

17. Glossary

Term Definition
Pathway A clinician-prescribed care plan combining vital-parameter measurements, drug intakes, questionnaires and appointments over a defined duration.
Activity A discrete scheduled action within a pathway (measurement, drug intake, questionnaire).
Medicilio Customer Support The internal Medicilio support team: operationally distinct from any external Medicilio Customer Support project. Includes the roles Medicilio Customer Support and Ops.
Threshold The numeric or boolean limit configured per pathway against which incoming measurements are evaluated.
Alert A record created when a threshold is breached; carries a level (yellow or red) and a status.
AlertNotification The record that drives Medicilio Customer Support and emergency-contact notifications for red-level breaches.
Telemonitoring report A clinical document drafted by the AI component and reviewed, edited and signed by the clinician before release to the patient.
AppointmentReport The signed report produced after a televisit or teleassistance.
Home kit The set of devices delivered to the patient (gateway, tablet, one or more measurement devices, SIM).
MDR Regulation (EU) 2017/745 on medical devices.
MDSW Medical Device Software (MDCG 2019-11 qualification).
SSN Servizio Sanitario Nazionale : the Italian national health service.
UDI-DI Unique Device Identifier : Device Identifier.
eIFU Electronic Instructions for Use (Regulation (EU) 2021/2226).
Medicilio Customer Support (chat channel) The non-clinical "Supporto di Medicilio" channel.
Whereby The third-party video provider used for televisits and teleassistance.
Time slot Morning 05:00–12:00, Afternoon 12:00–18:00, or Evening 18:00–24:00. Whatever the activity, the day closes at 23:59:59.
Fixed / flexible measurement Set by your clinician for each measurement. A fixed measurement can only be recorded inside its time slot; a flexible one counts at any point in the day. See §8.1.
Adherence How consistently you complete your prescribed activities, shown on the home screen and shared with your care team.
PEF Peak expiratory flow, measured with a spirometer where your clinician has prescribed it. See §6.3.

18. Manual versions

Version Date Author Summary of changes
1.0.0 2026-09-07 Cantieri Digitali Medtech S.r.l. Initial issue.