Your client data is our highest priority
Security isn't a feature — it's the foundation everything else is built on.
Infrastructure
Self-hosted on Vultr VPS in Ashburn, VA. Dedicated instance — not shared hosting. Full control over the server, network, and access. Reverse proxy via Caddy with automatic TLS certificate management.
Backups
3-2-1 backup strategy: Vultr snapshots daily, pg_dump every 6 hours encrypted with GPG, stored to Backblaze B2. Three copies, two media types, one offsite.
Access controls
Role-based access control (RBAC) at the application level. Row-level security (RLS) at the database level. Five user roles: Owner, Admin, Supervisor, Caregiver, Family.
Incident response
Documented incident response plan with notification timelines per HIPAA breach notification rules. Regular security reviews and vulnerability assessments.
Ready to ditch the paper binders?
Start your free 30-day trial. We'll set up your first clients personally.
No credit card · HIPAA compliant · 5-day onboarding · Oklahoma, Texas & Florida · Cancel anytime