Security

Enterprise controls designed for healthcare operations — encryption, RBAC, and auditability.

Encryption in transit

HTTPS across application and API endpoints with modern TLS at the edge and managed certificates on Azure.

Role-based access

Company vs platform portals, custom roles, and least-privilege defaults for billers, BCBAs, and admins.

Audit logging

Authentication, exports, settings changes, and administrative actions recorded for review.

Tenant isolation

Automated multi-company isolation tests and guards on every company-scoped API path.

Account protection

Password policies, failed-login lockout, and MFA-ready authentication architecture.

Backup center

Database backup jobs and restore request workflows for platform operators.