Trust

Security, Stated Plainly.

How we protect business and customer data — and what we explicitly do not claim.

Encryption

HTTPS everywhere; sensitive data encrypted in transit and at rest. Secrets managed per environment, never in code.

Tenant isolation

Every business’s data is strictly scoped — users can only ever see their own business, enforced server-side.

Least privilege

Owner, manager and staff roles with granular permissions; sensitive admin actions require reason and audit log.

Audit logging

Logins, permission changes, data exports and business-critical edits are recorded with who, what and when.

Sensitive information

Health-related details are treated as sensitive by default: minimized in notifications, logs and analytics. AI handles admin work only — never diagnosis or treatment decisions.

No empty badges

We claim no HIPAA, GDPR, SOC 2 or ISO certifications on this page unless listed here with evidence. Status: [none claimed].

Questions about security?

Ask us directly — including for your own compliance review.

Contact Us