Healthcare Marketing Reimagined

Extended Reach.
Verified. Privacy compliant.

medizinonline.com reaches physicians outside the platform, with verified identity.

100% login-verified
Only users with checked ID and GLN number.
No real names
No real names or contact details are passed on to advertisers.
Europe only
Data processing and hosting take place exclusively within Europe.
Starting Point

Why Extended Reach?

Today: Physicians are everywhere on the web

Like everyone else, physicians read NZZ, 20 Minuten, Blick & Co., not just professional portals.

  • Same media usage as everyone
  • Professional portals only part of the day
  • Professional advertising often remains invisible
  • Reach ends at the login wall

Restriction: Regulated advertising

According to the Therapeutic Products Act, Rx advertising may only reach professionals, never the public.

  • Only professionals as target group
  • Professional affiliation must be verified
  • Previously only possible in the login portal
  • Outside: no secured targeting

Solution: Extended Reach

medizinonline securely transfers the verified professional identity to other environments like 20min.ch.

  • Login verification remains the basis
  • Pseudonym instead of real name
  • Certified Ad-Tech platform
  • Full control for physician & PPM
Mechanism

How it works

A professional ID that is only checked at the right door.

Nowhere else is it shown.

Login with ID

Access to medizinonline is granted only with a copy of an ID and GLN number.

Anonymous identifier

An encrypted identifier remembers the specialty, never the name or email.

Recognition

If the same person visits e.g. 20min.ch, the identifier is recognized there.

Professional message

The professional ad appears only there, invisible to everyone else.

For the technical team

Technical operation in detail

01 Login & Verification

The physician authenticates at login; the GLN number was checked against the professional register during registration. After successful verification, medizinonline creates a unique, verified user ID on the server side.

02 1st-party cookie is set

Upon login, medizinonline sets its own (1st-party) cookie on the server side, persistent, independent of 3rd-party blocking.

Example (Simplified)
Set-Cookie: _mo_vid=8f2a91c7d4e6…; Domain=medizinonline.com; Secure; HttpOnly; SameSite=Lax

HttpOnly & Secure: exclusively readable server-side. Contains an encrypted, pseudonymous ID and coded characteristics, anonymized, no inference to the person.

03 Recognition in the open web

If the same physician visits e.g. 20min.ch, the synchronized ID becomes visible in the bid request, as is standard in programmatic advertising. Only the certified Ad-Tech platform knows which segment it corresponds to, for everyone else it remains meaningless.

04 Delivery to verified person

The ad is delivered directly to the verified, recognized person. No segment, no access to our backend, no delivery, no fallback to assumption.

Security Principle

Only medizinonline and PPM can map the cookie value to a professional segment. A physician recognized via the cookie is treated exactly the same as a logged-in physician on medizinonline: the same verified professional affiliation, just outside the platform.

Matching & Security

How matching and protection work technically

01 Domain binding prevents external access

A cookie is strictly bound to its setting domain via Same-Origin-Policy. 20min.ch cannot technically read our medizinonline cookie, the browser itself enforces this, not just a promise from us.

02 Matching via cookie syncing

Upon login, the certified Ad-Tech platform additionally sets its own cookie on its own domain, separated from ours.

Mapping (Server-side, once at login)
adtech_sync_id=a83f1c2b9e… mo_segment=cardio-senior (opaque token, no plaintext)

This link is created once server-side at login, our own cookie is never transferred to the Ad-Tech platform or read by it.

03 Opaque token, server-side resolution

On 20min.ch, the ID in the bid request is visible to all participating systems, this is programmatic standard. However, the inference to "Specialty X" is only possible for us, because only we have the mapping table.

04 Authorized, logged access

Only the contractually bound Ad-Tech platform may request this resolution, authenticated via API key and fully logged.

Governance & Deadlines

Data processing, not self-use.

The Ad-Tech platform is a data processor according to Art. 28 GDPR, contractually bound, bound by instructions, auditable. Mapping and cookie are time-limited; upon revocation, the mapping is immediately deleted server-side.

Privacy

Verified. Minimized. European.

Data privacy. Assured.

01 Verified professional status

Registration only with ID copy and GLN number, no self-disclosure, no probabilistic targeting.

02 Data location Europe

Processing and storage exclusively in the EU and Switzerland, no transfer to third countries like the USA.

03 Data minimization

Only an encrypted identifier and the specialty leave medizinonline, never name, email or patient data.

04 No data transfer

The pharma company only receives campaign delivery and reporting, never access to identifiable personal data.

Compliance Principle

Recognition = Login.

A physician recognized by the 1st-party cookie is treated exactly the same outside of medizinonline as a logged-in physician, the same verified professional affiliation.

Ready to build Extended Reach?

A project by Prime Public Media on its way to becoming a standard product.