Security
Security and compliance, taken seriously.
Encryption
All PHI encrypted at rest (AES-256) and in transit (TLS 1.3).
Access control
Role-based permissions. Granular per-staff access. Audit log of every access event.
Backups
Daily automated backups. Point-in-time restore available on Practice tier and above.
HIPAA compliance
HIPAA-aligned. BAA available on request — email Adamu .
Data residency
Patient data stored in US-based data centers (AWS US-East). Never leaves the US.
Incident response
Documented incident response process. 72-hour breach notification commitment.
Have specific compliance questions? Email us.