Security overview
Last updated August 2026
Access control
Each franchise office is a separate workspace enforced at the database level, not in application code. Role-based rules limit caregivers to their own record, their assigned visits and the clients on those visits. Schedulers and owners are scoped to their office; corporate administrators see aggregate performance only.
Audit controls
Views and changes to health information are logged with the acting user, record, action and timestamp. The log accepts new entries only — updates and deletions are revoked for every application role. Owners can filter the trail and export it as a CSV for compliance reviews.
Person and entity authentication
Individual accounts with email or Google sign-in, leaked-password protection and a minimum password strength. Shared logins are prohibited by the acknowledgement every user accepts at first sign-in.
Automatic logoff
Sessions warn at 14 minutes of inactivity and end at 15 minutes, so an unattended workstation does not leave health information on screen.
Transmission and storage
All traffic is served over TLS and data is encrypted at rest. Health information is never placed in page addresses, page titles, error messages or browser logs.
Integrity and retention
Clients and visits are soft-deleted, keeping the historical record intact for the retention window each office configures. Backups are managed by the hosting platform.
Reporting a concern
Report a suspected security or privacy issue to your franchise owner immediately; owners escalate to corporate within 24 hours as required by the breach notification process.
