Security & HIPAA
Resident health information deserves a careful home.
Row-level access
Every query is filtered by signed-in user roles and facility assignments. No facility ever sees another's residents.
Audit log
Reads and writes against resident records are logged with user, action and timestamp.
Encrypted transport & storage
All connections use TLS. Data at rest is encrypted on the underlying infrastructure.
BAA available on Network
For multi-facility operators on the Network plan we sign a Business Associate Agreement.
HIPAA risk assessment
Our latest HIPAA risk assessment is available on request under NDA. Email security@haven.app to receive a copy.