Your data is protected.

By design.

Built entirely on Microsoft Azure’s HIPAA-eligible infrastructure. Every layer engineered for healthcare-grade security and regulatory compliance.

HIPAA Compliant

Signed BAA with Microsoft Azure. Physical, technical, and administrative safeguards validated through independent audits. Architected on HIPAA-eligible services from day one.

Certifications

HITRUST CSF, SOC 1/2/3, ISO/IEC 27001/27017/27018, FedRAMP. Inherited through Azure’s shared responsibility model.

Encrypted. Isolated. Yours.

AES-256 at rest, TLS 1.3 in transit. Each provider’s data in their own isolated Azure container. Private Link network isolation.

AI Processing is Firewalled

Never shared with other providers, never used to train external AI models. The only training your data powers is your own ENCOUNTERai pipeline.

BAA at Signup

Embedded in Terms of Service — same approach as Practice Fusion, Athena, Epic. You don’t need a separate agreement with Microsoft.

You Own Your Data

Request complete deletion at any time. U.S.-based data residency. No third-party subcontractors. Microsoft Azure is the only infrastructure provider.

Healthcare-grade security. Not an afterthought.