Security and compliance
Built for HIPAA from the first line of code, with a business associate agreement in place before any data moves.
Role-based access scoped by entity, facility and function
Full audit trail on every read, write and approval
Encrypted in transit and at rest, secrets in a managed vault
Approvals required for money movement and record changes
Single sign-on through SAML and OIDC, with multi-factor enforced
Hosted on AWS in US regions, with environments separated by customer