Security & HIPAA

Resident health information deserves a careful home.

Row-level access

Every query is filtered by signed-in user roles and facility assignments. No facility ever sees another's residents.

Audit log

Reads and writes against resident records are logged with user, action and timestamp.

Encrypted transport & storage

All connections use TLS. Data at rest is encrypted on the underlying infrastructure.

BAA available on Network

For multi-facility operators on the Network plan we sign a Business Associate Agreement.

HIPAA risk assessment

Our latest HIPAA risk assessment is available on request under NDA. Email security@haven.app to receive a copy.